The page may not load correctly.
Dr.Web for Windows 11.5:
Dr.Web for Windows 12:
You can also toggle off this option during the anti-virus installation process in the Installation parameters section — in the Advanced options tab.
Prior to the installation, we strongly recommend doing the following:
To run the installation in normal mode, use one of the following:
Then proceed with the following steps:
Follow the installation wizard instructions. At any installation step before file copying process is started you can use the two buttons:
In order to check the version number, right-click on the Dr.Web icon in the notifications area and select About. In the next window, you will see the Dr.Web version number and all the modules versions as well.
When purchasing our anti-virus, you obtain a certificate indicating which product the license you have bought is applied to. So, you need to install the product indicated.
There are two ways to do it:
In this case, you need to download the latest anti-virus distribution file from our website and install it.
In default installation, all the anti-virus package components are automatically installed into C:\Program Files\DrWeb\ folder.
In custom installation, you can specify the list of components to be installed (e.g. you may choose not to install a firewall if you don’t need it), select installation folder and configure update server.
To have this error fixed, you need to download and install an update for Windows, and then restart anti-virus installation.
It is not allowed to install several anti-virus programs on one PC at a time — they will conflict with each other that may considerably slow down you PC or make it completely non-operational. If you have an anti-virus software already installed on your PC, but intend to install a new product from another vendor, then you need to remove the anti-virus program you have, prior to the installation.
If you wish to install another anti-virus program, you do it at your own risk, and become responsible for all the consequences because the consequences of such installation might be unpredictable including inability of your OS to boot as a result of two or more anti-viruses installed on your PC.
If you have not installed the self-protection module, do the following:
Quarantined files can be deleted by selecting the desired file and clicking Delete. It will remove the file from the quarantine and from the system.
A Dr.Web anti-virus is a set of programs, each of them protects its own section in your computer's defense. Removing or disabling at least one component greatly reduces the reliability of anti-virus protection in general, so we strongly advise you not to disable any of its modules unless absolutely necessary.
To temporarily disable self-protection, right-click on the Dr.Web icon in the system tray and in the context menu select Disable self-protection (if this feature is unavailable, please switch to the Administrative Mode and try again). A window will appear where you'll need to enter numbers from the picture and click Disable self-protection.
Caution! Disabling self-protection is not recommended, activate it again as soon as possible.
Right-click on the Dr.Web icon in the system tray and select Tools–> Quarantine. In the subsequent window select the file and click Restore.
There are several ways to start the scanner.
In respect to infected and incurable objects, the Move action does the following: The file is moved to a special quarantine folder. Furthermore, once moved, the file loses its extension. The virus is literally disarmed and rendered non-operational and, therefore, harmless. Later, you can open the Quarantine Manager and delete the files if you do not need them.
Quarantined viruses are not dangerous because they can't be launched. If you want to permanently delete infected files, clean the quarantine:
Dr.Web SelfPROtect protects the modules, processes, and branches of the registry used by Dr.Web for Windows from outside interference. The outside interference includes incompetent user actions that may render the anti-virus non-operational or make it malfunction as well as actions taken by anti-antiviruses that may terminate anti-virus processes, modify and remove its files and delete Windows Registry branches related to Dr.Web. Disabling the self-defense is not recommended!
The quarantine is a special folder where the anti-virus stores suspicious and infected files. Suspicious files are stored to be later sent to Doctor Web's laboratory for analysis, infected files get into the folder if their removal and curing is impossible for some reason.
Infected files are moved to a special storage — Quarantine — from where you can remove the file if necessary, restore it to its original location or send it for analysis in our virus lab.
To answer this question, you need to understand the difference between viruses and Trojan horses. Typically, a virus adds (appends its code) itself to an infected file so it incorporates its own code and the virus's code. Together they represent a virus-infected file. Most of these files can be cured by the Dr.Web anti-virus. Here we speak about curing files of viruses rather then curing viruses.
A Trojan horse is a complete malicious program. It doesn't inject its code into files but operates as a separate program, that's why it can't be cured but removed. Some Trojan programs compromise various system objects such as the Windows Registry. In this case we can speak about curing the system (but not the Trojan horse), which includes removing the Trojan and restoring the compromised objects to their healthy state.
The utility is not designed to be used as a main Dr.Web software uninstallation tool. Dr.Web Remover utility is a damaged Dr.Web version emergency removal tool. The anti-virus is recommended to be uninstalled with the standard Windows tools.
If the installed version of Dr.Web Anti-virus was damaged for some reasons and cannot be removed in a regular way — please use the Dr.Web Remover emergency removal utility. Run Dr.Web Remover, enter the code from the CAPTCHA (it is necessary in order to confirm that is the user, not application, who attempts to remove antivirus) and press Remove.
