<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><title>News of Doctor Web</title><link>http://news.drweb.com/news/</link><description>Doctor Web news - News of Doctor Web</description><image><url>http://www.av-desk.com/static/drweb_logo_en.gif</url><link>http://news.drweb.com/news/</link><title>Dr.Web anti-virus</title></image><item><title>Dr.Web for Windows file servers now supports 64-bit systems</title><link>http://news.drweb.com/show/?i=906&amp;c=5</link><pubDate>Wed, 03 Feb 2010 18:02:18 GMT</pubDate><description>&lt;b&gt;February 3, 2010&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web releases the updated version of its anti-virus  for Windows file servers that supports 64-bit versions of Windows Server OS. . The solution features the new file monitor SpIDer and allows placing suspicious objects to the quarantine.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;As well as &lt;b&gt;Dr.Web anti-virus for Windows&lt;/b&gt; and &lt;b&gt;Dr.Web Security Space&lt;/b&gt; that got support of 64-bit systems &lt;a href="http://news.drweb.com/show/?i=786&amp;c=6&amp;p=0"&gt;in December 2009&lt;/a&gt;, the anti-virus for file servers also has the updated GUI and offers users the centrally controlled quarantine.&lt;/p&gt;

&lt;p&gt;&lt;b&gt;Dr.Web for Windows file servers&lt;/b&gt; supports 64-bit version of Windows Server 2003 and Windows Server 2008 R2.&lt;/p&gt;

&lt;p&gt;&lt;a href="http://download.drweb.com/demoreq/"&gt;Ask for demo&lt;/a&gt; | &lt;a href="http://partners.drweb.com/"&gt;Buy from partners&lt;/a&gt; | &lt;a href="http://estore.drweb.com/"&gt;Buy online&lt;/a&gt;&lt;/p&gt;
</description></item><item><title>First epidemic in 2010 and other virus events of January</title><link>http://news.drweb.com/show/?i=898&amp;c=5</link><pubDate>Mon, 01 Feb 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;February 1, 2010&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;In January 2010 a large number of user requests regarding neutralization of active infections related to Trojan.Winlock programs while the vast majority of fraud schemes employed by cyber-criminals in January were based on paid short messages. The last month also saw introduction of new malware spreading techniques and more sophisticated monetizing methods employed by cyber-criminals for money-laundering.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;h3&gt;Windows blockers&lt;/h3&gt;

&lt;p&gt;The wide spreading of a variety of &lt;b&gt;Trojan.Winlock&lt;/b&gt; programs became the most noticeable event of January. In a compromised system this malicious program displays its own window on top of all other windows and won't close it unless an unlock code is entered. It also disrupts operation of some programs installed on the machine.  Criminals offer a victim to retrieve an unlock code by means of a paid SMS.  In January the SMS charge varied between EURO 7-14 per each computer.&lt;/p&gt; 

&lt;div align="center"&gt;&lt;a href="http://www.drweb.com/static/new-www/news/2010-1/january/01.png"&gt;&lt;img src="http://www.drweb.com/static/new-www/news/2010-1/january/01_s.jpg"&gt;&lt;/a&gt;&lt;/div&gt;

&lt;p&gt;The statistics server of Doctor Web registered over 850 000 instances of detection of &lt;b&gt;Trojan.Winlock&lt;/b&gt; in systems protected by Dr.Web software (&lt;b&gt;Dr.Web Enterprise Suite&lt;/b&gt; and Dr.Web anti-virus service included).  This figure is 2.15 times larger than the number registered in December 2009 and 23.4 higher than in November 2009 thus indicating the ongoing epidemics in Russia and Ukraine. In the last month several millions of users got infected by this malicious program. &lt;/p&gt;

&lt;div align="center"&gt;&lt;a href="http://www.drweb.com/static/new-www/news/2010-1/january/02.png"&gt;&lt;img src="http://www.drweb.com/static/new-www/news/2010-1/january/02_s.jpg"&gt;&lt;/a&gt;&lt;/div&gt;

&lt;p&gt;The epidemic caused a stir in the Russian-speaking internet community with providers of short numbers offering unlocking codes free of charge and anti-virus vendors supplying users with free tools to counter &lt;b&gt;Trojan.Winlock&lt;/b&gt; programs.&lt;/p&gt;

&lt;p&gt;On January 22 Doctor Web set up a special web-page for generation of unlocking codes (over one million visits to the page were registered in a week). Doctor Web also released several versions of &lt;b&gt;Dr.Web CureIt!&lt;/b&gt; designed specifically to neutralize such Trojans.&lt;/p&gt;

&lt;h3&gt;SMS-fraud&lt;/h3&gt;

&lt;p&gt;Easy monetizing of profits generated by paid SMS served as a good incentive for many cyber criminals. Along with blockers of Windows numerous web-sites were created to promote non-existing services and software with incredible features.&lt;/p&gt;

&lt;p&gt;Users were offered online fake anti-viruses that found the same viruses in the same files on all machines, ICQ and SMS sniffers, remote mobile phone control, see-through scanners allowing to see people nude and other similar programs. &lt;/p&gt;

&lt;div align="center"&gt;&lt;a href="http://www.drweb.com/static/new-www/news/2010-1/january/03.png"&gt;&lt;img src="http://www.drweb.com/static/new-www/news/2010-1/january/03_s.jpg"&gt;&lt;/a&gt; &lt;a href="http://www.drweb.com/static/new-www/news/2010-1/january/04.png"&gt;&lt;img src="http://www.drweb.com/static/new-www/news/2010-1/january/04_s.jpg"&gt;&lt;/a&gt;&lt;/div&gt; 

&lt;p&gt;Typically users paid for such services and software with short messages. However, as telecom operators and police started to monitor SMS payment systems closely in the face of the winlock epidemic, using such systems has become troublesome for criminals.  That’s why they reintroduced means of payments they used before (e.g. WebMoney) and invented new fraud schemes.&lt;/p&gt;

&lt;h3&gt;New ways for monetizing illegal money&lt;/h3&gt;

&lt;p&gt;Another scheme that has been gaining popularity among fraudsters in January allows criminals to withdraw funds from accounts of users of mobile phones. Users enter their phone numbers on a web-site that promoted a service and receive short messages with a link for activation of their subscriptions. Once activated, the service charge is withdrawn from an account automatically.&lt;/p&gt;

&lt;p&gt;The malicious design allows a person to submit someone else's number on the web-site while messages with an activation link don't explain to a user what the service is about, instead, they provide misleading information to encourage the user to click on the link even if he doesn’t mean to subscribe for a service. For example, a message can say that the link will lead the user to an image or a video clip.&lt;/p&gt;

&lt;p&gt;In recent weeks criminals have also offered users to pay for services with a paid call that has a minimum duration limit.&lt;/p&gt;

&lt;h3&gt;New ways to spread malware and spam&lt;/h3&gt;

&lt;p&gt;In January virus makers used new means to deliver malicious programs to user machines.  In particular, Doctor Web virus analysts registered a spam mailing with messages containing attached torrent-files for downloading supposed e-cards that in truth were malicious programs. Mail servers do not block such messages since attached torrent-files do not contain malicious code.&lt;/p&gt;

&lt;p&gt;Spammers also adopted new ways to transfer large amounts of data.  Spam mailings were registered where e-mails contained attached mp3 files providing around 60 minutes of playback.  Users also received messages with links to video clips located on web-sites of cyber-criminals and available on YouTube.&lt;/p&gt;

&lt;h3&gt;Below you can find a few tips that may help you prevent infection of your system by Trojan.Winlock programs or by other similar pieces of malware&lt;/h3&gt;

&lt;ol type="1"&gt;
&lt;li&gt;Install a licenses anti-virus application and updated as recommended by the vendor.

