> Source: [sk116024](https://support.checkpoint.com/results/sk/sk116024)

# sk116024 - Harmony Endpoint - Troubleshooting Forensics Integration with Third Party Anti-Virus Vendors

| Property | Value |
|----------|-------|
| Solution ID | sk116024 |
| Date Created | 2017-02-23 |
| Last Modified | 2023-11-14 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X, R82.10, R82, R81.20 |

## Solution

1. Open **Microsoft Event Viewer** on the endpoint.
2. Search for the Anti-Virus vendor log under **Application** or **Application and Services Logs**.
3. Find the eicar notification log and export it.
4. [Contact support](http://www.checkpoint.com/support-services/contact-support/index.html) with exported log, in addition to Anti-Virus vendor client name and version.
5. If the log is missing, it indicates that the Anti-Virus vendor did not create the logs in the Event Viewer. In such a case, enable it at the third-party vendor's policy management.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
