Dr.Web Desktop Security Suite employs signature analysis for detecting malware and behavioral analysis methods to analyze the sequence of actions taken by processes in the system. It provides protection against encryption ransomware. The anti-virus component blocks viruses and malware from accessing the protected system and addresses malicious programs that have penetrated it. The product features the non-signature detection technology Origins Tracing and a heuristic analyzer to protect against unknown threats. With the FLY-CODE technology, the suite detects and removes malware disguised with unknown packers. The product monitors removable media, email, files and directories, including packaged and archived data. It scans HTTP and mail traffic and controls access to websites and other Internet resources. A firewall component provides a barrier to unauthorized access attempts. Office Control blocks access to websites by URL keywords and restricts access to objectionable web content. Anti-spam detects spam and other unsolicited messages in multiple languages. The product updates the virus database contents and the antivirus kernel to maintain anti-malware protection. Dr.Web Desktop Security Suite can operate in standalone mode or as part of an anti-virus network managed by a centralized protection server.