&lt;li&gt;Use alternative web-browsers (Mozilla Firefox, Opera or Google Chrome) and install corresponding security updates as they released by developers.

&lt;li&gt;Install latest security updates for your operating system as soon as they are released.

&lt;li&gt;Do not use services promoted by web-sites displayed as ad pop-ups – such pop-ups are at risk.

&lt;li&gt;If you are offered to download a codec or any other software to view content of the web-site, decline the offer and search for the official web-site of the codec's developer, download it and install on your computer.  In many cases &lt;b&gt;Trojan.Winlock&lt;/b&gt; programs are downloaded as software required for viewing content of web-sites.
&lt;/ol&gt;

&lt;h3&gt;Trojan.Winlock curing recommendations&lt;/h3&gt;

&lt;p&gt;If a window with a message demanding to send an SMS at a short number is displayed on top of other windows, won’t close and appears even when the system is started in the safe mode, your system has been infected by one of the modifications of &lt;b&gt;Trojan.Winlock&lt;/b&gt;.&lt;/p&gt;

&lt;ol type="1"&gt;
&lt;li&gt;Under no circumstances should you send messages as demanded by criminals.  Every sent message provides criminals with financial support to develop new modifications of the malware.

&lt;li&gt;Go to the &lt;a href="http://www.drweb.com/unlocker/"&gt;unlocking page&lt;/a&gt;.

&lt;li&gt;Download the &lt;a href="http://news.drweb.com/show/?i=892&amp;c=5&amp;p=0"&gt;special version of &lt;b&gt;Dr.Web CureIt!&lt;/b&gt;&lt;/a&gt; and use the utility to cure your system of Trojan.Winlock.

&lt;li&gt;Go to &lt;a href="http://www.freedrweb.com/"&gt;http://www.freedrweb.com/&lt;/a&gt; и скачайте &lt;b&gt;Dr.Web LiveCD&lt;/b&gt; and download Dr.Web LiveCD. Once the system is cured with Dr.Web LiveCD it is recommended to scan it again using Dr.Web CureIt!

&lt;li&gt;Ask for assistance on the official &lt;a href="http://forum.drweb.com/index.php?showforum=35"&gt;forum of Doctor Web&lt;/a&gt;.

&lt;li&gt;Contact the provider of the specified short number and ask for the unlocking code to be given to you free of charge since you have become a victim of cyber crime.
&lt;/ol&gt;

&lt;p&gt;The number of malicious programs in e-mail traffic in January decreased by 30% compared with December 2009.  The share of malicious files in the total number of files scanned on user machines dropped by 35%.  Most probably this decline is a correction following two times increase of malicious traffic among scanned objects.&lt;/p&gt;

&lt;h3&gt;Viruses detected in e-mail traffic in January&lt;/h3&gt;

&lt;table border="1" cellpadding="4" class="colborder"  width="90%" align="center" cellspacing="0"&gt;&lt;tr class="colborder" bgcolor="#deeacc"&gt;&lt;td class="colborder" nowrap align="left" colspan="3"&gt;&amp;nbsp;&lt;b&gt;01.01.2010 00:00 - 01.02.2010 00:00&lt;/b&gt;&amp;nbsp;&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;1&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.DownLoad.37236"&gt;Trojan.DownLoad.37236&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;13268129 (12.99%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;2&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.DownLoad.47256"&gt;Trojan.DownLoad.47256&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;10044467 (9.84%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;3&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.MulDrop.40896"&gt;Trojan.MulDrop.40896&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;7096903 (6.95%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;4&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5115"&gt;Trojan.Fakealert.5115&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;7023800 (6.88%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;5&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.MyDoom.44"&gt;Win32.HLLM.MyDoom.44&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;6490377 (6.36%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;6&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Packed.683"&gt;Trojan.Packed.683&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;5749108 (5.63%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;7&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5238"&gt;Trojan.Fakealert.5238&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;5261760 (5.15%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;8&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.Netsky.35328"&gt;Win32.HLLM.Netsky.35328&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;4772813 (4.67%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;9&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.DownLoad.50246"&gt;Trojan.DownLoad.50246&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;4051880 (3.97%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;10&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Botnetlog.zip"&gt;Trojan.Botnetlog.zip&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;3758307 (3.68%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;11&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5825"&gt;Trojan.Fakealert.5825&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;3442880 (3.37%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;12&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5437"&gt;Trojan.Fakealert.5437&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;2517200 (2.47%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;13&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.MyDoom.33808"&gt;Win32.HLLM.MyDoom.33808&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;2392000 (2.34%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;14&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5356"&gt;Trojan.Fakealert.5356&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;2281720 (2.23%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;15&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5784"&gt;Trojan.Fakealert.5784&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1973160 (1.93%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;16&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.PWS.Panda.122"&gt;Trojan.PWS.Panda.122&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1851377 (1.81%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;17&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5229"&gt;Trojan.Fakealert.5229&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1835120 (1.80%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;18&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Fakealert.5457"&gt;Trojan.Fakealert.5457&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1607760 (1.57%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;19&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Siggen.18256"&gt;Trojan.Siggen.18256&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1526581 (1.49%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;20&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.Beagle"&gt;Win32.HLLM.Beagle&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1505664 (1.47%)&lt;/td&gt;&lt;/tr&gt;&lt;/table&gt;&lt;br&gt;

&lt;table border="0"&gt;
&lt;tr&gt;&lt;td&gt;&lt;b&gt;Scanned:&lt;/b&gt;&lt;/td&gt;&lt;td&gt;139,350,636,730&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;&lt;b&gt;Infected:&lt;/b&gt;&lt;/td&gt;&lt;td&gt;102,115,886 (0.07%)&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;


&lt;h3&gt;Viruses detected on user machines in January&lt;/h3&gt;

