- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Are there any official recommendations from Check Point on adding exceptions to the SBA Anti-Bot blade?
For example, we have the Anti-Bot blade incident when the user accesses the UserCheck of Application Control blade. How to explain this behavior for customer?
Not sure if there are any official recommendations, but you can exclude different types of things for Anti-Bot. If there is a specific process (such as a development application) that keeps triggering Anti-Bot because its trying to go out somewhere legitimately, you can try to exclude that process. We have some of our internal domains excluded for that reason.
Hi Olha,
There are no recommendations for exceptions.
Analyzing your logs, a "Trojan.Win32.Ponmocup.I" bot was found by AntiBot.
The URL used is related to User check simple configuration in Smart dashboard which is configured by the user, hence may contain links which are recognized as malicious.
I suggest to replace it.
A ticket can be opened to TAC team for additional assistance with this issue.
Regards,
Doron Zuckerman
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY