Author Topic: Blocked treat. Where is the logfile?  (Read 1815 times)

0 Members and 1 Guest are viewing this topic.

Offline Ferrari328

  • Newbie
  • *
  • Posts: 11
Blocked treat. Where is the logfile?
« on: July 23, 2019, 03:19:36 PM »
I searched the forums for this and get 0 hits. Anyone? I know where the logfiles are kept.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user
Re: Blocked treat. Where is the logfile?
« Reply #1 on: July 23, 2019, 03:33:34 PM »
Quote
Topic: Blocked treat. Where is the logfile?

Quote
Anyone? I know where the logfiles are kept.

just to clarify: Do you know? or Do you not know? or do you mean it blocked a threat and the result is not in the log file?






Offline Ferrari328

  • Newbie
  • *
  • Posts: 11
Re: Blocked treat. Where is the logfile?
« Reply #2 on: July 23, 2019, 03:44:02 PM »
I know where the log files are kept. I'm asking what log file has information about this event.

Offline igor

  • Avast team
  • Serious Graphoman
  • *
  • Posts: 11849
    • AVAST Software
Re: Blocked treat. Where is the logfile?
« Reply #3 on: July 23, 2019, 05:30:00 PM »
I'm afraid you'd have to be more specific about the particular threat (its type, the shield, ...)

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89057
  • No support PMs thanks
Re: Blocked treat. Where is the logfile?
« Reply #4 on: July 23, 2019, 06:48:44 PM »
As has been mentioned we need more information.

If you are getting a threat detection (Avast alert window), a screenshot could help us determine which shield it is and the location of its log file.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Ferrari328

  • Newbie
  • *
  • Posts: 11
Re: Blocked treat. Where is the logfile?
« Reply #5 on: July 23, 2019, 08:15:05 PM »
Thanks. Here's the screenshot.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user
Re: Blocked treat. Where is the logfile?
« Reply #6 on: July 23, 2019, 08:27:07 PM »
The bottom of your screenshot, it say "Detected by: Web shield"   


Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89057
  • No support PMs thanks
Re: Blocked treat. Where is the logfile?
« Reply #7 on: July 23, 2019, 08:45:30 PM »
Look here, C:\ProgramData\AVAST Software\Avast\report\WebShield.txt  the file can be viewed in notepad and the entries are in reverse chronological order, e.g. the latest entries are at the bottom of the file.

Given the screenshot, what would be reported in the above file would be very much the same.  Is there an alternate reason you would need to view the report file ?
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Ferrari328

  • Newbie
  • *
  • Posts: 11
Re: Blocked treat. Where is the logfile?
« Reply #8 on: July 23, 2019, 08:55:59 PM »
Thanks that was helpful, sort of. I was hoping for more detailed information as to what caused the threat. As you said, there was no more info in that file. It just says Inoreader but I was hoping to see what RSS feed caused this.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89057
  • No support PMs thanks
Re: Blocked treat. Where is the logfile?
« Reply #9 on: July 23, 2019, 10:31:12 PM »
Unfortunately it doesn't go into much more detail than the alert itself.

According to this it is something in the PHP functioning on the site - frequently this can be the site having old PHP software which could be vulnerable to exploit.  That would require action my the site owner of their host to update the PHP software.

https://www.guru99.com/what-is-php-first-php-program.html
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Ferrari328

  • Newbie
  • *
  • Posts: 11
Re: Blocked treat. Where is the logfile?
« Reply #10 on: July 23, 2019, 10:38:30 PM »
davidr, thanks for the help. Ironically the RSS feed was from SANS Internet Storm. I contacted them but haven't heard back.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89057
  • No support PMs thanks
Re: Blocked treat. Where is the logfile?
« Reply #11 on: July 23, 2019, 11:35:31 PM »
You're welcome.

I'm not familiar with the SANS Internet Storm Center, so why there might be a link to inoreader.com is something I don't know.

Though a quick search for SANS Internet Storm Center found this https://www.incidents.org/ and I don't know if the two are related.  If so I just wonder if it isn't something being investigated (3rd party link) that triggered it I just don't know (as an avast user).
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security