Author Topic: Non-stop Avast "Web Shield has blocked a harmful webpage or file" alerts  (Read 15648 times)

0 Members and 2 Guests are viewing this topic.

REDACTED

  • Guest
For the last 2 days, I have been continually receiving the Avast alert "Web Shield has blocked a harmful webpage or file" when browsing in both Firefox and Explorer. It gives me a very long URL starting with "hxxp://38.71.2.31...." My computer seems to run fine. An Avast full scan shows no viruses or problems. I installed and ran Malwarebytes, which came up with 1 risky file, since deleted. When I examine my "processes" in Task Manager" I see nothing inappropriate. I have deleted most files in my Temp folders. Yet, the alert continues to pop up. What is going on? Is there something on my computer? Or is this an overly sensitive setting in Avast? Perhaps as a result of recent Avast updates? I've read by others to just report these as false positives, but I'm hesitant to do this in case I'm wrong. What should I do?

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76014
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Attach your logs. (MBAM, OTL and aswMBR..!!)
Instructions: http://forum.avast.com/index.php?topic=53253.0
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

REDACTED

  • Guest
I'm not sure; is this what you mean? This is the log from my Malwarebytes scan:

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 6/14/2014
Scan Time: 2:16:55 PM
Logfile: MalwareBytesScanLog Jun 14.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.06.14.06
Rootkit Database: v2014.06.02.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Allen

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 278745
Time Elapsed: 7 min, 44 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76014
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
I'm not sure; is this what you mean?
Yes, still we need your other logs as well.
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

REDACTED

  • Guest
When I try to post the OTL log I get this error:



The following error or errors occurred while posting this message:
The message exceeds the maximum allowed length (20000 characters).


Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699

REDACTED

  • Guest
? Pondus -- Can't tell -- are you trying to be helpful or just goofing with me?

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
As Asyn said....Attach the logs....not copy and paste


Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76014
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
? Pondus -- Can't tell -- are you trying to be helpful or just goofing with me?
See what he marked in red.
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

REDACTED

  • Guest
Okay, I've attached the OTL, Malwarebytes and aswMBR logs.

Any feedback would be appreciated.

Thanks,

Allen


Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Your OTL log is corrupted

Please download Farbar Recovery Scan Tool and save it to your Desktop.
 
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
 
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Select both shortcut  and additions at the bottom
  • Press Scan button.

  • It will produce a log called FRST.txt in the same directory the tool is run from. 
  • Please attach all 3 logs generated.

REDACTED

  • Guest
Hi, here are the 3 Farbar Recovery logs. Just out of curiosity, when you say that my OTL log is corrupted, do you see evidence of a virus or malware, or just that there are missing/damaged files, or something else?

Thanks,

Allen

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
OTL log is not readable.... looks like chinese gibbely gobbel



Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
The OTL Log is corrupted, but you can still get data off from it.
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
To parse the OTL log would take about 30 minutes and it is not complete

Download and Install Combofix
 
Download ComboFix from one of the following locations:
Link 1
Link 2
 
VERY IMPORTANT !!! Save ComboFix.exe to your Desktop
 
* IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link here
  • Double click on ComboFix.exe & follow the prompts.
  • Accept the disclaimer and allow to update if it asks




  • When finished, it shall produce a log for you.
  • Please include the C:\ComboFix.txt in your next reply.[/b]
Notes:
1. Do not mouse-click Combofix's window while it is running. That may cause it to stall.
2. Do not "re-run" Combofix. If you have a problem, reply back for further instructions.

3.  If after the reboot you get errors about programmes being marked for deletion then reboot, that will cure it.


Please make sure you include the combo fix log in your next reply as well as describe how your computer is running now