<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Malware deducted in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66357#M2549</link>
    <description>&lt;P&gt;What do you mean with&amp;nbsp;&lt;SPAN&gt;latest firmware 86 ? Latest firmware is 77.20.87, newest build is the&lt;/SPAN&gt;&lt;STRONG&gt;&amp;nbsp;R77.20.87 Jumbo Hotfix Accumulator Build 2960&lt;/STRONG&gt; and&amp;nbsp;&lt;SPAN&gt;is available in&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk153433" target="_blank" rel="noopener"&gt;sk153433&lt;/A&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 31 Oct 2019 14:41:25 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2019-10-31T14:41:25Z</dc:date>
    <item>
      <title>Malware deducted</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/65994#M2518</link>
      <description>&lt;P&gt;I am using the Checkpoint 730 with latest firmware 86.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="z11ab.png" style="width: 598px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2873i74715628599A37B9/image-size/large?v=v2&amp;amp;px=999" role="button" title="z11ab.png" alt="z11ab.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Few queries in my mind&amp;nbsp;&lt;/P&gt;&lt;P&gt;1)&amp;nbsp;Malware has been Infected. I am not sure it has been removed automatic or not.&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) How system has been infected when internet is pass through the firewall only.&lt;/P&gt;&lt;P&gt;3) I have scan with kaspersky Antivirus but the infected system has been not deducted the malware. So i have to install Bitdefender for remove the malware because there are 4 results which deducted as Malware according to Virustotal?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="k1.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2874iA4571A69C31AB0A6/image-size/large?v=v2&amp;amp;px=999" role="button" title="k1.png" alt="k1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Sorry if this is in wrong category section, please move this thread to another category.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 27 Oct 2019 10:16:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/65994#M2518</guid>
      <dc:creator>humt</dc:creator>
      <dc:date>2019-10-27T10:16:24Z</dc:date>
    </item>
    <item>
      <title>Re: Malware deducted</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/65996#M2519</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Assuming you have eliminated the possibility of a false positive by consulting VirusTotal and Hybrid Analysis, please see answers to your questions below:&lt;/P&gt;&lt;P&gt;1) Check Point have created&amp;nbsp;sk106019 to cleanup infected systems. Feel free to follow it and advise results.&lt;/P&gt;&lt;P&gt;2) There are usually multiple infiltration channels through which malware can be delivered. The affected host could have been infected in a number of different ways; including from internally as well. Since you use Bitdefender for EDR, I would advise that you investigate the delivery method as it should be shown in an illustrated, graphic way (that is something I have done myself in the past).&lt;/P&gt;&lt;P&gt;3) You can remove it with Bitdefender but again, you should also be able to achieve the same result with the sk mentioned in step 1.&lt;/P&gt;&lt;P&gt;I hope this helps.&lt;/P&gt;</description>
      <pubDate>Sun, 27 Oct 2019 11:57:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/65996#M2519</guid>
      <dc:creator>Nick_Doropoulos</dc:creator>
      <dc:date>2019-10-27T11:57:09Z</dc:date>
    </item>
    <item>
      <title>Re: Malware deducted</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66346#M2548</link>
      <description>&lt;P&gt;This is a Malware and how would it enter into system. This is main issue for me. I have send the details to Kasperksy Lab also. And they told this has been included as virus now.&amp;nbsp; I have to format the system now because it is being corrupted the system firewall also.&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2019 13:28:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66346#M2548</guid>
      <dc:creator>humt</dc:creator>
      <dc:date>2019-10-31T13:28:24Z</dc:date>
    </item>
    <item>
      <title>Re: Malware deducted</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66357#M2549</link>
      <description>&lt;P&gt;What do you mean with&amp;nbsp;&lt;SPAN&gt;latest firmware 86 ? Latest firmware is 77.20.87, newest build is the&lt;/SPAN&gt;&lt;STRONG&gt;&amp;nbsp;R77.20.87 Jumbo Hotfix Accumulator Build 2960&lt;/STRONG&gt; and&amp;nbsp;&lt;SPAN&gt;is available in&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk153433" target="_blank" rel="noopener"&gt;sk153433&lt;/A&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2019 14:41:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66357#M2549</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-10-31T14:41:25Z</dc:date>
    </item>
    <item>
      <title>Re: Malware deducted</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66401#M2551</link>
      <description>&lt;P&gt;Strange it is not updating automatic. I have checked it for manually update but it shows 86 is only the latest version. Let me download and update manually. Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 01 Nov 2019 14:49:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Malware-deducted/m-p/66401#M2551</guid>
      <dc:creator>humt</dc:creator>
      <dc:date>2019-11-01T14:49:04Z</dc:date>
    </item>
  </channel>
</rss>

