Real-time malware protection. What is Malwarebytes Anti-Malware and is it needed? Quarantine and log management

Malwarebytes Anti-Malware (MBAM) is a free antivirus utility (there is also a paid version), that is, this is another useful program of the type that has helped me out more than once.

There is an advanced version that costs money, but there is a simpler version, free. Well, it's up to you to choose whether to pay or not, of course there are differences, but to remove some kind of adware and free will be enough. The utility is aimed at finding all kinds of advertising scum on your computer, including all sorts of malicious plugins or unnecessary programs that have been installed without your knowledge.

So if you can't open the sites you want, or they don't work correctly, and browsers behave strangely, there are too many ads, or for example there is no menu when you right-click, then you should have Malwarebytes Anti-Malware at your fingertips!

The main feature is fast and high-quality work (although the developers say that scanning is a little slow in the Free version). And it finds the harmful software that neither Kaspersky (although it is really powerful) nor other antiviruses will find.

Well, okay, we've talked and that's enough, now let's move on directly to the program itself, or rather to its installation. First, we go to this site, where you can download a free version, but it will only be like this for two weeks (indicated on the site). Click on the free download:


I advise you to run the utility with extended rights, that is, on behalf of the Administrator, in which case it will have more rights to destroy viruses!

Well, then we launch the installer, for example, here's how to do it in Yandex Browser:

During installation, the Russian language will be selected:

A standard installation window will appear, as with all programs:


The installation is normal, we accept the license agreement and click Next. At the end, you will be prompted to launch Malwarebytes Anti-Malware and activate the trial period of the PRO version, well, if they do, then let's try!


After the launch, the process of updating the anti-virus databases immediately started, well, this is very commendable.


You can already check your computer for viruses, but before that, let's go through some of the Malwarebytes Anti-Malware settings, to do this, click on the Options button at the top of the program:


In the settings, you can add a file (for example, trainers for games are often perceived as viruses, although sometimes they are viruses) or a folder that will be excluded during the scan, for example, if a program is installed in this folder, which is mistaken for dangerous software. This setting is on the Exceptions tab, and that's where you can add:


On the Detection and Protection tab, you can also enable rootkit scanning - you just need to check the box:


The Advanced parameters tab contains an important self-defense option - I advise you to check the box (there are even two of them), if the computer slows down during the scan, you can check the box to decrease the scan priority:


The built-in Task Scheduler will allow you to configure Malwarebytes Anti-Malware to work as efficiently as possible, by default there will already be two tasks, but you can change them for yourself or even add your own:


All the necessary settings are there:


Well, that's it, it seems like these are more or less the main settings, now let's try to check the computer for viruses. Go back to the Information panel and click the Start check button:


As you can see, it checks RAM, autorun, registry, file system and then heuristic analysis, which is also very cool. In simple terms, heuristic analysis is an intelligent approach; in general, you can find those viruses that are not yet known. Checks really quickly, although it depends more on the speed of your drive, that is, if you have an SSD, then of course it will be much faster.


After the scan, you will see how many objects were scanned and threats were found, in my case no threats were found.You can click on the Finish button:


But, alas, not everything is as good as it seemed .. the trick is that before checking, I installed the Anti-obscene extension in Google Chrome, about which I wrote that it cannot be removed and all that. So, what is interesting - Malwarebytes Anti-Malware did not find anything suspicious, despite the fact that I activated the trial period of the PRO version, that is, it is not even Free, but still silence. Then I ran and this is what I see:


As you can see, AdwCleaner is more strict about scanning, although I looked at the Malwarebytes Anti-Malware settings and I did not notice anything that would prevent it from finding this malicious extension. In general, these are the things, draw your own conclusions, by the way AdwCleaner is completely free

My advice is that you should always have several virus removal tools at hand on your computer, not just one. It often happens when one utility finds what the other did not find and vice versa. Therefore, it makes no sense to write that one utility is better and the other is none, it seems to me that each utility has its own strengths.

Since I checked the box about the PRO trial period during the installation, we did not consider the Free version. And it will become like that in two weeks and you can also use it calmly! And what is the minus? Only in the fact that you have to manually check your computer for viruses, that is, itself, as the PRO version, it will not do it. So what, is this a big minus? So I think not

09.04.2016

On April 4, 2019, software release history, user guides, and product lifecycle information were moved to the Malwarebytes support website. For more information, please go to https://support.malwarebytes.com/ and select home or business solutions.

Performance / protection

  • Improved algorithms for detecting threats and mitigating the consequences of attacks

The convenience of use

  • In the free version, the automatic monthly scheduled scan, previously set by default, is disabled
  • Updated installer to now allow you to install a standalone business product when certain conditions are met
  • Fixed a blue screen error related to the farflt.sys file
  • Fixed a bug related to exceptions containing short file names
  • Fixed an issue that prevented real-time protection from activating properly

Performance / protection

  • Added HVCI support for low-level shell code integrity check and Device Guard support to meet Microsoft requirements
  • Optimized the threat elimination process: now a system reboot is required in fewer cases
  • Improved the accuracy of the protection module on the Internet
  • Improved stability scores by optimizing driver management

The convenience of use

  • Updated dashboard design to better display information about Malwarebytes real-time protection features
  • Updated the algorithms for the Action Center to make it easier to close its messages

Stability / Resolved Issues

  • Fixed an issue that caused the Anti-Ransomware Engine to consume too many CPU and memory resources
  • Fixed an issue that caused Malwarebytes to open in the scan tab instead of the dashboard
  • Fixed a number of errors that were related to protection in the Internet and led to crashes
  • Fixed other errors of various nature

Performance / protection

  • Improved algorithms for eliminating threats associated with stealing shortcuts
  • Additional security improvements and optimization of common algorithms for detecting and remediating threats

The convenience of use

  • Now for paid users, the device name is synchronized with the Malwarebytes "My Account" portal
  • Improved access to notification center
  • Added special messages highlighting the value of Malwarebytes protection

Stability / Resolved Issues

  • Fixed an issue with copying / pasting files with ransomware protection activated
  • Addressed issue where USB storage does not eject properly when Anti-Ransomware is enabled
  • Fixed a service crash related to the self-defense module
  • Resolves a crash related to Internet Protection causing a Blue Screen error
  • Fixed other errors of various nature

Performance / protection

  • Improved algorithms for eliminating threats related to shortcuts and tasks
  • Optimized operation of the program in highly infected systems, which makes it possible to speed up the detection and elimination of threats
  • Additional security improvements and optimization of common algorithms for detecting and remediating threats

The convenience of use

  • Added a notification center for quick access to recent real-time threat blocking notifications
  • Added an option to display the reason for blocking the website in the corresponding notification
  • Improved report design for better usability
  • Added a device name to the My Account screen in preparation for syncing with the My Account portal
  • Updated API used to interact with Windows Support Center / Windows Security Center
  • Changed the "Resume if the gap is" setting so that scheduled scans are enabled by default for new scans
  • Numerous other improvements related to user interface and copying

Stability / Resolved Issues

  • Fixed an issue where files were not saved as expected when Ransomware Protection was enabled
  • Fixed a bug that led to the accumulation of notifications on the screen, as a result of which the user could see several versions of the same message
  • Fixed a bug due to which the setting for enabling beta updates was inconsistent with restoring the default parameters
  • 7-Zip library updated to the latest version v.18.01
  • Improved upgrade process for earlier versions of Malwarebytes
  • Additional driver enhancements and management
  • Several bugs fixed, including a blue screen error related to Internet protection
  • Fixed other errors of various nature

Performance / protection

  • Improved Chrome Browser Malware Removal Procedure
  • Numerous improvements in protection and anti-malware technologies