&lt;table border="1" cellpadding="4" class="colborder"  width="90%" align="center" cellspacing="0"&gt;&lt;tr class="colborder" bgcolor="#deeacc"&gt;&lt;td class="colborder" nowrap align="left" colspan="3"&gt;&amp;nbsp;&lt;b&gt;01.01.2010 00:00 - 01.02.2010 00:00&lt;/b&gt;&amp;nbsp;&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;1&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.MyDoom.49"&gt;Win32.HLLM.MyDoom.49&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;4020788 (16.80%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;2&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.Netsky.35328"&gt;Win32.HLLM.Netsky.35328&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1637229 (6.84%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;3&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLW.Gavir.ini"&gt;Win32.HLLW.Gavir.ini&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1081250 (4.52%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;4&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.WinSpy.440"&gt;Trojan.WinSpy.440&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;1053086 (4.40%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;5&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.AppActXComp"&gt;Trojan.AppActXComp&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;907785 (3.79%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;6&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.AuxSpy.137"&gt;Trojan.AuxSpy.137&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;734318 (3.07%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;7&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.Beagle"&gt;Win32.HLLM.Beagle&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;656944 (2.74%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;8&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLM.MyDoom.33808"&gt;Win32.HLLM.MyDoom.33808&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;646730 (2.70%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;9&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.PWS.Gamania.23481"&gt;Trojan.PWS.Gamania.23481&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;623699 (2.61%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;10&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.MulDrop.16727"&gt;Trojan.MulDrop.16727&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;584477 (2.44%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;11&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLW.Shadow"&gt;Win32.HLLW.Shadow&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;513252 (2.14%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;12&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.Virut.5"&gt;Win32.Virut.5&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;493248 (2.06%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;13&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLW.Shadow.based"&gt;Win32.HLLW.Shadow.based&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;380166 (1.59%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;14&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.MulDrop.13408"&gt;Trojan.MulDrop.13408&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;325488 (1.36%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;15&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=JS.Popup.1"&gt;JS.Popup.1&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;316857 (1.32%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;16&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.Virut.14"&gt;Win32.Virut.14&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;295463 (1.23%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;17&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.HLLW.Kazaa.17"&gt;Win32.HLLW.Kazaa.17&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;263143 (1.10%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;18&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Win32.Alman.1"&gt;Win32.Alman.1&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;261298 (1.09%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;19&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Exploit.MySql.11"&gt;Exploit.MySql.11&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;260470 (1.09%)&lt;/td&gt;&lt;/tr&gt;&lt;tr onMouseOver="this.bgColor='#eef4e5'" onMouseOut="this.bgColor='#ffffff'" class="colborder"&gt;&lt;td class="colborder" width="1%"&gt;20&lt;/td&gt;&lt;td class="colborder"&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;family=Trojan.Winlock.715"&gt;Trojan.Winlock.715&lt;/a&gt;&lt;/td&gt;&lt;td class="colborder"&gt;256356 (1.07%)&lt;/td&gt;&lt;/tr&gt;&lt;/table&gt;&lt;br&gt;

&lt;table border="0"&gt;
&lt;tr&gt;&lt;td&gt;&lt;b&gt;Scanned:&lt;/b&gt;&lt;/td&gt;&lt;td&gt;169,874,198,147&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;&lt;b&gt;Infected:&lt;/b&gt;&lt;/td&gt;&lt;td&gt;23,938,315 (0.01%)&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;
</description></item><item><title>Doctor Web created a new code generator to unlock compromised systems</title><link>http://news.drweb.com/show/?i=893&amp;c=5</link><pubDate>Fri, 29 Jan 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;January 29, 2010
&lt;p&gt;
&lt;newslead&gt;Doctor Web keeps improving tools for neutralization of Trojan.Winlock programs and of their malicious impact.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;The unlock code generator allowing users to unlock their compromised systems. The &lt;a href="http://www.drweb.com/unlocker/"&gt;free service&lt;/a&gt; allows all users whose systems were compromised by Trojan-Winlock malware can obtain unlock codes free of charge. You can also exchange information about malware with other users and share unlock codes that worked in your system but are not known to Doctor Web. This information may help other users and contribute to development of more efficient tools to counter the epidemics.&lt;/p&gt;</description></item><item><title>Updated beta-version of Dr.Web CureIt! against Trojan.Winlock</title><link>http://news.drweb.com/show/?i=892&amp;c=5</link><pubDate>Fri, 29 Jan 2010 18:33:03 GMT</pubDate><description>&lt;b&gt;January 29, 2010 
&lt;p&gt;&lt;newslead&gt;
Doctor Web announced major updating of its Dr.Web CureIt! utility designed to scan and cure computers of viruses, even those protected by anti-viruses from other vendors. Specific features for efficient neutralization of Trojan.Winlock programs have been implemented in the new version of the utility.&lt;/newslead&gt;&lt;/b&gt;

&lt;p&gt;A new starter included in the utility activates protection of all files and processes of Dr.Web CureIt! before scanning is started. 

&lt;p&gt;The starter allows launching the utility on an alternative desktop in order to avoid blocking of its operation by a Trojan. 

&lt;p&gt;The updated beta-version of Dr.Web CureIt! is compatible with MS Windows 2000 and later (both 32 and 64 bit versions). 

&lt;p&gt;&lt;a href="http://beta.drweb.com/files/?p=cureit&amp;t=d"&gt;Download the beta-version of the utility.&lt;/a&gt;
&lt;p&gt;</description></item><item><title>Unlocking system compromised byTrojan.Winlock now available to mobile users</title><link>http://news.drweb.com/show/?i=878&amp;c=5</link><pubDate>Mon, 25 Jan 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;January 25, 2010&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web announced the launch of the mobile version of its Windows unlocking service. Now users who can't access the vendor's site from their machines because their systems are compromised by Trojan.Winlocks can access the &lt;a href="http://www.drweb.com/unlocker/mobile/?lng=en"&gt;free unlocking tool&lt;/a&gt; from their mobile device.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;The mobile version is rather small and easy to use: just enter the suggested number for an SMS and you will see unlock code suggestions on the screen of your device.&lt;/p&gt;

&lt;p&gt;If you can’t access Doctor Web’s site, the vendor recommends you to use an ant messaging service and ask your friends to get your unlock code at &lt;a href="http://www.drweb.com/unlocker/index/?lng=en"&gt;http://www.drweb.com/unlocker/index/&lt;/a&gt;.&lt;/p&gt;
</description></item><item><title>Trojan.Winlock infects millions of computers in Russia</title><link>http://news.drweb.com/show/?i=874&amp;c=5</link><pubDate>Sun, 24 Jan 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;January 24, 2010
&lt;p&gt;
Russian anti-virus vendor Doctor Web warns of the spreading epidemics of malicious programs belonging to the Trojan.Winlock family. In January 2010 the number of Russian users whose systems were compromised by malicious programs that demanded from users to send a paid SMS in order to unlock their systems reached several millions. Estimated losses are reaching 10 million dollars.&lt;/b&gt;
 &lt;p&gt; 
First modifications of Trojan.Winlock appeared three years ago. At that time they were not considered a severe threat since they removed themselves automatically in several hours after installation, didn't run in the Safe Mode and the SMS charge was much lower.
&lt;p&gt;