Like any other program, Dr.Web Anti-virus can be removed with standard operating system tools:
If you were unable to remove the anti-virus in such a way, please use a special Dr.Web Remover utility, which can be downloaded here.
Dr.Web Remover is intended to be used to delete the results of incorrect/damaged installations of Dr.Web for Windows. The supported versions are 4.33, 4.44, 5.0, 6.0, 7.0, and 8.0. The utility can also be used with the same versions of Dr.Web Enterprise Suite client software when standard removal tools are not available or do not work.
Try running SpIDer Gate with the -dbg: 2 parameter. To do this, click Start-> Run, type in the string provided below:
"C:\Program Files\DrWeb\spidergate.exe" –dbg:2
If the problem persists, please contact the technical support service.
No, SpIDer Gate is an HTTP-monitor. It performs the following tasks:
At the same time the firewall protects your PC or network from unauthorized access.
Thus, SpIDer Gate and the firewall must operate simultaneously on your computer to protect your system against viruses and network attacks.
No. SpIDer Gate operates independently of the programs that use the Internet (including browsers).
Dr.Web anti-virus engine is so fast that SpIDer Gate won’t delay loading of web-pages or slow-down file transfers.
Right-click on the Dr.Web icon in the notifications area and select SpIDer Gate–>Settings from the list (if this item is unavailable, you should first switch to the Administrator mode). In the next window, open the Log section and use the slider to set the Extended mode. Press Ok to confirm the changes made.
Further, if required, you can reproduce the problem that must be analysed using the extended report. Please keep in mind that the Debug log is not always required because redundant information might complicate troubleshooting.
It is not recommended to disable the SpIDer Gate HTTP monitor because nowadays a lot of malware is distributed via infected websites. There are many script viruses and exploits that can cause harm to the system before they are saved to your hard drive and, consequently, detected by the SpIDer Guard® file monitor.
If disabling HTTP monitor is still necessary, right-click on the Dr.Web icon and in the next menu, select SpIDer Gate –> Disable. When anti-virus self-protection screen appears, type digits from the picture into the string and click Disable SpIDer Gate.
Right-click on the Dr.Web icon in the system tray and select SpIDer Gate-> Disable in the context menu.
Caution! It is not recommended to disable the HTTP-monitor SpIDer Gate because nowadays a lot of malware is distributed via infected web sites. There are many script viruses and exploits that can harm the system before they are saved to your hard drive and, consequently, detected by the file monitor SpIDer Guard.
Since SpIDer Gate utilizes the Dr.Web engine and databases, it is updated automatically along with other anti-virus modules.
As other modules of the program Dr.Web, SpIDer Gate features the same anti-virus engine and uses the same virus databases and therefore is updated along with other modules.
The red icon indicates that SpIDer Gate is disabled. To activate it, right click on the Dr.Web icon in the notification area. In the menu, hover over the SpIDer Gate item and in the drop-down list select Enable.
If the icon remains red, you have two options:
One of SpIDer Gate’s tasks is to inform users that visiting some websites is dangerous or undesirable, for reasons that include the presence of “pirated” content. Dr.Web informs users about such websites because they are accompanied by malicious programs. Websites are included in the so-called Dr.Web “anti-piracy” database only on the basis of allegations made by content copyright holders. Each allegation is verified by Doctor Web’s lawyers before the decision is made to include the corresponding URL in the database. When users receive SpIDer Gate notifications concerning the undesirability of visiting pirated websites, they are getting objective, legally considered information about intellectual property infringement. Thus, Doctor Web helps users of its products:
Users make their own decisions as to whether it is worth visiting the websites they have been notified about. The SpIDer Gate component can be enabled or disabled at their discretion.
The unique Dr.Web anti-virus engine allows SpIDer Gate to scan traffic so quickly that you will never notice any delay when viewing web pages and downloading files from the Internet.
If you believe that SpIDer Gate has mistakenly blocked a respected site, please let us know through the form on our website.
If you need to access a suspicious site, right click on the Dr.Web icon in the system tray and in the context menu select SpIDer Gate-> Settings. Clear the Block known source check box and press Ok.
Caution! Disabling this option is not recommended, because pages from all sites, including potentially dangerous ones will be loaded without a corresponding warning.
SpIDer Gate's log file name is spidergate.log. The file is located in the C:\Documents and Settings\Your_user_name\DoctorWeb folder.
SpIDer Gate is compatible with all web-browsers.
Dr.Web anti-virus engine is so fast that SpIDer Gate won’t delay loading of web-pages or slow-down file transfers.
The Speed balance option allows you to adjust the amount of CPU time utilized to scan Internet traffic. The higher the scanning priority, the more CPU resources it will use, but it will help maintain high speed connectivity. Low priority results in low CPU load and slower network communication speed. Changing the default value usually is not required.
