<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Exclude Powershell Scripts in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75032#M2016</link>
    <description>I assume this is an Endpoint AV question.&lt;BR /&gt;I don’t think we flag ALL Powershell scripts, or is that what’s happening?&lt;BR /&gt;Might be worth a TAC case as it could be a false positive.</description>
    <pubDate>Wed, 12 Feb 2020 20:52:51 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2020-02-12T20:52:51Z</dc:date>
    <item>
      <title>Exclude Powershell Scripts</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75031#M2015</link>
      <description>&lt;P&gt;I have a need to for&amp;nbsp; a couple of users to be able to run some PowerShell scripts on their PC's. Currently they are getting flagged and the script put in quarantined. Its being flagged as PDM:Trojan.Win32.Generic with the category of riskware. How do I go about setting this up? Thanks!&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2020 20:32:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75031#M2015</guid>
      <dc:creator>tom_allen</dc:creator>
      <dc:date>2020-02-12T20:32:56Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude Powershell Scripts</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75032#M2016</link>
      <description>I assume this is an Endpoint AV question.&lt;BR /&gt;I don’t think we flag ALL Powershell scripts, or is that what’s happening?&lt;BR /&gt;Might be worth a TAC case as it could be a false positive.</description>
      <pubDate>Wed, 12 Feb 2020 20:52:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75032#M2016</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-02-12T20:52:51Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude Powershell Scripts</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75081#M2020</link>
      <description>&lt;P&gt;Could configure the scripts to be excluded from being scanned in the Anti-Malware policy on the management server?&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2020 10:52:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/75081#M2020</guid>
      <dc:creator>J_B</dc:creator>
      <dc:date>2020-02-13T10:52:41Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude Powershell Scripts</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/131018#M4728</link>
      <description>&lt;P&gt;Is there an answer to this situation?&lt;/P&gt;&lt;P&gt;BR Michele&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Oct 2021 11:23:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/131018#M4728</guid>
      <dc:creator>Michi</dc:creator>
      <dc:date>2021-10-05T11:23:27Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude Powershell Scripts</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/131026#M4729</link>
      <description>&lt;P&gt;If the script gets blocked by the Anti-Malware Blade, this SK helps: &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk162553&amp;amp;partition=Basic&amp;amp;product=Endpoint#Understanding%20Anti-Malware%20exclusions" target="_self"&gt;sk162553&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If some of the SBA blades are involved:&amp;nbsp; &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk128472" target="_self"&gt;sk128472&lt;/A&gt;&lt;/P&gt;&lt;P&gt;If you want to disable the complete protection itself (I do not recommend it, due to a potential security risk): &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk162072" target="_self"&gt;sk162072&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Oct 2021 12:30:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Exclude-Powershell-Scripts/m-p/131026#M4729</guid>
      <dc:creator>Swordfish</dc:creator>
      <dc:date>2021-10-05T12:30:17Z</dc:date>
    </item>
  </channel>
</rss>