However, since November 2009 this ransom scheme has been gaining popularity among cyber criminals — new modification of Trojan.Winlock are getting more and more dangerous. Now removing a lock message displayed on top of all other Windows is quite expensive. Trojans don't remove themselves automatically and acquire new features. In particular, they block launch of certain programs (file managers, anti-rootkits, system diagnostics utilities that might help cure the system). &lt;p&gt; 

Malicious programs from the Trojan.Winlock family exploit Windows vulnerabilities (in particular, vulnerabilities of Internet Explorer) or get to user machines from malicious web-sites (as video codec files), through iframe exploit and over botnets (criminals controlling botnets can install software on compromised machines for a fee).&lt;p&gt; 

In January alone the number of victims of such programs reached several millions.  Considering that the SMS charge is quite high the estimated income of the criminals in the very first month of 2010 amounted to hundreds of millions of rubles. &lt;p&gt; 

With new modifications of Trojan.Winlock appearing almost every day even users that protect their systems using up-to-date anti-virus solutions. 
&lt;p&gt;

In order to help users Doctor Web is collecting all information about such Trojans in the dedicated &lt;a href="http://www.drweb.com/unlocker/?lng=en"&gt;section of its web-site&lt;/a&gt;. In particular, the unlock form helps users find an unlock code to regain access to their systems free of charge. In first two days after the project was launched hundreds of thousands of users have visited the project’s section.

&lt;p&gt;Doctor Web has also issued a call to Russian authorities and telecom providers that could help finding people that register the short numbers at which users send highly charged messages. &lt;/p&gt; 


 









</description></item><item><title>New Doctor Web project offers arsenal against Trojan.Winlock</title><link>http://news.drweb.com/show/?i=872&amp;c=5</link><pubDate>Fri, 22 Jan 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;January 22, 2010&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web launches a &lt;a href="http://drweb.com/unlocker/?lng=en"&gt;new project&lt;/a&gt; aiming to gather in one place ll information about the dangerous family of Trojans blocking access to Windows (Trojan.Winlock) In the dedicated section of Doctor Web’s site users can find out an unlock code and exchange most up-to-date information about this piece of malware.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;Under its &lt;a href="http://drweb.com/unlocker/?lng=en"&gt;new project Doctor Web&lt;/a&gt; collects all the data that may help users fallen victims of Trojans that block access to Windows.&lt;/p&gt;

&lt;p&gt;In recent months such Trojans have been spreading in large numbers over the Internet and brought their author a huge profit.  Victims are ordinary users tricked by criminals into sending paid SMS.&lt;/p&gt;

&lt;p&gt;With the new Doctor Web’s project users will be able to determine which version of &lt;b&gt;Trojan.Winlock&lt;/b&gt; compromised their system and get an unlock code free of charge.&lt;/p&gt;

&lt;p&gt;They will also be able to exchange information about new modifications of the Trojan that can’t be neutralized by some anti-viruses and to share unlock codes for latest versions of the malware. &lt;/p&gt;</description></item><item><title>Dr.Web 5.0 certified by FSB</title><link>http://news.drweb.com/show/?i=861&amp;c=5</link><pubDate>Tue, 19 Jan 2010 00:00:00 GMT</pubDate><description>&lt;p&gt;&lt;b&gt;January 19, 2010&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;&lt;newslead&gt;The Russian anti-virus vendor Doctor Web announced that it received certificates for Dr.Web solutions 5.0 for Windows from the Federal Security Service (FSB) and Federal Service for Technical and Export Control of Russian Federation.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;a href="http://company.drweb.com/licenses_and_certificates"&gt;Certificates from the Federal Security Service of Russia&lt;/a&gt; were issued following tests performed by the Certification research centre. The documents confirm that Dr.Web Security Space, Dr.Web anti-virus 5.0 for Windows and Dr.Web Enterprise Suite 5.0 comply with FSB requirements to anti-virus solutions and can be used to protect stat-secret information.&lt;/p&gt;
&lt;p&gt;The &lt;a href="http://www.drweb.com/static/new-www/sertif/2012.jpg"&gt;certificate from FSTEC&lt;/a&gt; was issued after tests by the research, development and production company Echelon and evaluation by the Security of information technologies and components company. It certifies that Dr.Web products of the fifth series – Dr.Web for Windows, Dr.Web for Windows file servers, Dr.Web Enterprise Suite – meet requirements of the regulation document regarding software for protection of information.&lt;/p&gt;
&lt;p&gt;These certificates allow using Dr.Web solutions for Windows of the fifth series by all governmental institutions of Russia and by state-run companies.&lt;/p&gt;</description></item><item><title>Dr.Web virus databases updating schedule change</title><link>http://news.drweb.com/show/?i=859&amp;c=5</link><pubDate>Mon, 18 Jan 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;January 18, 2010&lt;/b&gt; &lt;p&gt; 
&lt;newslead&gt;Doctor Web announced that a new virus databases updating schedule came in effect on January 18 2010.&lt;/newslead&gt;.&lt;p&gt; 

The most significant change is the change of the release time for a weekly add-on to virus databases from 11.30 p. m. Saturday to 7.00 a.m. MSK Monday.&lt;p&gt; 

Besides, for traffic saving purposes Doctor Web will no longer release txt-files along with virus databases in all updating zones.&lt;p&gt; 
</description></item><item><title>Checkmate in one move</title><link>http://news.drweb.com/show/?i=764&amp;c=5</link><pubDate>Mon, 18 Jan 2010 11:01:41 GMT</pubDate><description>&lt;p&gt;&lt;b&gt;January 18, 2010&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;&lt;newslead&gt;There is always a way out. If viruses have driven you into a corner and you can't hold them off any longer, you still have a powerful move to make.  Move to Dr.Web anti-virus solutions. &lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;
&lt;img src="http://www.drweb.com/static/new-www/chess/chess.jpg" alt="Chess" border="0" width="298" height="134" style="float:left; margin:1em 2em 1em 0em"&gt;
&lt;p&gt;Starting on &lt;b&gt;January 18, 2010 and until March 1, 2010&lt;/b&gt; you can take advantage of the special offer from Doctor Web allowing users of corporate anti-virus solutions from other vendors to purchase a license for Dr.Web Enterprise Suite on moss favourable terms.  And these terms will bring you victory!&lt;/p&gt;
&lt;p&gt;Put viruses in check – purchase a 12 month license for Dr.Web Enterprise Suite at &lt;b&gt;40% off&lt;/b&gt; the price and use the product &lt;b&gt;free of charge&lt;/b&gt; during the remaining period of your license from another vendor.  And this is a checkmate!&lt;/p&gt;
&lt;p&gt;If you are willing to move to Dr.Web Enterprise Suite, register as a participant in the event, &lt;a href="http://www.drweb.com/migrate_drweb_enterprise_suite/"&gt;answer questions in the request form&lt;/a&gt; and provide a proof of your license to a solution featuring a centralized protection control from another vendor. The remaining period of such a license must be at least sixty days upon the submission date. You can find out more about the terms &lt;a href="https://www.drweb.com/static/new-www/chess/ES_Shah_i_mat_en.pdf"&gt;here&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Half-measures are no longer enough. If you are not content with the quality of protection provided by your anti-virus solution, it is high time to checkmate viruses!&lt;/p&gt;
&lt;div align="center"&gt;&lt;a href="http://www.drweb.com/migrate_drweb_enterprise_suite/"&gt;Checkmate viruses!&lt;/a&gt;&lt;/div&gt;</description></item><item><title>New updating mechanism for Dr.Web solutions for Unix</title><link>http://news.drweb.com/show/?i=849&amp;c=5</link><pubDate>Fri, 15 Jan 2010 00:00:00 GMT</pubDate><description>&lt;b&gt;January 15, 2010&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web introduced a new updating mechanism for its solutions running under Unix-like systems that will decrease the size of d files downloaded from an updating server significantly.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;The new updating mechanism will be used for such products as Dr.Web for Unix file servers, Dr.Web for Unix mail servers and Dr.Web for Internet gateways Unix.&lt;/p&gt;