The convenience of use

  • Improved notification design for a better experience
  • Added a new quick view module in free and trial versions
  • Added information modules to the verification process window in free and trial versions
  • Improved the update process to allow for more dynamic updating of UI components
  • Other minor user interface changes

Stability / Resolved Issues

  • Fixed an issue where Malwarebytes in the notification area was displayed in the ALT + Tab list
  • Improved compatibility with third-party applications when protecting the Internet
  • Improved driver control
  • Fixed an issue where some notifications were not displayed properly after exiting sleep mode
  • Fixed an issue on XP computers where Chameleon files were not completely removed
  • Fixed an issue that caused the program to crash as a result of checks for rootkits
  • Some improvements have been made to the user interface; eliminated other defects of various nature

Performance / protection

  • Optimized memory usage
  • Reinstallation using the old installer will no longer downgrade to an earlier version of service packs
  • Improved stability and robustness of the self-defense module
  • Improved many algorithms used to protect against and neutralize malware

The convenience of use

  • Now, after clicking the Install Application Update button, the download of the available updates to the components and releases of the application is performed regardless of the space restrictions for the automatic delivery of updates
  • Added a button that allows access to the Malwarebytes "My Account" portal from the application screen of the same name
  • Added a new setting that allows you to automatically receive beta versions of component updates and full releases of the application
  • Minor UI changes, including confirmation of reboot after check is complete

Stability / Resolved Issues

  • Fixed issues that could occur when updating from earlier versions of the program to version Malwarebytes 3
  • Fixed an issue where the update process would fail if started immediately after the computer wakes up
  • Fixed an issue where the user interface might become unresponsive when there are drives mapped
  • Fixed several issues that could lead to the message "Unable to connect to the service"
  • Improved overall driver stability
  • Fixed several issues related to interface translation
  • Fixed several errors that caused the program to crash or freeze and were related to the operation of the program and the taskbar

Performance / protection

  • Numerous improvements to reduce memory usage
  • Reduced load times and response times for third-party applications
  • Optimized work of protection on the Internet
  • Reduced Malwarebytes for Windows startup time and UI response times
  • To detect anomalies in the operation of the system, a new level of protection and detection based on machine learning has been created (it will be activated gradually, despite the fact that the settings indicate the value "Enabled")
  • Improved self-defense module: now extended rights are required to disable protection or to deactivate a license
  • Improved algorithms used to protect against and neutralize malware
  • Added automatic monthly scheduled check in free version

The convenience of use

  • Added the ability to control the priority of manual check in the system
  • Added a setting that can be used to disable the notification "Real-time protection is disabled" if protection was specifically disabled by the user
  • Added the ability to exclude the last website blocked by the protection module on the Internet via the menu in the notification area
  • Fixed a number of bugs related to custom check settings, including selection of child folders and touch screen operation
  • Fixed a bug where, after a scheduled scan, it was not possible to start a scan from the right-click context menu due to the incorrect message "Scan cannot be started when another scan is in progress"
  • Fixed a bug where the user was unable to add or edit a scheduled scan in Spanish and some other versions of the program
  • An error has been eliminated that caused the program to freeze during the execution of the heuristic analysis, despite the fact that in reality the scan was completed successfully
  • Fixed a bug where switching the self-defense setting did not work properly after updating the program

Stability / Resolved Issues

  • Fixed a number of errors that led to the failure of the protection module on the Internet
  • Fixed a bug where ransomware protection stuck at startup after a system restart
  • Fixed a conflict with the Norton app that caused web pages to fail to load and plugins to crash in Chrome
  • Fixed a bug that was related to protecting Windows Management Instrumentation (WMI) from exploits that could cause crashes in Office applications
  • Fixed several errors related to the program and the taskbar
  • Fixed security vulnerabilities that could lead to local user privilege escalation when shared
  • Many other defects of various nature have been eliminated; some improvements have been made to the user interface

Performance / protection

  • Several performance improvements: reduced startup time, fixed memory leaks, reduced CPU usage after check completion
  • Added MS Publisher to the list of default applications covered by exploit protection

The convenience of use

  • The error that led to the removal of an activated license for the Premium version of the program has been fixed
  • Fixed a bug where in some cases, for example when returning from Minimum Safe Mode, instead of the information about the current version of Malwarebytes, the original indicator 3.0.0 was displayed
  • Fixed a bug that, on initial launch, led to an incorrect display of the notification "Real-time protection is disabled"
  • Fixed a bug where the option "Check for updates every" lost functionality at the value "14 days" after the user set the frequency of checks in days
  • Fixed a bug where the "Help" section could not be opened in the main user interface by clicking on a button shaped like a question mark

Stability / Resolved Issues

  • Fixed several crash and blue screen bugs, including bugs related to online protection in Windows Insider Preview builds
  • Fixed an exploit protection bug that caused the Edge browser to crash or freeze in Windows Insider Preview builds
  • Fixed an issue where PowerPoint could not start after enabling exploit protection
  • Fixed errors that could lead to the message "Unable to connect to the service"
  • Fixed a bug where the list of exclusions did not work as expected if the program detected threat traces associated with them
  • Fixed a bug where Internet protection did not start properly
  • Fixed a number of errors that caused the scan to fail or freeze, including an error that could occur during heuristic analysis
  • Many other fixes have been made to improve the overall stability and usability of the program

Resolved Issues

  • Fixed an installer error where the message "External exception E06D7363" was displayed
  • Fixed a bug where the update process stopped during the verification phase
  • Fixes an issue where after enabling anti-malware protection it took longer to shutdown Windows 7
  • Fixed a conflict with Kaspersky that prevented browsers from launching properly
  • Improved installation algorithm for Malwarebytes update, which uses the previous version of anti-exploit technology

Performance / protection

  • Added signatureless technology to counter exploits and ransomware (Premium version only)
  • The speed of the anti-virus scan has increased by 4 times, and the quick scan takes even less time
  • Canceled optional reboot after some malware deletion events
  • Enhanced heuristic engine (Shuriken) is now enabled by default
  • The self-defense module is now enabled by default (only in the Premium version)

The convenience of use

  • Updated user interface optimizes user experience
  • Added the ability to integrate with Windows Support Center / Windows Security Center (Premium version only)
  • Checking for updates is now automatic and does not require scheduling
  • Improved support for screen readers and keyboard navigation

Stability / Resolved Issues

  • Added the ability to block the "Personal Account" screen using the settings of the user's access policy
  • Added the ability to keep extended logs on the recommendation of the support team
  • Fixed an issue where the scheduler did not take daylight saving time into account
  • Fixed an issue where the default scheduler would run Threat Scan hourly instead of daily
  • Fixed an issue where Chameleon was reporting errors to Windows Event Viewer multiple times
  • Disabled by default the scheduler setting "Resume if the gap is"
  • Canceled search for rootkits in custom scan mode if the entire system disk is not selected
  • Updated to latest 7-Zip DLL
  • Fixed other errors of various nature

Improvements:

  • Added a shopping cart to the app for shopping in supported regions
  • Added support for macOS Mojave
  • Improved error handling algorithm
  • Improved stability

Improvements:

  • Added the ability to set a schedule for checks
  • Improved initial installation interface
  • Minor issues fixed

Fixes:

  • Fixed an issue where the user received a software update notification but could not download it
  • The cause of crashes on computers of a small number of users has been eliminated

Improvements:

  • Added reports tab where you can view past events
  • Added support for automatic license activation for premium version
  • Added a setting to manage threat detection information
  • Improved handling of premium-version licenses and sending notifications about license-related events