Add the site's address onto the white list, or if you are sure that the site is blocked by mistake, report the false positive to Doctor Web.
Send links to web-site mistakenly rated by the module as undesirable to Doctor Web's laboratory via the web-form on our website.
Right-click on the Dr.Web icon in the notification area and select Parental Control → Settings. Enter the password and select Allow access to all sites. In the Local Access tab, select Allow and Unlimited in the corresponding sections. Click Apply to save the changes.
Caution! Disabling Parental control will allow access to all resources on the Internet, LAN and the PC.
There is no way to recover a Parental control access password. The only solution is to import a new password into the registry from a special file.
Right-click on the Dr.Web icon in the notification area and select Parental Control → Settings. If this is the first launch of the Parental control module, you will need to set a password for it. Then in the subsequent window select what you want to block and then click Apply.
If the password for parental control is not specified, each time you open parental control settings, you will be prompted to set a password. It is Recommended that you set a password right away to prevent unauthorized access to these settings. If no password is required, click Cancel.
If upon activating the Parental control you receive the message "Unable to find a key file", it means that your license does not cover the Parental control. In this case, it is recommended to remove the component: Go to Start–> Settings–> Control Panel–> Add and Remove Programs, find the Dr.Web anti-virus on the list, click Modify and follow the wizard's instructions to disable this component.
Use the local access settings to restrict access to resources on your computer - files and folders. In addition, it is possible to prohibit the use of removable storage media and access to the LAN. By restricting access to such resources you can avoid damaging or removing sensitive data by a third party and prevent unauthorized access to confidential information.
The Parental control module allows you to restrict users' access to certain sites on the Internet, local files and folders, local network resources. An administrator can manually configure a list of banned sites or take advantage of the constantly updated thematic lists provided by Doctor Web.
Local access protection and the URL filter are parental control features disabled by default. You need to activate them manually by setting the parental control operation mode and access password in its settings.
The Parental control module can restrict acces to any specific sites or web-pages, as well as to all known sites containing information on certain subjects (such as sites about drugs or weapons, sites of paid on-line games, etc.). A list of specific websites to be blocked is set up by the user; both individual addresses and keywords found in URLs can be specified in this block list. Blocking websites by subject is carried out automatically using the lists, updated regularly by Doctor Web.
If you set a password for accessing the Parental Control, only the computer's administrator will be able to do so after entering the password. If no password is set, then any user with administrative privileges will be able to change the settings.
Virus databases do indeed get larger with each update. But Dr.Web solutions use the most cutting-edge anti-virus database format so that as the virus databases get bigger, scan speed is not reduced.
Moreover, because the latest technologies are applied to Dr.Web solutions, the size of the virus databases can be reduced. This is because they exclude entries containing information about malicious programs that are automatically detected with the help of the newest technologies.
Doctor Web strives to release Dr.Web component updates, especially critical ones, as quickly as possible. After all, the reliability of the protection directly depends on the anti-virus’s ability to intercept and cure the latest threats and still operate error free. Experience shows that for each individual product, updates that require a reboot are being released no more than once or twice a month, the only exception to this being recently released program versions and those under active development.
First do the following:
If after trying the above, you are still experiencing difficulties, please contact the Doctor Web technical support service and describe in detail how your computer connects to the Internet (note: if a proxy server is involved, please specify whether authentication is required, and whether your browser or Dr.Web update module is configured to be used via the proxy server).
When an Internet connection is present, the anti-virus updates every 30 minutes by default (this is the most optimal setting).
When required, you can change this setting by doing the following: right-click on the Dr.Web icon located in the bottom-right corner of the system tray. Then, in the context menu, select Tools → Settings and go to the Updating tab.
Alternatively, you can update the anti-virus manually by right-clicking on the Dr.Web icon in the bottom-right corner of the system tray, and then selecting Updating in the context menu.
No, that’s not true. When you buy the anti-virus, you are paying not only for the program itself, but also for the right to get anti-virus database and module updates as well as the opportunity to contact the technical support service while your license is valid. Nobody will ever come after you for additional money! Proof of this can be found in the Dr.Web license agreement which you are invited to read before you install the anti-virus. Doctor Web assumes a number of obligations and guarantees the following:
‘Throughout the entire software usage period, the User is granted the right to receive through the Internet virus database updates as well as upgrades of the software modules as they are made available by the Rights Holder’.
The Dr.Web license agreement is a legal document that guarantees your rights as a consumer.
In the window that notifies users that a reboot is required, you can choose when you want the system rebooted. You can choose to do it now or postpone it until a time convenient for you.