&lt;p&gt;The new compression technologies will make updating Dr.Web products for Unix much faster. Users are not required to do any changes to installed solutions. Compressed updated will be automatically retrieved by the updating module.&lt;/p&gt;</description></item><item><title>Blocker of Windows and other virus threats of December 2009</title><link>http://news.drweb.com/show/?i=818&amp;c=5</link><pubDate>Sat, 02 Jan 2010 00:00:00 GMT</pubDate><description>&lt;p&gt;&lt;strong&gt;January 2, 2010&lt;br /&gt;&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;&lt;newslead&gt;Trends of previous months continued to develop in December 2009 where ransomware accounted for a greater part of viral traffic. A large number of Trojans and web-sites were created by cybe-criminals to extort money from users.&lt;/newslead&gt;&lt;br /&gt;&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Windows blockers&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;Numerous modifications of Windows blockers featuring new counter-analysis tehcnologies emerged in December. Under the Dr.Web classification such programs are named as &lt;strong&gt;Trojan.Winlock&lt;/strong&gt;. In recent months these programs have become the main tool for extracting money in Russian and Ukraine.&lt;/p&gt;

&lt;p&gt;Active Trojans of this class prevent launching of utilities used for analysis and may force a system shutdown.   They also create numerous copies of themselves in Windows system folders to make manual removal of the malware from the system more difficult.  The name of the Trojan process also differs from the name of the malicious executable file.&lt;/p&gt;

&lt;p align="center"&gt;&amp;nbsp;&lt;a href="http://www.drweb.com/upload/8d525b4c7a0161c6729b4d5c3325ce8d_1262446698_01.png"&gt;&lt;img src="http://www.drweb.com/upload/008ebd4d09c6222a324b0cfdc665ad11_1262446667_01_i.png" alt="" /&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p align="left"&gt;&lt;strong&gt;Trojans via e-mail&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;Spam remains one of the main channels for distribution of malware.&lt;/p&gt;&lt;p&gt;In December 2009 various modifications of Trojan.PWS.Panda were spread as VISA card transaction reports or as Facebook account passwords.&lt;/p&gt;

&lt;p&gt;Such malicious programs as &lt;strong&gt;Trojan.NtRootKit.3226&lt;/strong&gt; and modifications of &lt;strong&gt;Trojan.Packed&lt;/strong&gt; were delivered to users as “compromising photos” while &lt;strong&gt;Trojan.Botnetlog&lt;/strong&gt; arrived at user machines as  document from DHL.&lt;/p&gt;

&lt;p&gt;&amp;nbsp;&lt;a href="http://www.drweb.com/upload/9dd6efcd0bf6e3e46c375737d2b6c21a_1262447000_04.png"&gt;&lt;img src="http://www.drweb.com/upload/bef336dc70b9ccd9f41d0ccfb1042f34_1262446954_04_i.png" alt="" /&gt;&lt;/a&gt;&amp;nbsp; &lt;a href="http://www.drweb.com/upload/8600d6e294cdb99e8964002d00f8d34b_1262447014_05.png"&gt;&lt;img src="http://www.drweb.com/upload/09bc3191c41e352ed52141c88c35a597_1262446979_05_i.png" alt="" width="250" height="79" /&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Audio spam&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;December saw several types of spam mailings with attached audio files. As a rule such files are provided in the mp3 format and have a low bit rate (16 Kbit/s).&lt;/p&gt;

&lt;p&gt;Messages with audio attachments advertised e-stores and healthcare products – an audio file contained a an address of the advertised web-site. Mailings that aimed to draw users into participating in pyramid schemes provided mp3 files larger than 6 MB with approximately sixty minutes length of a lecture.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;From 2009 into 2010&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;In 2009 virus makers tended to focus on acquiring funds of users – an easy prey when large numbers of people follow links supposedly from credible organizations or friends, download programs serving different puporses. Criminals made money transfer demands appear in browser windows, on top of all other windows or right on a desktop. Traditional virus spreading channels — e-mail and instant messengers – were used along with new ones such as social networking web-sites and blogs.&lt;/p&gt;

&lt;p&gt;The trend when cyber criminals target users of a wide range of operating systems and browsers simultaneously will most likely persist in 2010. In subsequent years developers of viruses will not merely focus on bypassing the conventional signature-based or heuristic detection but will be making a considerable effort in creating and refining methods to evade behaviour blockers. Examples of such evasions techniques can already be seen in the present.  Most certainly rootkit technologies will continue to evolve as well and the technological contest between virus makers and anti-virus vendors will be as tough. It is also highly probable that a rootkit targeting Windows x64 will emerge in the wild in 2010. Yet makers of bogus web-sites will reach better efficiency by increasing the number of fraudulent web-resources. Even now anti-phishing technologies implemented in browsers to protect users from cyber-fraud often fail.&lt;/p&gt;

&lt;p style="text-align: justify"&gt;&lt;strong&gt;The number of malicious programs found in e-mail traffic in December increased 2.8 times compared to the November figures. The share of malicious files in the total number of files scanned on user machines increased 2.2 times. Cyber criminals raise the amount of money demanded from users for restoring their systems.&lt;/strong&gt;&lt;/p&gt;

&lt;p style="text-align: justify"&gt;&lt;strong&gt;&lt;span style="font-family: 'Arial','sans-serif'"&gt;Viruses detected in e-mail traffic in December&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;  