Stability / Issues Resolved:

  • Fixed an issue that caused real-time protection to be disabled on some systems

Improvements:

  • Installer changed: Malwarebytes dashboard is now displayed after installation is complete
  • Added the ability to enable beta updates
  • Several minor changes have been made to the user interface

Stability / Issues Resolved:

  • Fixed a bug due to which the program could not delete detected objects

Improvements

  • Improved the notification procedure in the trial version
  • Added option to remove the program from the application
  • Improved app update process
  • Improved compatibility with possible macOS patch releases
  • Other miscellaneous issues fixed

Improvements

  • Added compatibility with macOS High Sierra (10.13)
  • Improved installation process in High Sierra
  • Reduced the amount of memory used by the real-time protection kernel
  • Fixed an issue that in rare cases could cause the program to crash
  • Real-time protection notifications
  • Various bugs fixed
  • Real-time protection
    • Premium version only
  • More professional user interface
  • Menu bar call-up icon for quick access to functions
  • Bug fixes and internal improvements

Improvements

  • Improved UI on Chromebooks

Improvements

  • A number of call security enhancements have been implemented
  • Added notifications to help users better understand how the app protects them

Stability / Resolved Issues

  • Minor issues fixed

Improvements

  • Clearer pricing and features during the purchase process

Improvements

  • Improved call blocking feature

Stability / Resolved Issues

  • Fixed several issues that could cause the application to stop responding
  • Fixed other errors of various nature

Improvements

  • Added call protection to resist fraudulent calls (currently only for US numbers)
  • Dropped support for Android 4.3 and earlier

Stability / Issues Resolved:

  • Fixed an issue due to which, on some devices, the program repeatedly issued notifications that application verification was not performed

Improvements:

  • Added an option to purchase a product package for home devices
  • Improved deep validation core

Stability / Issues Resolved:

  • Fixed a bug that caused protection update failures

New features:

  • Added the ability to subscribe for a month

Improvements:

  • Added option to disable memory caching
  • Added in-app notifications for a study that is running until January 8
  • New features
    • Check for phishing links in Chrome
  • Improvements
    • Improved compatibility with Android 8 (Oreo)
    • Performance improvements and bug fixes
  • Premium version
    • Freemium model
    • Trial version support
  • Effective protection
    • Ransomware protection and attack mitigation
    • Deep check
    • Checking applications before installing
  • Supports Google Play purchases
  • Premium user interface
  • Home screen widget
  • Custom text check for phishing links
  • Control by SMS
  • More aggressive search algorithms for potentially unwanted programs (PUP)

Resolved Issues

  • Fixed a bug that in rare cases caused the scan to "hang"

Changes

  • Kernel improvements to optimize detection of new threats
  • Added the ability to detect threats in all user folders
  • Fixed a bug that in rare cases caused the program to crash when receiving incorrect data from the update server
  • Duplicate entries removed from log file
  • The program now requires Mac OS X 10.9 or later to run
  • Now, to improve security, all app updates will be downloaded over a secure HTTPS channel
  • Added a feature to recognize extensions that are installed in Chrome or Firefox profiles other than the default profile
  • Fixed a bug due to which there was a crash when deleting some files
  • Fixed a bug due to which in rare cases it was not possible to find some files
  • Fixed a bug due to which, in rare cases, there were false alarms of the program with respect to login objects
  • Fixed a bug due to which some login objects were displayed incorrectly in system snapshots
  • System snapshots no longer show Apple extensions in the kernel extensions list
  • Fixed bug preventing self-updating

Changes

  • Completely rewritten to improve support for OS X technologies
  • Added a tool that installs in the background and helps to remove files from directories where special permissions are required
  • Several additional security improvements implemented
  • Signature database updates can now be deployed faster to client computers
  • Improved accessibility support
  • Improved interface

Improvements:

  • The ability to run a scan from the context menu is now enabled by default. Please note: if you previously disabled this option and want to leave it unchanged, you will need to manually disable it again once. This option will not be affected by future updates.
  • Improved the procedure for renewing a subscription for those users who purchased the program in a retail store: now after renewing the subscription, the original key is saved, and the user no longer needs to enter and activate a new key
  • Improved the procedure for completing familiarization with the program: now the interface more clearly signals that the evaluation period is over and real-time protection is not available
  • Introduced additional license checks to update subscription information as soon as possible after renewal processing is complete
  • Updated company and software product logos
  • In the Premium version of the program, the "Renew" button has been removed from the "Personal Account" screen in order to avoid misconceptions about the license validity period.

Resolved issues:

  • Fixed security vulnerability: Database updates are now guaranteed to be downloaded only over SSL connections
  • Fixed a crash that occurred when installing Dell Backup and Recovery on the same system
  • Fixed an issue where the schedule of scheduled weekly scans was not being respected as expected
  • Fixed an issue where multiple consecutive times were incorrectly displayed in license expiration notifications
  • Fixed an issue where in some cases the scheduler continued to run after the trial period ended
  • An issue has been fixed where the update progress bar located on the dashboard “hangs” and does not indicate the completion of the process
  • Some improvements to the Chameleon self-defense system

Improvements

  • Added full support for Windows 10 operating system
  • Improved measures to prevent false positives for files without threats
  • The algorithm for searching for rootkits has been improved to avoid erroneous detection of the threats "Unknown.Rootkit.Driver" and "Unknown.Rootkit.VBR"
  • Minor tweaks have been made to the user interface, in particular, the verification results screen and the top-level navigation menu have been updated
  • Added the ability to sort columns in the table of quarantined files located in the "History" tab
  • Improved the algorithm for performing updates that are scheduled to run after a reboot, thus avoiding missed update operations
  • Improved distribution of messages that is carried out in user accounts with limited access when trying to perform an action that requires administrator rights
  • Added a new message that appears when Malwarebytes Anti-Malware is running in a corporate environment
  • Updated the attached license agreement

Resolved Issues

  • Fixed security vulnerability, improved Malwarebytes Anti-Malware self-defense feature
  • Fixed several issues related to updating databases in restricted user accounts
  • Fixed an issue where USB drives did not appear as validable on the Spot Check Options screen
  • Fixed several licensing issues that could potentially lead to an inappropriate state of protection and incorrect license recognition
  • Fixed an issue where the user interface would not launch after double clicking on the icon located on the taskbar

Improvements

  • The license key is now displayed on the "My Account" screen
  • The remaining subscription period is now displayed on the "My Account" screen
  • Made other licensing improvements to clarify license status
  • Malwarebytes Anti-Malware Web Protection with Advanced Protection
  • Numerous enhancements for full compatibility with Windows 10
  • Improved Malwarebytes Chameleon's ability to fully restore Malwarebytes functionality when infected with malware
  • Updated data collection methodology to improve malware research and analysis
  • Removed the "Exclude" button on the "Website blocked" notification to reduce inadvertent access to malicious sites
  • Updated the text on the notification button "Malware Detected" and "Unwanted Software Detected" to clarify the meaning
  • Added improved support for high DPI displays
  • Activated the free version of Malwarebytes Anti-Malware to receive incremental database updates
  • Added relevant copyright and license terms for all third party open source software
  • Fixed translation errors for major languages ​​other than English (German, French, Spanish, Italian, Dutch, Portuguese, Brazilian Portuguese, Russian and Polish)
  • Added support for Traditional Chinese, which was provided by a volunteer for the convenience of our users and is not an officially supported language
  • Several improvements in malware detection and fixes