Both are aimed at keeping the anti-virus current to protect a computer against any and all threats, including the latest ones. The difference is that when only the virus databases are updated, you don’t need to reboot the system, but when the anti-virus components are updated, rebooting may often be necessary. We strongly recommend that you act on Dr.Web reboot notifications related to component updates because out-of-sequence updating may lead to a weakening of protection.
Just one Dr.Web database entry can lead to the detection of tens, or hundreds, or sometimes even thousands of similar viruses.
Moreover, the presence of Origins Tracing™ and structural entropy analysis in the Dr.Web anti-virus makes it possible to detect malicious programs that are so new they have yet to undergo analysis in the Doctor Web anti-virus laboratory.
The smaller number of virus entries (compared to some other anti-virus programs) even makes it possible to detect unknown viruses (i.e., those not in the virus database) with a high degree of certainty. These are viruses that will be created on the basis of existing viruses.
How do users benefit from the small size of the virus database and the fewer number of entries in it?
Thus, the fundamental difference between the Dr.Web virus databases and the virus databases of other anti-virus programs is that with its fewer number of database entries, the Dr.Web database allows as many (or even more) viruses and malicious programs to be detected.
Hundreds of thousands of new viruses appear DAILY — and correspondingly, tens of thousands appear every hour. The overwhelming majority of them are modifications—brothers and sisters of existing viruses. Yes, the Dr.Web heuristic analyser and the Dr.Web behavioural analyser really do make it possible to detect with a high degree of probability that a file has been infected or is a Trojan itself. But “probably infected” does not mean “infected for sure”! This file will be declared a virus only after its virus signature has been added to the Dr.Web virus database.
But no anti-virus software vendor will ever guarantee you that today won’t be the day that somebody writes a brand new virus that can’t be detected by even the most perfect heuristic analyser.
As a rule, malicious programs reach their victims at the same time they reach the Doctor Web anti-virus laboratory for analysis, and in the case of the newest malicious programs (those not yet detected by any available mechanism), anti-virus analysts need time to develop and test a “cure”. Frequent updating makes it possible to minimise the time it takes for potential victims of criminal attacks to get hold of updates. Often ‘cures’ for malicious files are available, but have not yet been downloaded.
Unlike its competitors, Doctor Web’s principled position is to release updates as frequently as possible so as to minimise the time period during which new threats can pose a danger.
That is why the anti-virus databases need to be updated every time the computer is connected to the Internet or as frequently as possible if the connection is continuous.
Rebooting is needed so that the updated Dr.Web drivers work properly with the operating system. Our competitors’ anti-virus solutions are updated in the same manner.
In order to launch full scan, please use the Task scheduler.Windows XP:
Open the Windows task scheduler (Start->Control panel->Assigned tasks). Find the Dr.Web Daily Scan task pre-installed during installation and open it to edit. In the Task tab, check Enabled. In the Schedule tab, specify scan frequency and time you need. Press Ok to apply the settings. Enter user name and password upon the operating system request.Windows Vista/7:
In order to edit a task pre-installed during the anti-virus installation, right-click on the Dr.Web icon in the notifications area and select Tools->Scheduler. In the next window, select the Drweb Daily Scan task, which is disabled by default. You should enable it (by right-clicking the task and selecting Enable option). In the Triggers tab, edit launch time and frequency.
Quick scan of the critical system objects with the anti-virus scanner is launched automatically as the program starts. It is required to find out if any viruses exist in the system. After the scan is complete, two right windows indicate numbers. The left one shows the number of viruses found on your PC, while the right one — the number of RAM objects and files scanned with the anti-virus scanner.
The Move action in respect to infected and incurable objects means the following: an object is moved to a special directory specified in the Move to field (by default, it is the infected.!!! subdirectory of the Dr.Web installation directory) and accessible even after the scan is over. Furthermore, after having been moved, the file loses its extension. Such actions mean that the virus is actually “disarmed”, rendered incapable and, therefore, absolutely safe.
Dr.Web scanner for Windows either scans files at the user’s command or on the schedule specified in the Scheduler. Not all the files are checked, but only those specified in the scanner settings instead. By default, files are checked by format — i.e., files in archives, packed and e-mail files, and RAM and all the autorun objects as well. You may choose to scan disks, folders, scan by file types, by preset mask, or scan all the files. To view current scanner settings, go to the program main window menu bar and select Settings–>Modify settings.
To move automatically all messages marked as spam by Dr.Web Anti-spam into definite mail folder in your mail client, do the following.
Incoming mail filtering is processed by SpIDer Mail, one of Dr.Web modules. The following steps describe how to activate the spam filter:
After you’ve activated your spam filter, SpIDer Mail with Vade Retro anti-spam engine integrated into it starts filtering all your incoming mail on POP3 and IMAP4 protocols.
