<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: false positive - Endpoint Behavioral Guard in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/false-positive-Endpoint-Behavioral-Guard/m-p/150166#M5733</link>
    <description>&lt;P&gt;Your best bet is to open a TAC case and provide the relevant information.&lt;/P&gt;</description>
    <pubDate>Fri, 03 Jun 2022 18:38:04 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2022-06-03T18:38:04Z</dc:date>
    <item>
      <title>false positive - Endpoint Behavioral Guard</title>
      <link>https://community.checkpoint.com/t5/Endpoint/false-positive-Endpoint-Behavioral-Guard/m-p/150153#M5732</link>
      <description>&lt;P&gt;I am currently having problems with the VPN because the EDR solution detects the file as a threat: 0a741146f8f48003e317ebf59000c38a - zipextractor.exe used by my lenovo machine in the following path: c:\programdata\lenovo\imcontroller\systemplugindata\lenovofirstrunexperiencepackage\downloads\zipextractor .exe signs it as "gen.win.creddump.c" because it is used in the task created in the operating system with this information "lenovowelcometask.exe(83c042a7ce33949bf9b3cd88931a4a93); zipextractor.exe(0a741146f8f48003e317ebf59000c38a); " please if someone knows the procedure to report it as a false positive or to confirm that at least on my computer its use is not malicious, even if it is used for malicious activities in other scenarios. The files can be located in virustotal.com, They are public files.&lt;/P&gt;&lt;P&gt;#falsepositive &lt;LI-PRODUCT title="Check Point SandBlast" id="sandblast"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jun 2022 14:44:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/false-positive-Endpoint-Behavioral-Guard/m-p/150153#M5732</guid>
      <dc:creator>huesos</dc:creator>
      <dc:date>2022-06-03T14:44:44Z</dc:date>
    </item>
    <item>
      <title>Re: false positive - Endpoint Behavioral Guard</title>
      <link>https://community.checkpoint.com/t5/Endpoint/false-positive-Endpoint-Behavioral-Guard/m-p/150166#M5733</link>
      <description>&lt;P&gt;Your best bet is to open a TAC case and provide the relevant information.&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jun 2022 18:38:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/false-positive-Endpoint-Behavioral-Guard/m-p/150166#M5733</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-06-03T18:38:04Z</dc:date>
    </item>
  </channel>
</rss>

