W32/Sohana.BI!worm

description-logoAnalysis

W32/Sohana.BI!worm is classified as an Internet worm.
Internet worm has the functionality to spread to other systems using NetBIOS/SMB, SMTP, MSN Messenger, P2P applications, or Mobile network.
The Fortinet Anti-Virus Analyst Team is currently in the process of creating a detailed description for this virus.

recommended-action-logoRecommended Action

    FortiGate Systems
  • Check the main screen using the web interface for your FortiGate unit to ensure that the latest AV/NIDS database has been downloaded and installed on your system - if required, enable the "Allow Push Update" option.
    FortiClient Systems
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.

Telemetry logoTelemetry

Detection Availability

FortiGate
Extreme
FortiClient
Extended
FortiMail
Extended
FortiSandbox
Extended
FortiWeb
Extended
Web Application Firewall
Extended
FortiIsolator
Extended
FortiDeceptor
Extended
FortiEDR

Version Updates

Date Version Detail
2021-07-06 87.00429
2021-05-19 86.00293
2021-04-20 85.00593
2021-04-17 85.00511
2021-04-06 85.00256
2021-02-08 83.89200 Sig Updated
2021-01-18 83.38900 Sig Updated
2020-12-03 82.28000 Sig Updated
2020-11-01 81.51200 Sig Updated
2020-10-06 80.89700 Sig Updated