&lt;table border="1" cellspacing="0" cellpadding="0" width="90%" style="width: 90%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td colspan="3" style="padding: 3pt; background: #deeacc none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;&lt;p&gt;&amp;nbsp;&lt;strong&gt;01.12.2009 00:00 - 01.01.2010 00:00&lt;/strong&gt;&amp;nbsp;&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.DownLoad.37236"&gt;Trojan.DownLoad.37236&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;12417046 (14.38%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;2&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.DownLoad.47256"&gt;Trojan.DownLoad.47256&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;9400042 (10.89%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;3&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.MulDrop.40896"&gt;Trojan.MulDrop.40896&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;6643369 (7.69%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;4&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5115"&gt;Trojan.Fakealert.5115&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;6574865 (7.61%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;5&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Packed.683"&gt;Trojan.Packed.683&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;5380941 (6.23%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;6&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5238"&gt;Trojan.Fakealert.5238&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;4924800 (5.70%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;7&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.DownLoad.50246"&gt;Trojan.DownLoad.50246&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;3791901 (4.39%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;8&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLM.MyDoom.44"&gt;Win32.HLLM.MyDoom.44&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;3555068 (4.12%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;9&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5825"&gt;Trojan.Fakealert.5825&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;3221976 (3.73%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;10&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLM.Netsky.35328"&gt;Win32.HLLM.Netsky.35328&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;3012162 (3.49%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;11&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5437"&gt;Trojan.Fakealert.5437&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;2355690 (2.73%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;12&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5356"&gt;Trojan.Fakealert.5356&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;2135038 (2.47%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;13&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5784"&gt;Trojan.Fakealert.5784&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;1846800 (2.14%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;14&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Botnetlog.zip"&gt;Trojan.Botnetlog.zip&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1794382 (2.08%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;15&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.PWS.Panda.122"&gt;Trojan.PWS.Panda.122&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1732410 (2.01%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;16&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5229"&gt;Trojan.Fakealert.5229&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;1717600 (1.99%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;17&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Fakealert.5457"&gt;Trojan.Fakealert.5457&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1504800 (1.74%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;18&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Siggen.18256"&gt;Trojan.Siggen.18256&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;1429018 (1.66%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;19&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.MulDrop.46275"&gt;Trojan.MulDrop.46275&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1390881 (1.61%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;20&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLM.Beagle"&gt;Win32.HLLM.Beagle&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1301627 (1.51%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt; &lt;/tbody&gt;&lt;/table&gt;      

&lt;table border="0" cellspacing="3" cellpadding="0"&gt;  &lt;tbody&gt;&lt;tr&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;&lt;strong&gt;Total scanned:&lt;/strong&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;84,146,920,455&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;&lt;strong&gt;Infected:&lt;/strong&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;86,343,017 (0.103%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt; &lt;/tbody&gt;&lt;/table&gt;    

&lt;p style="text-align: justify"&gt;&lt;strong&gt;&lt;span style="font-family: 'Arial','sans-serif'"&gt;Viruses detected on user machines in December&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;     

&lt;table border="1" cellspacing="0" cellpadding="0" width="90%" style="width: 90%"&gt;  &lt;tbody&gt;&lt;tr&gt;   &lt;td colspan="3" style="padding: 3pt; background: #deeacc none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;strong&gt;01.12.2009 00:00 - 01.01.2010 00:00&lt;/strong&gt;&amp;nbsp;&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.WinSpy.440"&gt;Trojan.WinSpy.440&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;2410816 (12.69%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;2&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.WinSpy.413"&gt;Trojan.WinSpy.413&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1627202 (8.56%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;3&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.Virut.56"&gt;Win32.Virut.56&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;1297220 (6.83%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;4&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLW.Gavir.ini"&gt;Win32.HLLW.Gavir.ini&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;802751 (4.23%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;5&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.Rammstein.13346"&gt;Win32.Rammstein.13346&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;647967 (3.41%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;6&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.AuxSpy.71"&gt;Trojan.AuxSpy.71&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;585736 (3.08%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;7&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Packed.19247"&gt;Trojan.Packed.19247&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;525731 (2.77%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;8&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLW.Shadow.based"&gt;Win32.HLLW.Shadow.based&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;466105 (2.45%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;9&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLW.Texmer"&gt;Win32.HLLW.Texmer&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;399722 (2.10%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;10&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=JS.Popup.1"&gt;JS.Popup.1&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;397594 (2.09%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;11&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.AuxSpy.110"&gt;Trojan.AuxSpy.110&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;374109 (1.97%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;12&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.DownLoad1.16161"&gt;Trojan.DownLoad1.16161&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;368920 (1.94%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;13&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLW.Shadow"&gt;Win32.HLLW.Shadow&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;311983 (1.64%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; width: 1%"&gt;   &lt;p&gt;14&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.AppActXComp"&gt;Trojan.AppActXComp&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt"&gt;   &lt;p&gt;298597 (1.57%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;15&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.Siggen.29874"&gt;Trojan.Siggen.29874&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;295692 (1.56%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;16&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Trojan.AuxSpy.128"&gt;Trojan.AuxSpy.128&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;264613 (1.39%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;17&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.Yasv.924"&gt;Win32.Yasv.924&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;230928 (1.22%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;18&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=VBS.Psyme.377"&gt;VBS.Psyme.377&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;229697 (1.21%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;19&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.Alman.1"&gt;Win32.Alman.1&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;218138 (1.15%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td width="1%" style="padding: 3pt; background: white none repeat scroll 0% 0%; width: 1%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;20&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;&lt;a href="http://info.drweb.com/virus/?match=family&amp;amp;family=Win32.HLLW.Autoruner.5555"&gt;Win32.HLLW.Autoruner.5555&lt;/a&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 3pt; background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous"&gt;   &lt;p&gt;210376 (1.11%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt; &lt;/tbody&gt;&lt;/table&gt;      &lt;table border="0" cellspacing="3" cellpadding="0"&gt;  &lt;tbody&gt;&lt;tr&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;&lt;strong&gt;Total scanned:&lt;/strong&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;89,457,410,121&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;&lt;strong&gt;Infected:&lt;/strong&gt;&lt;/p&gt;   &lt;/td&gt;   &lt;td style="padding: 0.75pt"&gt;   &lt;p&gt;18,999,657 (0.0212%)&lt;/p&gt;   &lt;/td&gt;  &lt;/tr&gt; &lt;/tbody&gt;&lt;/table&gt;  </description></item><item><title>New version of Dr.Web for Linux hits beta</title><link>http://news.drweb.com/show/?i=814&amp;c=5</link><pubDate>Wed, 30 Dec 2009 00:00:00 GMT</pubDate><description>&lt;b&gt;December 30, 2009 &lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web launches beta-testing of the new version of its Dr.Web anti-virus for Linux.  The solution equipped with a control centre provides users with several new features.  The new version of the anti-virus supports both 32- and 64-bit versions of Linux (kernel 2.6*).&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;The anti-virus includes a new background scan component Dr.Web Unix SpIDer Guard that allows performing anti-virus check in a real time without a significant increase of the system load.  The control centre allows configuring the scanning depth and creating custom scanning profiles.  The solution also features the system for updating of virus database and software components of the anti-virus.&lt;/p&gt;

