> Source: [sk167975](https://support.checkpoint.com/results/sk/sk167975)

# sk167975 - IOC feeds feature parses CSV files incorrectly

| Property | Value |
|----------|-------|
| Solution ID | sk167975 |
| Date Created | 2020-08-03 |
| Last Modified | 2021-07-28 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- The IOC feeds feature parses CSV files incorrectly. For example, the following line:

```

"336655","2020-04-08 07:01:25","http://example.com/files/penelop/5.exe","online","malware_download","ArkeiStealer,exe","https://urlhaus.abuse.ch/url/336655/","abuse_ch"

Produces the following output of the "ioc_feeds" utility:

# ioc_feeds add --feed_name ex --transport local_file --resource "/home/admin/Example.csv" --format [value:#3,type:url,comment:#6,name:#7] --comment "#" --delimiter ","
Default value for active is: true
Default value for feed_action is: prevent

Feed Name: ex
Feed is Active
File is locally on the Gateway
Path: /home/admin/Example.csv
Action: Prevent

Fetching active feeds
Convert your csv format to Check Point's supported csv format. Supported fields: [name,value,type,confidence,severity,product,comment]
All content coming after  ['#']  will be ignored

[Name, Value, Type]
exe",http://example.com/files/penelop/5.exe,url,,,,"arkeistealer

```

<br />

## Solution

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.   
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.   
For faster resolution and verification please collect [CPinfo](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92739) files from the Security Management and Security Gateways involved in the case.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