At first all spam messages were of Latin origin and spam-filters’ developers, represented for the most part by Western companies, were aimed at filtering these ones only. Later on spammers switched into Cyrillic, too. But since the bulk of spam is still in Latin, there are some difficulties to filter Cyrillic spam.
To save your Cyrillic correspondence from being filtered as spam without a prior analysis, check the “Allow Cyrillic texts” box. Otherwise such e-mails are likely to be marked as spam. “Allow Chinese, Japanese, Korean text” option works the same way.
To have all the messages marked with Dr.Web spam filter automatically moved to a specific folder — let's call it Spam, for example, — follow the below steps:
Below are detailed steps on how to set up rules for various e-mail clients. It is assumed that the Anti-spam is configured to mark an incoming spam with the [SPAM] prefix. If you chose an alternative prefix, use it in accordance with this manual...
Whitelists and Blacklists contain mail addresses you either trust or not.
Both lists settings should be fill in one after another, parted by “;”. The “*” sign can be used as a part of e-mail address. For example, *@domain.org passes for all addresses with “domain.org” domain name.
In case some messages are falsely filtered, they should be forwarded as attachments to special addresses for analysis and correction of spam-filtering techniques.
If you install a Dr.Web package that includes the firewall, you will be prompted to deactivate the Windows firewall. The Windows firewall must be disabled, doing otherwise will result in numerous conflicts that can cause errors or an OS crash.
Neither it is recommended to enable the Windows firewall while the Dr.Web firewall is working.
Right-click on the Dr.Web icon in the notification area. In the menu, hover over the Firewall item and in the drop-down list, select Settings. Click the Application tab.
To create an application rule, click Create. In the opened window, specify the path to the executable file for the program for which you are creating the rule, and select
You do not need to configure rules manually if the firewall is operating in the training mode — it is easier to configure access for each application right from the firewall notification window when it attempts to connect to the network for the first time.
You can't disable automatic startup for the firewall with standard tools available in the system.. However, you can disable temporarily various anti-virus modules including the firewall at any moment. Right click on the Dr.Web icon in the system tray and select Firewall-> Disable in the context menu.
Note: If the Disable item is not available in the menu, switch to the Administrative mode.
Dr.Web Firewall in the real time mode creates rules for applications running in the system but are not on its list. Therefore, you must create rules for such applications when they attempt to connect to the network for the first time. A connection request is issued for specific ports and protocols utilized by the application. You can allow all the requested connections, a connection only for a specific protocol and port, or block the connection. Once the rule is created, the firewall handles requests according to the rule and no longer gives out messages regarding application's network activity to the user.
The predefined database contains rules for the most popular programs, as well as all Windows system services and applications. The database is updated on a regular basis.
For more information see the video tutorial on configuring the Dr.Web firewall.
Dr.Web Firewall has four operating modes:
Yes, you can. In order to disable SpIDer Guard, right-click on the Dr.Web icon in the notifications area and select SpIDer Guard–>Disable.
In order to exclude a program or file from the SpIDer Guard scan, right-click on the Dr.Web icon in the notifications area and select SpIDer Guard–>Settings. In the next window, proceed to the Exclusions tab, press the Browse button to select the folder where the program to be excluded from the scan is installed, and press Add.
Should it become necessary to exclude a folder or file while the Dr.Web for Windows Scanner is running — select Settings–>Modify settings in the scanner menu. You may add a folder in the Scan–>Excluded paths list tab, and a certain file in the Excluded files list, then you need to press Add.
Anti-virus guard is loaded into RAM and checks files being created or modified on the hard disk and all the files being opened on network disks and removable media “on the fly”.
Besides, SpIDer Guard constantly traces running processes activities specific to viruses and blocks those processes upon their detection.
Upon detection of infected objects, SpIDer Guard interacts with them according to the specified settings.
In the Optimal mode the guard scans only files being launched, created and modified on hard disks, removable media and network disks.
Paranoid mode is an enhanced protection mode. When this mode is activated, the guard starts scanning all the files being opened, created or modified on hard disks, removable media and network disks.
Enabling this option allows to block attempts to modify HOSTS system file used by operating system to make an Internet access easier. Modifications of this file may be resulted in virus or any other malicious program activities, and this may cause loss of access to some websites or network resources as a whole.
Enabling this option allows to block automatic launch of autorun.exe-like files from removable media and hard disk drives. This option is used to neutralize autorun-viruses, which are automatically activated when a device is connected to the PC with autorun option enabled.
SpIDer Guard log file is called spiderg3.log and located in the anti-virus installation folder (by default, it is C:\Program Files\DrWeb).