Resolved Issues

  • Reversed a temporary change in v.2.1.6 that disabled checking for updates before scheduled scans
  • Fixed SDK database load errors for error code 2 and 1812
  • Removed the little-used setting "End the program if no threats were found", now the scan starts from the notification area
  • Fixed several system crashes that could occur during scanning and moving to quarantine
  • Fixed system crashes that occurred after clicking on the "Clear Policies" link on the "Access Policies" screen
  • Fixed an issue where the "Show notification on successful update" setting was not saved when upgrading from v.2.1.4 to v.2.1.6
  • Fixed an issue where the "Hide notifications" setting was not saved when upgrading from v.2.1.4 to v.2.1.6, if the user returned the value of this setting for 7 seconds after installing v.2.1.4
  • Fixed an issue on the "Quarantine" screen when deselecting an object in quarantine deactivated the Delete and Restore buttons
  • Fixed an issue where an incorrect version of the program was displayed in the scan log
  • Deactivated option to scan rootkit as part of quick scan
  • Fixed an issue in Windows 10 Tech Preview and Windows 8.1 where Malwarebytes Anti-Malware would not launch in certain cases after enabling Self-Defense
  • Fixed an issue where Malwarebytes Chameleon would not load properly on Windows XP SP3 under certain circumstances
  • Fixed a bug that prevented the update from Malwarebytes Anti-Malware v.1.75 with custom configuration to Malwarebytes Anti-Malware v.2.1.4 (or higher)

Resolved Issues

  • Fixed a crash that occurred when checking in the heuristic analysis phase
  • Fixed errors loading the SDK database: the "Check for updates before scanning" setting is temporarily ignored before starting a scheduled scan
  • Fixed a crash that occurred when editing or deleting an access policy if the contents of the name and description fields were different
  • Fixed an issue where the option "Restart the computer if necessary to remove threats" did not appear as expected in the "Modify Schedule" or "Add Schedule" dialog boxes

Resolved Issues

  • Users with administrator rights should not be prompted to log in as an administrator to update the program
  • Fixed an issue where the Web Protection Service (MWAC) did not restart as expected
  • Resolved numerous issues with scheduled scans, including displaying the correct date in the "Next scheduled scan" message in the dashboard
  • Fixes an issue where the Malwarebytes Anti-Malware Scheduler would start at startup when Malwarebytes Anti-Malware was not configured to start at Windows startup
  • Fixed an issue where a language other than English selected during installation would not activate after the installation was complete
  • Fixed an issue where Malwarebytes Anti-Malware did not always automatically update the database during installation
  • An issue has been resolved where the "Delay protection start for 15 seconds" setting was displayed as enabled, but was actually disabled. (We recommend that you check this option so that it is configured according to your preferences.)
  • Fixed an issue where the message "Error code 6" was displayed at the end of the check
  • An issue has been fixed where in the Windows XP operating system, after a restart, the scheduled scan did not start if the "Enable self-defense module" option was checked
  • Malwarebytes Anti-Malware now applies self-defense settings left over from previous installations
  • Fixed an issue where custom detection and protection settings were not applied during a scan via the context menu
  • Made several user interface improvements to address access issues

Improvements

  • Updated design: user interface is clearer, color scheme is softer
  • Improved check algorithm: now, during scanning, the program automatically checks for updates and installs the most current database update
  • Simplified algorithm for sending to quarantine: when threats are detected, only one command button is displayed
  • Several improvements to malware detection and remediation capabilities, including improved ability to detect and remove rootkits
  • Minimize button now minimizes the program to the taskbar instead of to the notification area
  • The default notification display delay value has been reduced from 7 seconds to 3 seconds
  • The "Show notification on successful update" setting is now disabled by default for all scheduled updates
  • Removed info / marketing messages from main dashboard
  • Discontinued support for Thai due to translation quality issues
  • Blocked the ability to install Malwarebytes Anti-Malware for private clients / for home use over the version for business clients

Resolved Issues

  • Fixed an issue related to malware protection

New features

  • Now in the "Advanced Options" section, the scan can be run as a process with a lower priority, which allows for better multitasking
  • Added support for navigating the user interface using the keyboard
  • Added JAWS support and Windows Narrator screen reader

Improvements

  • Improved Malwarebytes Chameleon utility: improved efficiency against active malware when launching Malwarebytes Anti-Malware
  • Based on user feedback, the default duration for issuing outdated database notifications has been increased from 1 to 7 days
  • A separate entry in the protection logs is now created for each scan performed with Malwarebytes Anti-Malware
  • Failed update checks are now also logged in the protection logs
  • Malwarebytes Anti-Malware update now works even when the program is waiting for user action in the scan tab
  • Improved support for scanning encrypted disks when the rootkit scan is enabled

Resolved Issues

  • Google Chrome users will no longer experience Malwarebytes Anti-Malware freezing during heuristic analysis
  • An issue has been fixed where, on some systems, the program "hangs" when scanning file system objects
  • Fixes causes of some Malwarebytes Anti-Malware software glitches
  • Runtime errors should no longer occur while installing or updating Malwarebytes Anti-Malware
  • An issue has been fixed where, when searching for rootkits on drives that are not system drives, but on which encryption is applied, the program marked sectors as fake
  • Now the search for rootkits on drives encrypted with Bitlocker should be done properly
  • Scanning system volumes with TrueCrypt encryption without using a rootkit scan no longer results in a file system scan failure
  • Fixed an issue related to restoring local drives in Windows 8 and Windows 8.1 systems after removing rootkits
  • Fixed a blue screen error when using Driver Verifier on a system with Malwarebytes Anti-Malware installed
  • Fixed a blue screen error when using Boxcryptor
  • Fixed a blue screen error sometimes occurring when using Malwarebytes Chameleon or the self-defense feature in Malwarebytes Anti-Malware
  • Fixed a Malwarebytes Anti-Malware crash sometimes occurring when using the Copy to Clipboard feature
  • Changing the Malwarebytes Anti-Malware language should now be immediately reflected in the BANNER text of the dashboard
  • Fixed several issues with notifications
  • Fixed several issues with displaying information in some languages
  • Malware Exclusions and Web Exclusions should no longer generate identical messages after database update
  • Fixed an issue that caused Malwarebytes Anti-Malware to crash intermittently when upgrading from version 1.75
  • Fixed several issues with the "Check with Malwarebytes Anti-Malware" right-click feature
  • Fixed several issues with access policies
  • Fixed several user interface issues
  • Several improvements to the user interface have been implemented, the user interaction algorithm has been improved
  • Fixed a bug with displaying multiple Malwarebytes Anti-Malware icons in the notification area that sometimes occurred at system startup
  • Fixed an issue where the Malicious Website Protection feature sometimes did not work after installing an application on Windows Vista
  • Fixed minor issues with tables in the user interface

Improvements

  • Clarified some of the terms used to indicate test results and also in test logs
  • Now, in most cases, enabling or disabling the self-defense function will be carried out more quickly.
  • Language names are now labeled in these languages ​​rather than translated, making it easier to select the desired language
  • Fixed a bug in Windows Vista and later operating systems where during startup or shutdown, a blank window blinked on the screen when Malwarebytes Anti-Malware was minimized to the notification area

