The page may not load correctly.
Disrupts Trojan attempts to encrypt your files
Encryption ransomware is one of the most common types of malware. Cybercriminals use it to corrupt user files and demand a ransom to decrypt them. In other words, they count on users being in a helpless and panicked state so that they can engage in everyday blackmail.
Traditional signature-based protection cannot detect absolutely every single threat at the moment of attack. This is because the virus databases on a PC may not yet have been updated. The Ransomware Protection will detect the most newly released encryption ransomware. It identifies up to 98% of encryption ransomware programs thanks to special algorithms that control the behaviour of running programs. This enables Dr.Web to effectively resist unknown threats.
The Ransomware Protection module’s flexible settings let you decide which programs can have access to your data. You can grant the programs you use full access to your files by adding them to the list of trusted applications.
By default, the Ransomware Protection module in Dr.Web is configured to respond with Block. You can change that to Prompt, in which case, every time the protection system detects a suspicious object, you will decide whether the program requesting access to your file is malicious.
Decryption for ransomware-encrypted files is available free of charge to Dr.Web users if the Dr.Web terms of use were being met at the moment the incident occurred.