You can test proper operability of anti-virus programs detecting viruses by their signatures with the use of EICAR (European Institute for Computer Anti-Virus Research) file.
This program is specially designed to allow you to see how the installed anti-virus will alert you to the viruses it detected, with no need to expose your PC to danger. Eicar program is not malicious but is specially tuned so that most anti-viruses treat it as a virus. Dr.Web refers to this “virus” as EICAR Test File (Not a Virus!).
To test mail anti-virus performance, you can ask a friend of yours to send you this file, or otherwise try to send it to yourself. If SpIDer Mail detects a virus — that is OK.
If the spam filter misrecognizes some letters, they can be forwarded to special mail addresses for analysis and improving filter performance quality:
Important! You should forward messages as attachment, not as inline.
Yes, there are and their number is growing. Android.SmsSend Trojan horses that emerged as early as in 2010 are the most common threats to the OS. They are designed to send SMS messages at premium numbers and sign up subscribers to various services.
Mobile banking Trojans are designed to intercept SMS messages, steal mTAN-codes and pass them to criminals who perform various financial transactions with accounts of unsuspecting victims (for example, make online purchases) pose an extreme danger. Android.SpyEye.1 is a banking Trojan for Android OS.
Such malware as Android.MailSteal.1.origin, Android.Maxbet.1.origin, Android.Loozfon.origin and Android.EmailSpy.origin. steal e-mail addresses from devices' address books and send them to a remote server, so that attackers can carry out spam mailings.
Malignant applications for mobile OSs are the fastest growing malware segment. As popularity of an OS is growing among users, so does the interest in it on the part of intruders, whose main goal is to get money. The number of threats to Android increases most rapidly.
Dr.Web for Android doesn't block outgoing calls.
Dr.Web anti-virus occupies about 1 MB in the device memory. Only the file monitor that keeps track of the system processes resides in the memory at all times. The monitor requires a certain amount of resources, but it has no noticeable effect on overall performance.
Start Dr.Web for Android and tap the Menu button on your mobile device. In the pop-up window select Settings.
Start Dr.Web for Android. In the subsequent window go to the SpIDer Guard section and check if the Monitor is enabled and protects the system message is displayed. If it is, the anti-virus protects your device. If the message is Monitor disabled, the monitor is not running. Tap the monitor indicator button.
Dr.Web for Android interface language corresponds to the current language of the operating system. Select Russian as the Android interface language and the anti-virus will switch to Russian automatically.
Note: to change the OS language tap Menu and point to Settings in the subsequent pop-up window. Go to Language & Keyboard, Select Language and choose the language you need in the succeeding window.
Dr.Web for Android is available free of charge and requires no registration. To use it, just download the distribution. Read more: http://news.drweb.com/show/?i=1261&lng=en&c=5.
There are three ways to install the anti-virus:
Launch Dr.Web for Android and select Quarantine. Tap the file you want to restore. In the succeeding window you will see all the information about this file and malicious code contained in tt. Tap the Restore button - the file will be moved to the original folder.
To scan your mobile device for viruses, launch Dr.Web for Android, and tap Scanner. In the next window, specify the scan mode.
Abort scan at any time by tapping Abort.
To send a suspect file, use the form on our website: https://vms.drweb.com/sendvirus/. To attach a file to your request, tap Browse, select the file you need and press Open. To send the request, tap the Send button.
Launch Dr.Web for Android and select Statistics. Tap Menu and choose Save log on SD card. The DrWeb_Log.txt file will be saved into the /Andoroid/data/com.drweb/files/ directory and a corresponding notification will be displayed. If you want to send a support request, use the web-form at https://support.drweb.com/support_wizard/. To attach a file to your request, tap Browse, select the file you need and press Open. To send the request, tap the Send button.
Presently you can't update the anti-virus by copying virus databases onto a mobile device. To update the databases, use the built-in update module.
Note: an Internet connection is required for updating.
Start Dr.Web for Android. Then tap the Update button - all the necessary files will be automatically downloaded and installed. For a successful update, your mobile device must have access to the Internet.
Note. You can also enable automatic daily updating. To enable daily updating, tap the Menu button, then tap Settings. In the Update section tick the Automatic check-box.
Launch Dr.Web for Android and select Statistics. The statistics window displays the number of processed files and information about all actions performed by the anti-virus components. It is possible to reset the statistics (Menu→Clear statistics), or save the log to a file (Menu→Save log).
Launch Dr.Web for Android and select Statistics. The statistics window displays the number of processed files and information about all actions performed by the anti-virus components. It is possible to reset the statistics (Menu→Clear statistics), or save the log to a file (Menu→Save log).
In the application's main menu, select Anti-theft. In the Configuration Wizard window, enter and confirm a password. If necessary, create a friends list (a list of trusted numbers).
