Serious Discussion Harmony Endpoint by Check Point

Shadowra

Level 36
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,586
A trojan that SentinelOne missed in my test.
Kaspersky doesn't detect it, but blocks the malware anyway! (in PDM detection and CheckPoint detection)

Capture d’écran 2023-07-05 205417.pngCapture d’écran 2023-07-05 205435.png
 

Trident

Level 34
Thread author
Verified
Top Poster
Well-known
Feb 7, 2023
2,349
Also since Checkpoint uses Kaspersky's Engine, does it utilize their disinfection technology?
No, it doesn't. All engines are just plug-ins to the forensics engine and this is the one that provides disinfection. For Kaspersky disinfection, I suggest you install Kaspersky and stop going off-topic on this thread. This thread is not about Kaspersy and it is not suitable for Kaspersky fanboys.
 

Xeno1234

Level 14
Jun 12, 2023
684
No, it doesn't. All engines are just plug-ins to the forensics engine and this is the one that provides disinfection. For Kaspersky disinfection, I suggest you install Kaspersky and stop going off-topic on this thread. This thread is not about Kaspersy and it is not suitable for Kaspersky fanboys.
Sorry - I was just wondering. I'm not sure which one I want to pick since both are great options - the only thing driving me away from checkpoint is the extension just makes thing take forever to download.
 

Xeno1234

Level 14
Jun 12, 2023
684
My only question is if I ever decide too, how do I disable the browser extension.
Actually: I made it Suspend Download until Threat Emulation Completes and I personally think this works for me. It doesnt take forever to download things anymore. I think now I might stick with checkpoint now :D
 
Last edited:

Xeno1234

Level 14
Jun 12, 2023
684
Just out of curiosity - it takes around 2-3 minutes to download a unknown file as its emulating, right? It was a bit faster earlier going for some files around 30 seconds but now its around 2-3 mintues.
 

Trident

Level 34
Thread author
Verified
Top Poster
Well-known
Feb 7, 2023
2,349
Just out of curiosity - it takes around 2-3 minutes to download a unknown file as its emulating, right? It was a bit faster earlier going for some files around 30 seconds but now its around 2-3 mintues.
Dude we got it, stop spamming. You flooded the thread with your useless posts. I don’t wanna see anymore posts from you here, ok?
 
Last edited:

NormanF

Level 9
Verified
Jan 11, 2018
404
No, it doesn't. All engines are just plug-ins to the forensics engine and this is the one that provides disinfection. For Kaspersky disinfection, I suggest you install Kaspersky and stop going off-topic on this thread. This thread is not about Kaspersy and it is not suitable for Kaspersky fanboys.

No it isn't but until recently Checkpoint/ZoneAlarm used Kaspersky AV as its AV engine under license.
 

Trident

Level 34
Thread author
Verified
Top Poster
Well-known
Feb 7, 2023
2,349
No it isn't but until recently Checkpoint/ZoneAlarm used Kaspersky AV as its AV engine under license.
And they still use third-party engine under license as part of complex architecture but they are not one of these TotalAV-like products that just license an SDK and add VPN & TuneUP on top. The third party engine serves just to provide a second opinion on files. If someone is in love with Kaspersky they don’t need to post here just to let us know. It is in the forum rules as well. They are free to post on one of the 20 Kaspersky threads they’ve already created.
 

NormanF

Level 9
Verified
Jan 11, 2018
404
And they still use third-party engine under license as part of complex architecture but they are not one of these TotalAV-like products that just license an SDK and add VPN & TuneUP on top. The third party engine serves just to provide a second opinion on files. If someone is in love with Kaspersky they don’t need to post here just to let us know. It is in the forum rules as well. They are free to post on one of the 20 Kaspersky threads they’ve already created.

Got it. Aside from that the reason cybersecurity vendors license someone else's AV is developing an in-house engine is expensive. It may be cheaper for them to pay to use someone else's.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top