> Source: [sk108536](https://support.checkpoint.com/results/sk/sk108536)

# sk108536 - Application Control Appscan Tool

| Property | Value |
|----------|-------|
| Solution ID | sk108536 |
| Date Created | 2015-11-04 |
| Last Modified | 2023-07-04 |
| Technical Level | General |
| OS | Windows |

## Solution

The Appscan Tool lets you automatically create Application Control rules based on common applications and operating system files on the endpoint computer's network. This is especially useful when you have a clean standard image.

You can import a list of programs identified by their checksums, instead of by filename. Checksums are unique identifiers for programs that cannot be forged. This prevents malicious programs from masquerading as other, innocuous programs.

Create an Appscan for each disk image used in your environment. You can then create rules that will apply to those applications. You create Appscan files by running the *appscan.exe* utility on a computer with a tightly-controlled disk image, then importing the file into Endpoint Security.
**How to get Appscan Tool ?**

* When using Management Server of version prior to R81, [Contact Check Point Support](http://www.checkpoint.com/services/contact/index.html)
* When using Management Server of version R81 and above, use the following link: [Download Appscan Tool](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=109687)

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