Resolved Issues

  • Fixed several issues with software glitches and blue screen errors that occurred when searching for rootkits
  • A special improvement made it possible, under certain circumstances, to increase the scan speed with the enabled rootkit search function
  • An issue has been fixed where checking for rootkits caused the program to freeze in certain cases
  • Fixed compatibility issues with some VPN clients
  • Fixed an issue where protection sometimes did not start after an update, when the self-protection function was enabled before the update
  • All items on the "Basic Settings" tab now respond appropriately to mouse clicks
  • Fixed several access policy issues that could not properly restrict access
  • Fixed a bug due to which editing the access policy password led to the fact that even if the correct password was entered, access to certain program functions continued to remain closed
  • Access Policy now continues to work even when Bitdefender Total Security is installed
  • Fixed a bug where manual scanning of individual files and folders using the browser context menu sometimes crashed
  • Green status label no longer appears when Malwarebytes Anti-Malware fails to connect to update servers
  • Fixed a bug where some of the text went beyond the edges of the user interface in Windows XP or when choosing the classic theme in Windows 7
  • The check time is now displayed correctly after its completion
  • Quarantined items appear as expected in restricted user accounts when an item cannot be restored due to insufficient user rights
  • Some words in the user interface remained in English when switching the program to another language
  • Fixed a bug where after uninstalling Malwarebytes Anti-Malware the driver could not be uninstalled

Improvements

  • Now the database is updated automatically after installing the program
  • In order not to overload the user with unnecessary information, the display of notifications on the screen when the information panel is displayed is disabled
  • Significantly reduced the size of all messages that are displayed in the notification area
  • Reduced the intensity of the colors used to show status notifications and banners in the dashboard
  • Reduced the severity of notifications about an outdated database and the need to carry out the first check: now they are displayed not in red, but in orange

Resolved Issues

  • All scheduled checks are now launched without displaying the interface, so as not to distract the user from work

Changes

  • The design of the user interface has been completely changed, which greatly facilitated the work with the product, and also made the interface more informative, made it easier to access the main functions
  • The "Quick check" function has been renamed to "Full check" and has become the recommended type of check
  • Malwarebytes Anti-Rootkit is integrated into the scanner (available in the "Detection Options" menu)
  • Integrated Malwarebytes Chameleon Driver technology, which provides self-defense of the program in the Premium version (this function is available in the "Advanced options" menu)
  • Improved protection against malicious websites for Windows Vista SP2 and later (improved performance, added the ability to exclude processes such as BitTorrent clients from the malware protection list, added the ability to manually exclude IP addresses and specific URLs -addresses / websites by domain name)
  • A special algorithm for checking x64 systems has been introduced to detect and eliminate malware
  • Significantly improved technology for detecting and removing malicious objects

Resolved Issues

  • Addresses performance issues when listening to streaming audio on Vista SP2 and later when using Malicious Website Protection

Changes

  • Added the ability to check files in archives

Changes

  • New logo and icons of the program
  • Heuristic search for zero-day exploits is now implemented in the PRO version protection module
  • Threats detected by the protection module are now automatically quarantined by default
  • Malwarebytes Anti-Malware now displays notifications on the Windows 8 start screen
  • Malwarebytes Anti-Malware now appears in scan logs, registry and About tab
  • Many new features have been added to the More Tools tab, with more coming in the future
  • The file system protection requests include an option that allows you to temporarily allow the launch of a suspicious object (item "Allow temporarily")
  • The file system protection requests include an option that allows you to add the detected object to the list of ignored files (item "Always allow")
  • Improved heuristic algorithm to detect new and not yet explored threats
  • Improved scanner efficiency
  • Microsoft Windows 8 and Internet Explorer 10 are now correctly identified in the scan logs
  • Updated help file to include information about new features
  • Improved realtime compatibility with many other security software
  • Fixed a minor issue with generating a password from the command line interface

Changes

  • Updating a previous version of the application in Windows Vista or Windows 7 may sometimes delay the launch of the protection module. (Corrected)
  • Under certain circumstances, the protection module does not start with Windows. (Corrected)
  • Sometimes the check completes prematurely. (Corrected)

Changes

  • A comprehensive API has been implemented that allows business clients to control the settings and set the configuration of the program
  • Added a feature to allow business clients to import / export settings
  • For business products, the "Exit" option does not appear in the notification area menu when "limitedusermode" is used
  • In subsequent versions, the ability to install updates without rebooting is implemented
  • The protection module is now managed for the entire system, and not only for individual user accounts
  • In the "Protection" tab, you can now separately enable / disable the functions of blocking the file system and websites
  • The protection logs now display the time when the blocking execution of malicious files was enabled or disabled
  • Real-time protection can now be easily disabled using the "Exit" option in the notification area menu, without interrupting the execution of processes
  • Added Japanese language support
  • Improved Malwarebytes Chameleon to be even more effective against the latest threats
  • Real-time protection now launches significantly faster on Windows Vista and Windows 7
  • Addressed performance issues when updating the database and modifying the ignore list on Windows Vista and Windows 7
  • You can now minimize pop-up notifications for threats detected by Real-Time Protection
  • All registry settings are now stored in the "HKEY_LOCAL_MACHINE" (HKLM) branch
  • Saving the log after validation to a user-selected directory is now done properly
  • Context menu settings are now applied correctly after a program update
  • Users who have previously started to try the program will not receive a request to use the trial version after updating or reinstalling the program
  • The date and time of quarantined files are now displayed as expected

Changes

  • The new and improved program updater allows you to speed up the update process and reduce the required network bandwidth.
  • Improved technology Chameleon (v1.61) - now it is able to counter the most pressing threats.
  • The interface of the option that allows you to start familiarizing with the PRO version when installing the program has been simplified.
  • The installation wizard now contains more information and helpful instructions.
  • Optimized the database update model.
  • Updated system requirements.
  • Improved logs: now you can view checked drives and file paths in them.
  • Fixed bug with scheduled checks.
  • Korean is now displayed correctly in the language dropdown menu.

Changes

  • Quick scan now takes 25% less time on 64-bit operating systems.
  • Improved the usability of the Chameleon utility.
  • Improved reliability of program updates with additional security checks.
  • Improvements have been made to the password command line (paid version only).
  • The exact protection status is included in the scan logs.
  • The "Check with Malwarebytes Anti-Malware" context menu is now displayed in the selected program language.

Changes

  • Addressed issue where some third-party security software freezes on Windows XP.
  • Fixed an issue where the list of ignored files did not reload after updating the database.
  • Addressed issue where file ignore list data corruption caused mbamcore.dll to crash.
  • Fixed an issue where the desktop icon in some cases was not created after an update.
  • Fixed problems with Dutch, Belarusian and Korean files.
  • Added Greek language file.

Changes

  • Malwarebytes Chameleon technology allows Malwarebytes Anti-Malware to run even if it is blocked by malware.
  • Incremental updates available (paid version only).
  • Added the ability to password-protect key program settings (only in the paid version).
  • Improved the reliability and efficiency of the upgrade process.
  • Improvements in the core malware detection and removal.
  • The notification area icon now dynamically displays the selected language.
  • The behavior settings of the protection module can be changed without activating protection.
  • Enhanced DOR (Delete After Restart) technology improves threat removal efficiency.
  • The structure of the logs has been changed to include more information about the system and detected threats.
  • Improved the error message format to make it easier to read.
  • All scheduled updates now occur within 15 minutes of the specified time.
  • User-defined log directories are now displayed in the Logs tab.
  • The user can now specify directories for saving security logs.
  • The release date of the program version is now displayed in the "About" tab.
  • Fixed a bug where the database did not load properly in Czech versions of Microsoft Windows.
  • Fixed a bug due to which, under certain circumstances, the check could not be completed.

Changes

Changes

  • Fixed minor update issues.
  • Addressed issue where trial versions expire too early.
  • Fixed GUI language related bugs.
  • An issue where the list of ignored files was not used by the protection module has been fixed.
  • Fixed an issue where a limited number of users were prompted to update an outdated database.

