> Source: [sk110481](https://support.checkpoint.com/results/sk/sk110481)

# sk110481 - How to test the Anti-Bot Software Blade 

| Property | Value |
|----------|-------|
| Solution ID | sk110481 |
| Date Created | 2016-03-22 |
| Last Modified | 2022-11-29 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Solution

Run the [Test for Anti-Bot Software Blade](http://sc1.checkpoint.com/za/images/threatwiki/pages/TestAntiBotBlade.html) to verify if Anti-Bot blade is enabled and works properly.

[](http://sc1.checkpoint.com/za/images/threatwiki/pages/TestAntiBotBlade.html)

A similar log will be created:

Number: 174997  
Date: 11Mar2016  
Time: 8:29:26  
Interface: eth0  
Origin: GW1  
Type: Log  
Action: Block  
Service: http (80)  
Source Port: 51857  
Source: 10.1.1.240  
Destination: 23.8.240.143  
Protocol: tcp  
Rule UID: {08310828-90B2-4AA1-B2A9-9FBE78FE34AB}  
Current Rule Number: 1-Standard  
UserCheck Message to User: Your computer is trying to access a malicious server. It is probably infected by malware. For more information and remediation, please contact your help desk.

Click here to report an incorrect classification. Activity: Communication with C\&C site URL: <http://sc1.checkpoint.com/za/images/threatwiki/pages/TestAntiBotBlade.html> Reference: 793CE9C4  
User Check: 1  
UserCheck ID: E44985BA-66D9-31EC-8B0B-9F9E793CE9C4  
Product: Anti-Bot  
Protection ID: 00233CFEE  
Protection Name: Check Point - Testing Bot  
Severity: Medium  
Confidence Level: High  
Source OS: Windows  
Proxied Source IP: 10.1.1.240  
Client Type: Chrome  
Incident UID: {56E2C836-0000-0002-1AAD-1AACC0000000}  
Suppressed Logs: 1  
Sent Bytes: 0  
Received Bytes: 0  
Packet Capture Time: 1457702967  
Product Family: Network  
UserCheck Scope: Application  
Frequency: 1 days  
Resource: <http://sc1.checkpoint.com/za/images/threatwiki/pages/TestAntiBotBlade.html>  
Protection Type: URL Reputation  
Malware Family: Check Point  
Malware Activity: Communication with C\&C site  
Malware Rule ID: {2972351B-79B4-A541-BD8C-6C9E37CD6151}  
Packet Capture ID: 10.1.1.240_maildir_sent_new_time1457702967.mail-0-4232237.localhost  
Packet Capture Name: src-10.1.1.240.eml  
Scope: 10.1.1.240  
Log ID: 9999  
Policy Info: Policy Name: Standard  
Created at: Fri Mar 11 06:42:16 2016  
Installed from: SecurityGateway_name

<br />

<br />

<br />

You can also test below website to trigger Anti-Bot logs:

* www.xbota-malwareablocal.com
* www.xbotb-malwareabrad.com

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
