Products for home | Products for business | Renew license
SMB bundles | Curing utilities | ОЕМ-products
SMB bundles | Curing utilities | ОЕМ-products
Dr.Web for Windows Servers
Anti-virus protection for Windows servers
Services for users
Advantages
- Compliance with the highest security standards; Dr.Web for Windows Servers is certified by Russia’s Federal Security Service (FSB) and Federal Service for Technological and Export Control (FSTEC)
- High performance and stability
- High-speed scanning combined with low consumption of system resources allows Dr.Web to run smoothly on any server hardware
- Trouble-free automatic operation
- The delayed scan technology applied to files opened for reading provides flexible load balancing for a server file system
- Flexible client-oriented configuration of scanning and actions performed with detected viruses or suspicious files
- Simple installation and administration
- Sound protection immediately after installation (with default settings)
- Transparent operation – detailed logs with customizable verbosity
Unique engine features
- Scans archived files at any nesting level
- Reliable detection of packed objects (even if the compression format is unknown to Dr.Web), their detailed analysis aimed at exposing hidden threats
- Leader in detecting and neutralizing complex rootkits (Shadow.based (Confiсker), MaosBoot, Rustock.C, Sector)
- Intelligent memory scan technologies allow viruses to be blocked in the RAM before replicating themselves to the hard drive, making it less likely for malware to exploit the vulnerability of a third-party application or the operating system
- Dr.Web can detect and neutralize viruses that can be found only in RAM and do not exist as files on disks, e.g. Slammer or CodeRed
Detection of unknown threats
- FLY-CODE is a unique universal decompression technology enabling Dr.Web to unpack data that has been compressed with unknown packers
- The cutting-edge, non-signature scan technology Origins Tracing™ ensures the high probability that viruses unknown to Dr.Web will be detected
- The heuristic analyzer, whose analyses are based on criteria that is typical of various groups of malicious programs, detects most known threats
Licensing
License types
- Per number of protected servers.
License options
- Anti-virus
- Anti-virus + Control Center
Dr.Web for Windows Server can be purchased as a component of Dr.Web Enterprise Security Suite.
Dr.Web for Windows Server is also included in low-cost Dr.Web Universal bundle for small and medium companies.
Key features
- Unique features
-
- Industry pacesetter! Curing active infections
- Installation in an infected system without its preliminary curing
- Stable operation under minimum/maximum load without affecting file server’s performance significantly
- The delayed scan technology applied to files opened for reading provides flexible file system load balancing
- Scan of any object (if it can be scanned) whenever it is accessed by a user, the system or any application
- Self-protection
-
- Protecting its own modules from failures (Dr.Web SelfPROtect)
- Automatic restoring of operation of its own modules
- Engine protection
- Automatic disconnection of workstations that become a threat from the server
- Protection from malware and modification of all its objects including critical files, processes, windows and keys
- Installation and configuration, updating and launching
-
- Default settings allow using all features of the anti-virus right after its installation
- Remote installation using Active Directory
- available with the license Dr.Web Enterprise Security Suite + Dr.Web for Windows file servers
- Centralized anti-virus installation using Login Script
- Automatic launch on system start-up (the default launch interval is 30 minutes, unless a launch job is scheduled)
- Launch of scanning whenever an object that can be scanned is accessed by a user, the system or any application
- Automatic, manual and schedule launching of scanning and updating
- Quick loading and unloading of any module
- Flexible configuration of separate modules
- Customizable scanning parameters and actions performed upon detection of malicious objects
- Customizable actions sequences performed one after another to a malicious object if a previous or subsequent action can't be applied
- Automatic updating over the Internet
- Configuration of different types of jobs
- Scanning
-
- Unique! Installation in an infected system without its preliminary curing
- Improved! Multi-thread scanning
- Adjusting scanning priority
- Unique! The delayed scan technology applied to files opened for reading (adding files to the scanning queue to reduce server workload)
- Monitoring of running processes and file requests
- Detection and neutralization of viruses and malicious programs in packed files (not archived)
- New! Unique! Detection and neutralization of viruses disguised with unknown packers (FLY-CODE technology)
- Improved! Unique! The unique non-signature detection technology (Origins Tracing)
- Improved! Detection of viruses in archived files at any nesting level
- Improved! Detection of viruses in self-extracting archives at any nesting level
- Improved! Scan of files prepared by the installer
- Memory scan
- Scanning of disk drives
- Scan of logical drives
- CD scan
- Scan of network drives
- Scanning of directories
- File scan
- Detection of viruses in archives at any nesting level and in packed objects
- Scan of mail files
- Scan of boot sectors of disks
- Scan of e-mail formats
- Three types of scanning (express, full and custom)
- Adjusting scanning priority
- Several types of scan (all files/selected files/scan according to the filename extensions list/scan according to the masks list)
- File and path exclusions
- Customizable actions for infected and suspicious objects as well as for objects of other types: cure, move to the quarantine, delete
- Customizable action sequences performed to a malicious object if one of the actions can't be applied
- Custom actions for infected archives
- Custom actions for each infected object
- Scan of archived files at any nesting level
- Customizable maximum size of a file extracted for scanning
- Setting compression level limit for archived files to be scanned
- Blocking access to the infected object
- Customizable quarantine location
- Notifications
-
- Notifying a user about disconnecting his machine from the file server upon detection of a virus threat
- Notifying an administrator upon detection of a viral threat
- Logging
-
- Anti-virus log containing time of each event, name and type of the scanned object and the type of action applied to the object
- Customizable logging verbosity
- Customizable log file size
Updating
Always up-to-date
- Updating over the Internet, whether automatically or according to a schedule, doesn’t require user interference. Updating can also be launched manually.
- Updating is very quick even if a slow Internet connection is used.
- Updating servers are always available.
- Updates can be retrieved from an HTTP server.
- In most cases, there is no need to reboot the system to complete updating; Dr.Web starts using the updated modules and latest virus definitions right away
- Updates are small (50-200KB).
- To save traffic the anti-virus can be set to update virus databases only However, enabling this option is not recommended. To counter the latest threats, Dr.Web undergoes constant refinement. New features are incorporated in updated modules of an anti-virus package and are downloaded from Doctor Web's server automatically during regular updating sessions.
- You can also reduce traffic by downloading updates as archived files A special data-compression algorithm used by Doctor Web allows reducing size of downloaded updates. Patch files are used to deliver minor additions and fixes for virus database or program modules. The special compression algorithm applied to such patches dramatically reduces the amount of transferred data.
Virus monitoring service
- The Doctor Web virus monitoring service collects samples of malicious programs all over the Internet to create antidotes and release updates as soon as analyses are completed — as often as several times per hour.
- As soon as an update is released, users can retrieve it from several servers located at various points of the globe.
- To avoid false positives an update is tested over a huge number of uninfected files before it is released.
- The intelligent system automatically adds entries for similar viruses into the database, ensuring the prompt neutralization of emerging threats.
System requirements
- Windows NT/2000/2003/2008 (32 and 64-bit).

![[Blog Dr.Web]](social/drweb.png)
![[You Tube]](social/youtube.png)
![[Twitter]](social/twitter.png)
![[Facebook]](social/facebook.png)
![[Vkontakte]](social/vkontakte.png)