More detailed information about configuring the anti-theft can be found in the corresponding section of the documentation.
Then you can adjust anti-theft security parameters: set blocking conditions and the actions that the program will perform if those conditions are met. More information about this can be found here.
To activate the anti-theft, use the previously specified password.
Go to the Settings menu of the device, select Applications→Manage applications. In the Third-party tab tap Dr.Web for Android. In the subsequent application information window tap Remove. To permanently delete the anti-virus, tap OK in the removal confirmation dialogue.
There are three ways to choose from to unlock the device depending on the version of Dr.Web for Android you use and availability of the friends list.
You don't need to install anything — just visit a compromised web-site. And it won't necessarily be a site with objectionable content — from intruders' point of view, hacking news portals is much more useful. News sites are the most visited ones on the Internet. They usually do not cause any suspicion among users or system administrators from companies which do not block access to such sites. That's why news portals are a very attractive field of operation to intruders. By Spreading malware through such sites, they can cause damage to a huge number of users and companies.
Tap on the Dr.Web icon on the notification panel. In the succeeding window you will see all the available information about the threat. Tap on this message, then select the desired action: delete the file, place it into the quarantine, or ignore the warning.
Warning! It is not recommended to choose the Ignore option! If you believe that the anti-virus has made a mistake, select Quarantine and after that send the file to Doctor Web for a detailed analysis.
SpIDer Guard is designed to constantly protect mobile devices against viruses and other threats. It loads into the memory upon Android start-up and scans all files accessed by a user or the system in real time.
Dr.Web for Android protects from viruses and other malicious programs that may steal or damage information stored on the mobile device. It prevents viruses from getting and running on a mobile device.
Note: Dr.Web for Android can only protect mobile devices and its virus databases are different from those used by the anti-virus maintaining security of desktops and laptops. To protect a computer, use corresponding products from Doctor Web.
The anti-virus places suspicious and infected files into the quarantine folder. Suspicious files are quarantined to be sent to Doctor Web's virus laboratory for analysis, infected ones are isolated if curing is not possible for some reason.
Information about the number of virus definitions in the databases and date of the last update is contained in the anti-virus statistics.
While out of the office, employees are not protected from hackers, applications they use may have vulnerabilities, their computers and mobile devices can be infected with viruses and Trojans that steal banking and payment system access passwords and money from bank accounts.
Employees regularly connect to the company's network via their device, and thus put confidential data and money at risk—not only their personal assets but corporate too. Incidents when malware gets onto a local network from personal devices, including handhelds, account for up to 70% of intrusions.
In addition, banks often send SMS confirmations to maintain security of transactions. There are malignant programs that can modify such confirmation messages. An anti-virus guarantees that incidents when money is stolen from accounts will never be concealed.
Go to the Support tab → Ask a question.
Use My Dr.Web Portal — your personal assistant and guide to services. Here, in particular, you can contact our technical support. The history of your requests is also available here.
Select About in the Dr.Web menu. If the word Light is present, you are using the free version. Also, the main menu provides access to different sets of security components; the paid version has substantially more components.
|Dr.Web for Android Light — free license||Dr.Web for Android — commercial license|
In both cases, you will receive a refund confirmation from Google Play.
Important! The time frame for a refund depends only on how fast your bank processes such requests! If the money is not returned to your account within 2-3 days of receiving a confirmation from Google Play, contact your bank. Doctor Web cannot influence bank policies or expedite refunds. Our refund liabilities to our users are met after you receive a refund confirmation from Google Play.
In the program's main window, go to the menu, select About, tap Update License and choose Purchase/Download. To activate the license, you must have Internet access and use the same Google account through which you made the purchase. The Dr.Web key file will be downloaded automatically. More>>
If you're contacting technical support:
In My Apps, select Dr.Web and tap Install. A valid license will be recognized automatically.
Chances are the funds have been blocked by the bank that issued your credit card. Doctor Web cannot influence bank policies. The funds will be returned to your account after a period defined by the bank. If the money is not returned to your account in 2-3 days after receiving confirmation from Google Play, contact your bank.
If you have deleted the email confirming your purchase information, you can find the order number (transaction id) in Google Wallet — information on all your orders is stored there.
You will receive an email receipt confirming your purchase. The email will contain your order number and order information, and a link for contacting Doctor Web's support service regarding questions concerning purchase, payment and refund. If you have not received such an email, please contact Google Play's support service — Doctor Web's support service won't be able to help until your payment has been received.
The list of your paid purchases can be found in Google Wallet. The list of applications that have been paid for and are thus available to you can be found in the My Apps section of your Google account.
Only users of the shareware version of Dr.Web for Android (comprehensive security) have serial numbers, which become available to them after they pay for their license on My Dr.Web Portal. Serial numbers are displayed in the Portal’s license information section.