&lt;p&gt;The new version also offers users a single quarantine that allows restoring quarantined files if necessary and limiting the size of the quarantine.  Dr.Web for Linux also features a customizable notifications system and supports sound notifications.&lt;/p&gt;

&lt;p&gt;Doctor Web welcomes all users willing to participate in the &lt;a href="http://beta.drweb.com/"&gt;beta-testing&lt;/a&gt;. &lt;/p&gt;</description></item><item><title>Beta version of Dr.Web CureIt! With updated GUI-scanner</title><link>http://news.drweb.com/show/?i=813&amp;c=5</link><pubDate>Wed, 30 Dec 2009 00:00:00 GMT</pubDate><description>&lt;b&gt;December 30, 2009&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web launches beta-testing of Dr.Web CureIt! enhanced with the updated GUI-scanner capable of curing all existing modifications of BackDoor.TDSS.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;With the unique technology for neutralization of  BackDoor.TDSS programs the update also provides fixes improving interaction between the scanner and components of the operating system.&lt;/p&gt;

&lt;p&gt;Doctor Web welcomes all users willing to participate in the &lt;a href="http://beta.drweb.com/files/?p=%2Fcureit"&gt;beta-testing&lt;/a&gt;.&lt;/p&gt;</description></item><item><title>New Year greetings from Doctor Web</title><link>http://news.drweb.com/show/?i=805&amp;c=5</link><pubDate>Wed, 30 Dec 2009 13:46:55 GMT</pubDate><description>&lt;b&gt;December 30, 2009 &lt;/b&gt;

&lt;p&gt;The Russian anti-virus vendor Doctor Web is sending New Year greetings to all users of Dr.Web software, its business partners and competitors! Only good news, accessible dreams and unflagging optimism. May your sense of security and confidence remain with you in all your endeavours!&lt;/p&gt;

&lt;center&gt;&lt;img src="http://www.drweb.com/static/new-www/news/2009/600x800_en.jpg" border="0"&gt;&lt;/center&gt;</description></item><item><title>Dr.Web solutions for Unix updated</title><link>http://news.drweb.com/show/?i=798&amp;c=5</link><pubDate>Tue, 29 Dec 2009 00:00:00 GMT</pubDate><description>&lt;b&gt;December 29, 2009
&lt;p&gt;
Doctor Web releases the updated versions of its anti-virus solutions for Unix version 5.0 for protection of Internet-gateways, file servers and e-mail.&lt;/b&gt;

&lt;p&gt;
Dr.Web anti-viruses for Unix have received an updated scan module and virus databases.
&lt;p&gt;
The update also provides fixes of several known errors. Routines of the updating module have been optimized.  Some improvements have been done to available web-interfaces and the web-interface package for the smb_spider file operations monitor has been included in the installer of Dr.Web for Unix file servers.
&lt;p&gt;
Documentation packages for all Dr.Web solutions for Unix have also been updated. The Japanese locale for the solution protecting Internet gateways and mail servers has also been updated.
&lt;p&gt;
To apply the update users of Dr.Web solutions for Unix file servers, Dr.Web for Internet gateways Unix, Dr.Web for mail servers Unix and Dr.Web Mail Gateway you need to download updated distributions of corresponding products.
&lt;p&gt;</description></item><item><title>Updating of Dr.Web for Windows Mobile</title><link>http://news.drweb.com/show/?i=796&amp;c=5</link><pubDate>Mon, 28 Dec 2009 00:00:00 GMT</pubDate><description>&lt;b&gt;December 28, 2009
&lt;p&gt;&lt;newslead&gt;
Doctor Web releases the updated beta version of its new anti-virus product Dr.Web for Windows Mobile 5.0. The anti-virus includes a range of new features and has a number of errors fixed. &lt;/newslead&gt;&lt;/b&gt;
&lt;p&gt;
The main innovation implemented in the solution for protection of pocket PCs and communicators running Windows Mobile is its support of RAR and SIS91 archives.  Scanning of archives of other formats has also been improved: an error that prevented disabling the Scan Zip option while Scan CAB was enabled has been fixed.
&lt;P&gt;
An error that occurred when a license key file was downloaded over a GPRS Internet connection as well as an issue related to extracting a key file on a device without installed SIM-card have been corrected.
&lt;p&gt;
Now you can also change font size in the  Settings dialogues.  
&lt;p&gt;
In order to apply the changes a user needs to start manual updating of Dr.Web for Windows Mobile. 
&lt;p&gt;</description></item><item><title>Dr.Web AV-Desk, first deployments in Austria</title><link>http://news.drweb.com/show/?i=795&amp;c=5</link><pubDate>Thu, 24 Dec 2009 00:00:00 GMT</pubDate><description>&lt;b&gt;December 24, 2009&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;The relevance of anti-virus security as a service provided on a subscription basis to small and medium businesses is confirmed by new deployments of Dr.Web AV-Desk outside Russia. Two Austrian companies at a time — Ilongo and RCS-Technology — expanded their range of available services by adding the Dr.Web anti-virus to the list thus gaining extra benefits for themselves and for their customers.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;Ilongo and RCS-Technology run different businesses: the first company provides marketing services while the second one delivers system solutions. However, they have one thing in common – a large number of small and medium business customers that don’t have sufficient resources to solve some of their tasks. With Dr.Web AV-Desk one of such tasks – establishments and maintenance of a reliable security system – is now accomplished. A subscription to the Dr.Web anti-virus service allows customers to forget about cyber-threats once and for all leaving the anti-virus care to the renown Russian anti-virus.  Yet companies that use the SaaS model to expand their list of services in their turn are very likely to expand their client base as well.&lt;/p&gt;

&lt;p&gt;“In addition to our main business – online marketing services – we can now offer our customers protection of their information on a subscription basis. Such a combination of services can be quite interesting for small and medium businesses.”, Andreas Gstrein, the head of Ilongo said.&lt;/p&gt;

&lt;p&gt;The head of RCS-Technology Rene Sepanek also stressed the necessity of an IT security service. He was particularly impressed by the outstanding scalability of the Internet service. “Dr.Web AV-Desk can ensure reliable anti-virus protection for small companies as well as for large telecom providers. The exceptional scalability of the solution combined with user-friendly administration tools and time-proven anti-virus engine served as decisive arguments in favour of adding the Dr.Web anti-virus service to our portfolio”, Rene Sepanek said.&lt;/p&gt;

&lt;p&gt;“Flexibility and scalability of the solution makes it a perfect choice for any service provider. With our Internet service providers can find their way to new segments of the IT market and keep up with present-day demands. Trends in development of malware are volatile and Dr.Web AV-Desk provides us great potential to counter them", Ralph Kreter, the Doctor Web Deutschland GmbH manager said.&lt;/p&gt;

