FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
Jonathan_Body_FTNT
Article Id 192044
Description
This article explains how FortiClient Heuristics works.

Scope
All FortiClient users using the Heuristics feature

Solution
Heuristics scanning can be enabled in two profiles within the FortiClient. Heuristics scanning can be enabled for the file system
in AntiVirus & AntiSpyware > Settings > Advanced Settings and selecting Heuristic scanning.

Once enabled FortiClient software uses heuristic techniques to scan files to find the unknown viruses and threats that have not yet been cataloged with signatures. Heuristics looks at the characteristics of a file, such as size or architecture, as well as the behaviors of its code to determine the likelihood of an infection, and subsequently quarantines any file it deems suspicious based on these checks.

Heuristics scanning can also be enabled for checking threats coming from email this can be enabled by going to AntiVirus & AntiSpyware > Settings > Email and selecting Email attachments heuristics scanning

The same heuristics principles applies to email attachments as to the file system, file check.

For further information on these features then you can also consult the FortiClient User Guide.


Contributors