According to Google Play's refund policy and under the Agreement between Doctor Web and Google, you can apply for a refund no later than within 48 hours after payment is made.
Yes. The first virus for an Apple computer was created in 1982. The first virus for OS X (Mac.Leap) appeared in 2006. In early 2009, the Trojan Mac.Iservice infected machines that comprised the iBot zombie network. In 2012, half a million of computers were connected to the botnet created by the Trojan BackDoor.Flashback. It was Doctor Web who first discovered this zombie network.
Yes, you can. Once a subsequent update is downloaded, you can try to cure a quarantined file.
Download the program's distribution at download.drweb.com/mac. Install Dr.Web for OS X. In the License Manager, select Demo license.
There is no way to prolong a demo key—you need to purchase a commercial license.
By default, only anti-virus file monitor settings are protected. To change them, click on the lock icon in the bottom left corner of the SpIDer Guard window, enter the administrator password and make the necessary adjustments.
For evaluation purposes, you can use the trial version. Download the distribution from Doctor Web's site at download.drweb.com/demoreq. The period of a demo license is 30 days.
You can also use the free scanner Dr.Web Light for OS X. The scanner incorporates state-of-the-art technologies to detect and eliminate viruses. You can use it to check your system, whenever you need to. However, Dr.Web for OS X is a more feature-packed product as compared with Dr.Web Light for OS X. It includes Dr.Web SpIDer Guard file monitor to scan files in real time.
Select Update in the program's main window.
Administrator privileges are required to install Dr.Web. After mounting the drive you will see the following window:
Select Dr.Web anti-virus for OS X . Read the Installation Wizard's welcome and click Continue. To continue the installation, read the License Agreement and accept its terms. After that select the disk onto which Dr.Web for OS X will be installed. Enter the administrator password. Then Dr.Web for OS X will be installed automatically. When finished, click Finish. You don’t need to restart your system after installation.
If you purchased a license for Dr.Web for OS X and the program is already installed on your Mac
If you purchased a license for Dr.Web for OS X and the program is not installed on your Mac
You can also register your serial number at Doctor Web's server at products.drweb.com/register.
Administrator privileges are required to remove the anti-virus. After mounting the drive you will see the following window:
Select DrWeb4MacUninstaller. Read the Removal Wizard's welcome and click Uninstall. Enter administrator password. After that, Dr.Web for OS X will be removed automatically. When removal is completed, click Finish. Iit is recommended to reboot the computer after uninstallation.
You can choose to update the anti-virus automatically and manually on demand or according to the schedule.
An attacker does not necessary need to hack into your computer to install malicious software. In most cases, unwanted programs get onto Macs due to careless of users when they visit legitimate sites, such as news portals. They can be compromised, so that infection gets onto computers of visitors regardless of their OS—in most cases, the target platform is detected and selected automatically.
Two simple conditions must be met for a system to get infected with BackDoor.Flashback.39: Java Virtual Machine must be installed in the system, and a user must load a compromised webpage in the browser.
Trojan.SMSSend family programs can be easily downloaded from various websites under the guise of a useful application. Today, adware for OS X is also rather common. For instance, Trojan.Yontoo.1 gets onto a Mac, if the user agrees to download and install a browser plug-in from certain sites, or downloads it under the guise of a media player, a program to improve video playback quality, a "download accelerator", etc.
There are also e-mail and removable data storage devices—the traditional media that spread malware with no regard to the operating system.
It defends your Mac from all types of malicious programs—including those created specifically for OS X. With the growing popularity of OS X, malware tends to target specifically this operating system. Incidents involving large-scale botnets comprised of infected Macs did occur: such Trojans as BackDoor.Flashback.39, Trojan.SMSSend and Trojan.Yontoo.1 still pose a threat to unprotected machines.
With Dr.Web for OS X., you can protect your system from these and many other malicious programs created to infect Macs as well as other operating systems. However, bear in mind that, while an update containing a corresponding virus definition has arrived, no anti-virus can protect your Mac against new malware, which hackers tested against latest versions of anti-virus engines. To protect against such malicious programs, you need to use advanced security tools and, of course, be careful when you visit certain sites.
It is a botnet of infected Macs which took shape with emergence of the Trojan Mac.Iservice in January 2009. To date, it has several thousand computers and has managed to manifest itself in a number of DDoS-attacks.
According to the documentation, OS X 10.7 and above are supported.
Dr.Web for for OS X protects against viruses whose definitions are present in the Dr.Web virus database. They can be written to infect OS X as well as other platforms.
The non-signature detection technology Origins Tracing and heuristic analyser help neutralise threats yet unknown.
Niczego nie znaleziono