Changes

  • The procedure for setting up the schedule has been simplified, including the procedure for postponing the scheduled scan time.
  • Now, when you turn off protection, website blocking is displayed.
  • The logs are sorted automatically by date.
  • The efficiency of updates has been significantly improved.
  • All settings in the "HKEY_CURRENT_USER" (HKCU) registry branch can now be moved to the "HKEY_LOCAL_MACHINE" (HKLM) branch to bypass user settings.
  • The security module is now more efficient in terms of the number of bytes read during I / O operations.
  • The PRO trial version now runs for 14 days. This option is available to all users.
  • The planner now has a "Change Schedule" button.
  • Now the user is notified about program updates pending installation.
  • Fixed an issue where the list of ignored files did not work for the default registry data, such as the Broken.OpenCommand object.
  • The menu item for adding to the list of ignored objects now remains active if the option to display tooltips is unchecked.
  • The user can now update from the notification area even if the scanner is open.
  • Fixed problem with updating the complete list of disks to be scanned.
  • An issue has been fixed where the protection module did not use the list of ignored files after restoring an object from quarantine.
  • The date format in the update tab is now the same as the date format in the notification area.

Changes

  • Significantly increased check speed: now check takes 5 times less time.
  • Significantly improved stability of the scanner and protection module (only in the paid version).
  • The program began to work more efficiently: loading takes 3 times less time, and the protection module uses less system resources (only in the paid version).
  • New internal detection algorithms can detect more common malware.
  • Now you can manually add files and folders to the list of ignored files.
  • Added the ability to schedule and cancel checks from the command line (only in the paid version).
  • In Windows Vista and later, malicious website blocked notifications now contain additional information such as type, port, and process.
  • You can now configure the scan or protection module so that the program detects or does not detect Potentially Unwanted Programs (PUP), Potentially Unwanted System Changes (PUM), and Peer-to-Peer Applications (P2P).
  • Significantly improved accelerated scan (paid version only) - now on many computers it takes less than 10 seconds for the program to determine whether to perform a deeper scan.
  • Added an easy-to-use option to automatically keep your protection up to date (paid version only).
  • Added the option "Warn if the database is out of date by:", which allows you to notify the user that the database is significantly out of date (the default setting is 7 days), which improves computer protection (only in the paid version).
  • Added the ability to check system startup directories, which improves search efficiency and allows you to resist persistent malicious objects that may resist deletion.
  • Heuristic analysis is now used for checks that are launched from the right-click context menu.
  • Improved compatibility with antivirus software.
  • Addressed issue where the Scheduler setting "Resume if missing is" did not work as expected on Windows 2000 and Windows XP.
  • Addressed issue where the "Resume if skip is" scheduler setting did not work for scans and updates that were scheduled to run once.
  • Fixed an issue where Heuristics.Shuriken was causing the program to freeze or crash.
  • An issue has been fixed where the protection module was unable to detect certain malicious objects in 64-bit versions of Windows.
  • An issue has been fixed that sometimes caused no logs to be generated when scanning in "quiet" mode.

Changes

  • Database loading speed increased by about 15%.
  • Significantly improved performance in blocking malicious websites in Windows Vista and Windows 7.
  • Addressed various scheduling compatibility issues in Windows 2000.
  • Fixed issue with quotes around paths passed to / logtofile and / logtofolder.
  • Fixed problem with detection of residual traces of some malicious objects.
  • The problem with the program freezing when adding a shared printer on the network has been fixed.

Changes

  • Added a new scheduler core that supports real-time updates. Improved scheduled scan / update functionality and optimized interface.
  • Added a new option for accelerated scanning with the ability to search for malicious objects in memory and boot area.
  • Added compatibility with Remote Desktop Protocol (RDP) for corporate clients.
  • A completely new heuristic search algorithm "Shuriken" has been added, which has been integrated into both the scanner and the protection module.
  • The website blocking option and other customizable policies are integrated into the main interface of the program.
  • The command line interface has been significantly improved, which allows clients to scan automatically and silently.
  • The update module has been significantly improved, which should solve a number of problems associated with updating the program. Also added full support for proxy servers, including authorization and integration into the graphical user interface.
  • A significant number of various problems have been eliminated, the overall stability of the scanner and the protection module has been improved.

Changes

  • Fixed a minor issue with the / runupdate command when displaying error dialog boxes.
  • Addressed issue where saving error report to the original folder is abruptly interrupted.
  • An issue has been resolved that prevented the protection module from starting in Windows 2000.
  • Edited the license button in the "About" tab.
  • An issue has been fixed where a memory leak in the protection module occurred with a certain computer configuration.
  • Added a new command line parameter: / errorsilent (see the help file for more information).

Changes

  • Fixed a minor issue that caused the program to crash during a scan.
  • Fixed minor issues with errors 704 (0, 0).
  • Fixed issues that caused jumps in memory usage in the protection module.
  • Fixed problems with identifying some types of malware.
  • Added support for the Belarusian language.

Stability / Issues Resolved:

  • Fixed false positives caused by VLC Player update
  • Fixed bugs that led to a crash when interacting with the Palemoon browser

Performance / Protection:

  • Removed protection for Chrome browser due to new Google policy against code injection in Chrome

Stability / Issues Resolved:

  • Fixed bugs that caused Adobe Acrobat Reader to crash
  • Fixed issues with validation when interacting with Adobe Acrobat Reader
  • Fixed false positives caused by protection against "process hollowing" attacks

Stability / Issues Resolved:

  • Fixed issues related to "freezing" of pages in browsers
  • Fixed issues that caused slowdowns when interacting with Adobe Acrobat Reader

Stability / Issues Resolved:

  • Fixed false positives of the program when interacting with the Grammarly add-on
  • Fixed false positives of the program when interacting with the Edge browser
  • Optimized exception functions
  • Optimized telemetry and information about detected objects

Stability / Issues Resolved:

  • Fixed false positives of the program when using Microsoft Office, which were caused by protection against attacks like "process hollowing"
  • Fixed false alarms when using Adobe Reader
  • Fixed conflict with AOL Data Mask
  • Improved protection
  • Optimized exception functions
  • Improved telemetry

Stability / Issues Resolved:

  • Fixed false positives of the program when using Microsoft Office
  • Optimized exception functions

Malwarebytes Anti-Exploit

The convenience of use

Stability / Resolved Issues

  • Fixed several bugs that caused the Firefox browser to crash

Performance / protection

  • Defending against exploit-driven process hollowing attacks

The convenience of use

  • Hypervisor Code Integrity (HVCI) Compliant
  • Compatible with Windows Device Guard

The convenience of use

  • Hypervisor Code Integrity (HVCI) Compliant
  • Compatible with Windows Device Guard

Stability / Issues Resolved:

  • The problem of the program's false positives when interacting with the Action! Screen capture application has been fixed. from Mirillis

Fixes:

  • Fixed an issue related to the blocking of Return-Oriented Programming (ROP) tools that occurred when the Chinese bank plug-in was running
  • Fixed several issues with notifications displayed in the user interface in Windows XP

New features:

Fixes:

  • Fixed issues that occurred when opening applications in Windows XP

New features:

  • Added dynamic interrupt handling function for conflict resolution
  • Free version users are provided with premium protection tools as part of the beta testing of the MBAE program
  • Users of free versions are given the opportunity to add special protections as part of the beta testing of the MBAE program

Fixes:

  • Fixed conflict with Norton Security
  • Fixed problems that were associated with MS Office applications and led to the program "freezing" when opening / closing
  • Fixed issues when canceling dll injection and causing a zombie process
  • Fixed issues with undo dll injection related to Chrome browser extensions
  • The problem of the program's false positives when interacting with the FLTLDR.exe file has been fixed
  • Fixed a problem with false positives when interacting with the Opera browser QTTabBar plug-in

