- CheckMates
- :
- Products
- :
- Harmony
- :
- Endpoint
- :
- ransomware.win.honey Alert
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Jump to solution
ransomware.win.honey Alert
When removing user profiles there is ofcourse editing of CheckPoint honeypot files which in turn raise the alert for ransomware.win.honey.
Whats the best practice for removing user profiles that will stop notification of ransomware?
1 Solution
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Just an update encase anyone else has this issue. Endpoint E80.30 seems to have fixed this bug.
3 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
What EP client version your are using?
Thx,
Roman
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks for your reply Roman.
We have some on version 82.00.9089 but most endpoints have recently completed upgrade to version 85.50.1602.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Just an update encase anyone else has this issue. Endpoint E80.30 seems to have fixed this bug.
