Seems to me that you don't even need a VM. Just setup your torrenting program, find a tracker that uses UDP (my brief searching reveals these torrents include lines such as : udp://tracker-url.com:port/announce ) , configure the torrent program to use Tor and take a screenshot of this configuration, now run wireshark , filter for UDP connections to the port from the torrent file, filter for connections to your Tor entry guards (and take a screenshot showing your entry guards and their IP addresses, or of you selecting to use strict guards in torrc), then when UDP connections are made to the tracker they will by pass Tor and you can see this in the Wireshark logs filtering for connections to the tracker, meanwhile you can see that some of the traffic goes over Tor as well from filtering for connections to the entry guards and taking a screenshot of vidalia with circuits open. It really isn't that hard at all and if you need to ask for help figuring this out it is a strong sign of not having done any real research into it yourself.