New features:

  • Added dynamic interrupt handling function for conflict resolution
  • Free version users are provided with premium protection tools as part of the beta testing of the MBAE program
  • Users of free versions are given the opportunity to add special protections as part of the beta testing of the MBAE program

Fixes:

  • Fixed issues when canceling dll injection and causing a zombie process
  • Fixed issues with undo dll injection related to Chrome browser extensions
  • The problem of the program's false positives when interacting with the FLTLDR.exe file has been fixed
  • Fixed a problem with false positives when interacting with the Opera browser QTTabBar plug-in
  • Errors in processing and detecting malicious objects related to archive applications have been eliminated

New features:

  • Added dynamic interrupt handling function for conflict resolution
  • Free version users are provided with premium protection tools as part of the beta testing of the MBAE program
  • Users of free versions are given the opportunity to add special protections as part of the beta testing of the MBAE program

Fixes:

  • Fixed issues when canceling dll injection and causing a zombie process
  • Fixed issues with undo dll injection related to Chrome browser extensions
  • The problem of the program's false positives when interacting with the FLTLDR.exe file has been fixed
  • Fixed a problem with false positives when interacting with the Opera browser QTTabBar plug-in

New features:

Fixes:

  • Fixed conflict with Sophos AV
  • Fixed bugs that caused the Edge browser to crash in Windows Insider Preview builds
  • Fixed errors that caused MS Office programs to crash when running MBAE
  • Fixed conflict with McAfee HIPS
  • Fixed false positives of the program when using the Java protection method
  • Fixed issues related to logging when critical errors occur
  • Fixed issues related to restarting services

New features:

  • Improved protection of the API interrupt handler network
  • Self-defense mechanisms added
  • Added sandboxing technology for Silverlight
  • Added Tier 3 technologies against Macro exploits
  • Added Tier 3 technologies against exploits that use social engineering techniques
  • Added advanced Java customization options for companies
  • Added dynamic configuration function to resolve conflicts
  • Added support for MS PlayReady
  • Pop-up notifications are disabled by default
  • Removed startup entry during program uninstallation

Fixes:

  • Fixed conflict with Symantec DLP
  • Fixed conflict with Chinese banking software

New features:

  • Improved protection of the API interrupt handler network
  • Self-defense mechanisms added
  • Added sandboxing technology for Silverlight
  • Added Tier 3 technologies against Macro exploits
  • Added Tier 3 technologies against exploits that use social engineering techniques
  • Added advanced Java customization options for companies
  • Added dynamic configuration function to resolve conflicts
  • Added support for MS PlayReady
  • Pop-up notifications are disabled by default
  • Removed startup entry during program uninstallation

Fixes:

  • Fixed conflict with Symantec DLP
  • Fixed conflict with Chinese banking software
  • Fixed conflict with Office TabLoader
  • Fixed conflict with Kobil mIdentity
  • Fixed a problem with false positives that occurred when interacting with .NET and Adobe modules
  • Fixed an issue when adding incorrect custom protections

New features:

  • Improved protection of the API interrupt handler network
  • Self-defense mechanisms added
  • Added sandboxing technology for Silverlight
  • Added Tier 3 technologies against Macro exploits
  • Added Tier 3 technologies against exploits that use social engineering techniques
  • Added advanced Java customization options for companies
  • Added dynamic configuration function to resolve conflicts
  • Added support for MS PlayReady
  • Pop-up notifications are disabled by default
  • Removed startup entry during program uninstallation

New features

New features

  • Added self-defense algorithms for DLLs in Malwarebytes Anti-Exploit (level 1)
  • Improved stack swap detection technology (level 1)
  • Improved application protection based on their behavior (level 3)
  • Improved self-defense algorithms for interprocess communication in Malwarebytes Anti-Exploit
  • Added Anti-Exploit Anti-Fingerprint Tool (Level 0)
  • Added VBScript countermeasure for Internet Explorer with fine tuning (level 0)
  • Added countermeasure ROP-RET (level 1)
  • Added protection rules by analyzing application behavior (level 3)
  • Added protection for Microsoft Edge
  • Added protection for LibreOffice
  • Added a mechanism to fail over to another update resource
  • Added auto-recovery for the Anti-Exploit service
  • Resolved Issues

  • Fixed conflict with Comodo app
  • Fixed conflict with Imprivata OneSign app
  • Fixed a problem with false positives that occurred when Adobe Acrobat was running
  • Fixed a problem with a false alarm that occurred when some .NET modules were running in Internet Explorer
  • Fixed an issue where custom shields were not saving after updating
  • Fixed conflict with third party products that use the same interrupt handlers
  • Fixed conflict with Office product family profile
  • Fixed conflict with banking software plug-in for browsers
  • Fixed conflict with Citrix when opening Internet Explorer
  • Fixed conflict with Asus and Huawei components
  • Fixed conflict with Kaspersky 16
  • Fixed issue with exceptions sometimes not being applied for PDF profile
  • Fixed an issue with protection by analyzing application behavior (level 3)
  • Fixed issue with missing toast notifications
  • Fixed PhantomPDF system crashes when converting to .doc
  • New features

    • Added new Layer0 exploit mitigation tool for Visual Basic Script for Internet Explorer
    • Added new Layer1 anti-exploit tool for ROP detection
    • Added new Layer3 exploit mitigation tool for Powershell access violation
    • Added telemetry from Firefox
    • Added ability to edit special defenses
    • Added the ability to log security events in the user interface
    • Added the ability to automatically update corporate configurations
    • Added support for Windows 10
    • Added blacklisting pirated or fraudulent license keys

    Improvements

    • Improved Java security for enterprise environments
    • Improved exploit telemetry
    • Removed default dual protections for mobile browsers
    • Removed "protected applications" counter from user interface

    Resolved Issues

    • Fixed printing issue with Adobe PDF
    • Fixed issue with Speedbit Download Accelerator
    • Fixed issue with PowerDVD and GAS Tecnologia plugins
    • Fixed issue with nProtect GameGuard Anti-Cheat
    • Fixed an issue where some exceptions were not honored
    • Fixed issue with Knowledge Coach Office Add-In
    • Fixed an issue with erroneous triggering from Internet Explorer
    • Fixed issue with launching Foxit Reader
    • Fixed issue with Excel PowerQuery
    • Fixed issue with Excel DEP Enforcement
    • Fixed issue with blocking Visual Basic Script for Internet Explorer
    • Fixed an issue with crashes in Chrome
    • Fixed issue with Arcom Masterworks

    New features

    • Added support for Windows 10.

    Improvements

    • Improved the settings tab: removed the "Apply" button.

    Resolved Issues

    • The error that occurred when trying to activate an invalid license has been fixed.
    • Fixed a bug in the user interface in the settings tab.

    New features

    • Added new protection for Internet Explorer, Java and Microsoft Office (level 3).
    • Added default protection for popular browsers.
    • Added protection for browsers of the Chromium family.
    • Added a new warning window with information about exploits.
    • Added security pop-up messages displayed in the notification area.
    • Added extended protection configuration for various browser families.
    • Added configuration of basic parameters.
    • Added "Browse" button to add special protection tools.
    • A new mechanism has been added to reduce the number of false positives.
    • Added the ability to anonymously forward blocked exploits.
    • Added confirmation window for forwarding exploits related to a specific file format.
    • Added notifications about the Premium version in free / trial builds of the program.

    Improvements

    • Improved the upgrade process to support existing protections.
    • Improved the display of control panel exceptions in the GUI.
    • Improved error and crash reporting.
    • Added missing GUI notifications for guest accounts.
    • Improved installation management: now the user can opt out of creating a partition in the Start menu.

