This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

getting the complete URL request from block log

Hello,

over the day we have a lot of block reports from different users in Sophos Central with this URL:

'https://trmcdn.eu' blocked due to category 'Intimate Apparel & Swimwear'

I assume, this site is hosting media files for newspapers or so in several subfolders. That's the only thing I could find with google.

Now I'd like to find out, what the complete URL was when we get such a log in Central.

How is that possible?

Thanks!



This thread was automatically locked due to age.
  • Hi There, 

    To further check the full URL you may check the Log under "C:\ProgramData\Sophos\Sophos Anti-Virus\logs\Sav-Trace.txt" and see if the full link was been stated on the recorded logs.

    Glenn ArchieSeñas (GlennSen)
    Global Community Support Engineer

    The New Home of Sophos Support Videos!  Visit Sophos Techvids
  • Hello

    to me the log is completely useless for this issue. This is what is in there, mostly WiFi errors.

    2021-01-28T08:00:55.732Z [80] [1376:3156] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{e0795d1e-2ee9-4c77-9b83-476372aee8c5}, Error: 2. 
    2021-01-28T08:00:55.738Z [80] [1376:3156] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:23.503Z [70] [1376:12760] VirusDataManager.cpp(339) : VirusDataManager::UpdateThread(): UpdateThread() started...
    2021-01-28T08:58:23.503Z [70] [1376:12760] VirusDataManager.cpp(346) : VirusDataManager::UpdateThread(): UpdateThread(): initial update mode: 2
    2021-01-28T08:58:26.869Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{1bbe4d66-5b4f-40e7-a3d2-c9a0970ff723}, Error: 2. 
    2021-01-28T08:58:26.877Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:26.898Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{20d1f4fe-1497-45d8-95e9-39ca1d78c052}, Error: 2. 
    2021-01-28T08:58:26.906Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:26.926Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{2704c1f6-44b8-4dad-884a-fffb725a4f86}, Error: 2. 
    2021-01-28T08:58:26.934Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:26.955Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{29df4622-6abf-4ae6-a351-a92234a2a2f1}, Error: 2. 
    2021-01-28T08:58:26.963Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.000Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{3f4bd2d4-d025-48af-8a76-29e4b59aa97b}, Error: 2. 
    2021-01-28T08:58:27.009Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.028Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{42d68cc6-af88-4a91-bb3a-11a11a2e365e}, Error: 2. 
    2021-01-28T08:58:27.036Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.056Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{4953c9da-ef01-48ab-a44e-31814ca77a64}, Error: 2. 
    2021-01-28T08:58:27.066Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.086Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{514486f6-7f01-4f21-a236-0226988f6180}, Error: 2. 
    2021-01-28T08:58:27.093Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.109Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{531bc06b-874f-4787-a424-7975b167c901}, Error: 2. 
    2021-01-28T08:58:27.116Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.132Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{5d7489e4-5500-42ec-941b-07c1b1bfb9d7}, Error: 2. 
    2021-01-28T08:58:27.140Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.160Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{62588026-8cce-4959-9b0e-7e8196d1ddf9}, Error: 2. 
    2021-01-28T08:58:27.169Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.208Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{6c94e8a8-01c7-4095-877a-c7b1db5933bc}, Error: 2. 
    2021-01-28T08:58:27.214Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.286Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{93bd1019-bca1-4a57-ba8a-1663821a44b3}, Error: 2. 
    2021-01-28T08:58:27.293Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.340Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{bac9ced7-7e5b-4e1e-9aa9-fb1ac1bb13d6}, Error: 2. 
    2021-01-28T08:58:27.347Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.367Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{c3069586-f2c4-4fbf-a75c-0c01ed31b797}, Error: 2. 
    2021-01-28T08:58:27.375Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:27.415Z [80] [1376:7696] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{e0795d1e-2ee9-4c77-9b83-476372aee8c5}, Error: 2. 
    2021-01-28T08:58:27.424Z [80] [1376:7696] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:35.920Z [70] [1376:12760] VirusDataManager.cpp(450) : VirusDataManager::UpdateThread(): UpdateThread() finished
    2021-01-28T08:58:39.190Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{1bbe4d66-5b4f-40e7-a3d2-c9a0970ff723}, Error: 2. 
    2021-01-28T08:58:39.196Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:39.215Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{20d1f4fe-1497-45d8-95e9-39ca1d78c052}, Error: 2. 
    2021-01-28T08:58:39.223Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:39.243Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{2704c1f6-44b8-4dad-884a-fffb725a4f86}, Error: 2. 
    2021-01-28T08:58:39.251Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:39.269Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{29df4622-6abf-4ae6-a351-a92234a2a2f1}, Error: 2. 
    2021-01-28T08:58:39.275Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:39.308Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{3f4bd2d4-d025-48af-8a76-29e4b59aa97b}, Error: 2. 
    2021-01-28T08:58:39.316Z [80] [1376:10312] WiFiHelper.cpp(377) : (thread=0x21d0) IsPhysicalNetworkConnectionAvailable: ProcessNetCard failed, continuing search. : hr=0x80070002
    2021-01-28T08:58:39.335Z [80] [1376:10312] WiFiHelper.cpp(228) : (thread=0x21d0) ProcessNetCard: Call to CreateFile failed for device: \\.\{42d68cc6-af88-4a91-bb3a-11a11a2e365e}, Error: 2. 

  • crawled through the log files and had expected this in here

    C:\ProgramData\Sophos\Web Control

    but it has no logs at all.

    I found this here and it contains all the blocks:

    C:\ProgramData\Sophos\Web Intelligence\Logs\2021-01-28.log

    2021-01-28T10:51:18.442Z    action=block    why=policy    policy-reason=category    threat=-    fileclass=-    category=25    url=hxxps://trmcdn.eu
    2021-01-28T10:51:22.577Z    action=block    why=policy    policy-reason=category    threat=-    fileclass=-    category=25    url=hxxp://trmcdn.eu/favicon/test/
    2021-01-28T10:51:22.678Z    action=block    why=policy    policy-reason=category    threat=-    fileclass=-    category=25    url=hxxp://trmcdn.eu/favicon.ico