&lt;h3&gt;About Dr.Web AV-Desk&lt;/h3&gt;

&lt;p&gt;Doctor Web was the first anti-virus vendor that offered an anti-virus as a service on the Russian market. &lt;/p&gt;

&lt;p&gt;Deployment of Dr.Web AV-Desk allows subscribers of a service provider to use Dr.Web anti-virus as a service: choose a desired subscription period, renew their subscription automatically and therefore plan how much they are going to spend on anti-virus security. Providing an anti-virus as a service ensures its instant delivery and easy management of a subscription for home users and business customers. Dr.Web AV-Desk was released by Doctor Web in 2007. The number of service providers that deliver the Dr.Web anti-virus service in different regions of Russia and also in the Ukraine,  France, Spain, Netherlands, Mongolia, Kazakhstan, Kyrgyzstan, Bulgaria and Estonia is reaching 170. Following results shown by the service in 2007 it was named the best product-service by PC Magazine Russia. In September 2008 Dr.Web AV-Desk was awarded the large golden medal of the Siberian Fair as an original technical and telecom solution.&lt;/p&gt;

&lt;p&gt;&lt;a href="http://www.av-desk.com/"&gt;www.av-desk.com&lt;/a&gt;&lt;br&gt;
&lt;a href="http://network.drweb.com/"&gt;network.drweb.com&lt;/a&gt;&lt;/p&gt;

&lt;h3&gt;About RCS-TECHNOLOGY&lt;/h3&gt;

&lt;p&gt;RCS-TECHNOLOGY was founded in 1999 by Rene Stepanek and quickly became a recognized player on the IT market in Austria.&lt;/p&gt;

&lt;p&gt;At the very start the company was focused on provision of IT services. Later on it added Internet services to its area of interest and put a lot of effort in improving IT competency of its customers (WIFI St. Pölten and Fachhochschule St. Pölten).&lt;/p&gt;

&lt;p&gt;In 2004 the company started developing software for its customers. In recent years software development has become one of its primary activates.&lt;/p&gt;

&lt;p&gt;Today RCS-TECHNOLOGY has a team of solid professionals capable of meeting any customer demands.&lt;/p&gt;

&lt;p&gt;&lt;a href="http://www.rcs-technology.at/"&gt;www.rcs-technology.at&lt;/a&gt;&lt;/p&gt;

&lt;h3&gt;About ilongo&lt;/h3&gt;

&lt;p&gt;Ilongo develops high quality customized solutions for direct Internet marketing. The company offers top-class products and technical support to its customers. Ilongo also has years of experience in providing managed e-mail services. &lt;/p&gt;

&lt;p&gt;&lt;a href="http://www.ilongo.at/"&gt;www.ilongo.at&lt;/a&gt;&lt;/p&gt;
</description></item><item><title>Doctor Web releases single-user Dr.Web solutions supporting 64-bit versions of Windows</title><link>http://news.drweb.com/show/?i=786&amp;c=5</link><pubDate>Wed, 23 Dec 2009 16:55:54 GMT</pubDate><description>&lt;b&gt;December 23, 2009&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;The Russian anti-virus vendor Doctor Web announced the release of its single-user solutions for Windows supporting the x64 architecture. The software products come to users with the refined SpIDer Guard resident monitor, a number of additional features and the new look and feel.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;Updated SpIDer Guard enables Dr.Web Security Space and Dr.Web anti-virus for Windows to support all features of the latest operating systems from Microsoft. The new mini-filter technology improves compatibility of SpIDer Guard with operating systems and third-party applications.  Improved interaction between SpIDer Guard and the anti-virus engine contributed to increased scanning efficiency and more stable operation of the file monitor.&lt;/p&gt;

&lt;p&gt;Other components of anti-virus software have also been improved.&lt;/p&gt;

&lt;p&gt;The self-protection module maintaining security of components of an anti-virus run under Windows Vista SP1 64 and later has been upgraded.&lt;/p&gt;

&lt;p&gt;Dr.Web solutions for workstations also feature a centralized quarantine and quarantine management tools. The Infected! folder has been replaced with a secure storage that supports  encryption, logging and data backup. The special graphical interface allows users to control quarantined objects.&lt;/p&gt;

&lt;p&gt;The updated e-mail monitor SpIDer Mail know working directly over the Scan Engine module has become faster and more efficient.&lt;/p&gt;

&lt;p&gt;Now the anti-virus can also block launching of unknown malicious programs from removable data storage device that can be started using autorun.inf – the technique used by many viruses including &lt;b&gt;Win32.HLLW.Shadow.based&lt;/b&gt;.&lt;/p&gt;

&lt;p&gt;The look and feel of the anti-virus has also changed – now users can enjoy the freshly designed user interface. Developers also optimized the configuration process. In particular the log settings can now be configured much quicker using a slider. &lt;/p&gt;

&lt;p&gt;&lt;a href="http://download.drweb.com/demoreq/"&gt;Ask for demo&lt;/a&gt; | &lt;a href="http://partners.drweb.com/"&gt;Buy from partners&lt;/a&gt; | &lt;a href="http://estore.drweb.com/"&gt;Buy online&lt;/a&gt;&lt;/p&gt;</description></item><item><title>Protect any OS with Dr.Web Universal</title><link>http://news.drweb.com/show/?i=790&amp;c=5</link><pubDate>Wed, 23 Dec 2009 00:00:00 GMT</pubDate><description>&lt;b&gt;December 23, 2009&lt;/b&gt;

&lt;p&gt;&lt;b&gt;&lt;newslead&gt;Doctor Web announced another addition into its products bundle Universal.  Now this corporate offer for small and medium businesses includes anti-viruses for protection of workstations running Windows, Mac OS X and Linux.&lt;/newslead&gt;&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;Many companies use computers running different operating systems. While Windows PCs constitute a greater part of office machines, alternative operating systems are becoming more and more popular. Traditionally design companies prefer Mac OS X while Linux is often run on many workstations in firms involved in IT business. &lt;/p&gt;

&lt;p&gt;The Dr.Web bundle for small and medium business becomes truly universal. It allows companies to protect all hosts in a corporate network — workstations, file and mail servers, Internet gateways and mobile devices. Moreover, in addition to products for Windows it provides customers with solutions for Mac OS X and Linux. Companies that choose the bundle can use the same license key files for protection of machines running different operating systems.&lt;/p&gt;

&lt;p&gt;With its special low price of Dr.Web Universal small companies (5-100 PC) can get enterprise-class software even in the face of the global financial crisis. &lt;/p&gt;

&lt;p&gt;&lt;a href="http://products.drweb.com/bundles/choose/"&gt;Description&lt;/a&gt; | &lt;a href="http://partners.drweb.com/"&gt;Buy from partners&lt;/a&gt;  | &lt;a href="http://estore.drweb.com/universal/"&gt;Buy online&lt;/a&gt;&lt;/p&gt;</description></item></channel></rss>