    Resolved Issues

    • The problem of false positives of the program, which occurs in some cases when running Word or Excel applications, has been eliminated.
    • Fixed a problem with the program's false positives when searching for exploits in LoadLibrary.
    • The problem of false positives when running Java-based web applications has been fixed.
    • Fixed bug with converting timestamp.
    • Fixed a bug that could lead to disabling protection when starting the computer.
    • Fixed a bug due to which the user of the account with limited access (LUA) could enable / disable protection.

    New features

    • The core code (DLL) has been rewritten to improve stability and compatibility.
    • Added Data Execution Prevention (DEP) tools, Heap Spray countermeasures, and bottom-up address space allocation randomization.
    • Added new application protection (level 0).
    • Added new generic Return-Oriented Programming (ROP) protection (level 1).
    • Added new protection tool StackPivoting for 64-bit systems (level 1).
    • Added a new protection against malicious memory accesses for 64-bit systems (level 2).
    • Added a new application protection tool based on their behavior (level 3).
    • Added a trial mode that allows the user to explore the benefits of the Premium version.
    • Added quarantine for blocked malicious objects detected at the third protection level.
    • Added file name information for standard and custom protections.
    • Added bitmaps for the GUI.
    • Added a new "Protection stopped" pop-up message displayed in the notification area.
    • Added a new counter that counts applications, not processes.

    Improvements

    • Improved interprocess communication between service and protection DLLs.
    • Improved management of 64-bit processes by keeping mbae64.exe in working order.
    • The profile of "other" special protections has been improved to reduce the likelihood of false positives.
    • Improved default protection for the latest version of Foxit Reader.
    • Improved algorithm for logging and receiving information about threats from exploits.

    Resolved Issues

    • The problem of the program's false positives, which occurs in some cases when starting Word or Excel applications, has been fixed.
    • Fixed a false positive error that occurred when installing and first launching Silverlight.
    • An issue with the embedding driver has been resolved, which eliminated program conflicts with third-party applications.
    • Fixed problems with selecting multiple items and editing them in the "Protection and Exclusions" tab.
    • Fixed a bug that occurred when right-clicking on the icon in the notification area in Windows 8.1.
    • Fixed a bug that caused the user interface to close when right-clicking an icon in the notification area.
    • Fixed a bug that occurred when double-clicking on the icon in the notification area with an open user interface.
    • Fixed bugs that caused protected applications to conflict with Chrome and Java.
    • The error that occurred in some cases when canceling the deployment has been fixed.
    • The remaining errors, which in some cases resulted in a false positive of a program with Java applications, have been eliminated.
    • Fixed a DoS issue in the Malwarebytes Anti-Exploit driver.

    New features

      Added various search algorithms for levels 1 and 2
      Improved various aspects of installation and automatic updates
      Improved user interface to simplify the Premium activation process
      Improved algorithm for obtaining information about threats
      Improved protection tools to prevent slowdowns and false positives when used on desktop computers
      Fixed a false positive issue when using add-ins for Excel
      Fixed a bug that occurred when activating a shortcut on the desktop after installing the program
      Updated interrupt handler network

    New features

    Added new algorithms used at the level of protection against exploitation of operating system vulnerabilities
    Added new algorithms applied at the application protection layer based on their behavior
    Added the ability to enable or disable predefined protections
    Added the ability to manage special protection tools (add / remove them)
    Added visual differences to the start or stop indication using the notification area icon
    Added visual differences between pre-defined protections, custom protections, and CLI protections
    Added the function of automatic updating of the program to newer versions
    Added license key differences for free and premium versions
    The free version protects browsers, their add-ons and Java applications
    Premium version includes all protections and management of special protections
    Improved the function of stopping the application when blocking an exploit
    Optimization results improved: the size of the MBAE.EXE file was reduced by 3.5 times
    Malwarebytes Anti-Exploit log directory changed to% AllUsersProfile% \ Malwarebytes Anti-Exploit
    End User License Agreement updated
    Fixed an issue that caused the GUI to flash for a second before being minimized to the notification area
    Fixed bug with specific API interrupt handlers
    Fixed a bug due to which protection was disabled immediately after installation
    Fixed a false alarm when playing DVDs using Windows Media Player

  • Added forced stop / forced removal of applications
  • Added a greeting when starting the program for the first time
  • Optimized program start time
  • Optimized the time it takes to reload the threat database
  • Rewritten SMS Matching Engine for faster detection
  • Fixed display in vertical orientation mode
  • Fixed app crashes
  • Bugs fixed
  • Changes

    • Added the ability to detect phishing links in SMS messages [new feature]
    • Optimized scanner performance to save battery power [improvement]
    • Minor bugs fixed

Changes

  • User can now enable and disable real-time protection
  • The user can select a setting for the Malwarebytes icon in the notification area: "off", "on" and "grayscale"
  • User can show / hide the following messages displayed in the notification area:
    • Verification process
    • Test results
    • Database update
    • Scheduled checks

Hello admin, I want to ask - have you ever used antivirus program Malwarebytes "Anti-Malware? Can I use it as the main antivirus on my computer? I noticed a few oddities behind her, for example:

  • She removed from my computer one program I really needed that had been working for several years, in general this program is paid, but I downloaded it on a torrent for free - could it really be a virus?;
  • For some reason, it finds some viruses only when it is scanned again;
  • And more questions, Malwarebytes "Anti-Malware blocks access to many sites, I do not like it, went into the Security Module settings and unchecked the Enable blocking malicious sites checkbox, but this does not help, there is still no access to many sites.
The program has a special module for fighting rootkits called Anti-Rootkit, but it is not clear how to launch it. There is also a Chameleon module, I cannot understand what it is for, but many users use it somehow.

Malwarebytes Anti-Malware

Hello friends! Several years ago I had an interesting incident. One webmaster came to our company and literally with tears in his eyes complained that he could not get to his own website from his home computer, the provider and the settings of the router had nothing to do with it, we checked it right away, the reason turned out to be different.The webmaster was prevented from accessing his own site by the Malwarebytes "Anti-Malware" program installed on his computer (then still little known). We found exactly in which program settings access to the site was blocked and still got to the site, but why the program considered the site malicious ?

The webmaster downloaded all the site files to his computer and did not find any malicious code in the site files. Numerous Internet services for checking sites for viruses said that the site was clean. The well-known AI-Bolit scanner, sharpened for the search for malicious codes on sites, did not find anything either. We wrote a letter to https://www.malwarebytes.org/, in which we asked to explain the reason for blocking the site antivirus program Malwarebytes "Anti-Malware and they answered us. "No problems were found on your site and very soon the site will be removed from our database of malicious sites."All that remained was to wait and had to wait a long time, exactly two years later, the webmaster called me (I didn't even immediately understand what was the matter) and reported the news that his site was no longer blocked by this program. This is how my first exposure to Malwarebytes "Anti-Malware happened.

If you read information about this program on the Internet, you will understand that this is almost the best antivirus program in the world, from the category installed and forgotten, now your operating system is reliably protected from infection by almost any malicious program. I assure you friends, this is far from the case and a person who often uses Malwarebytes "Anti-Malware to treat computers infected with viruses tells you this. There is some discrepancy in this, right? It seems that I constantly use this program and at the same time hint to you that it has some drawbacks.

  • How to download and install Malwarebytes "Anti-Malware;
  • All the pros and cons of Malwarebytes "Anti-Malware;
  • How to properly configure Malwarebytes "Anti-Malware;
  • How to scan and much more.

Note: a description of most of the existing paid and free antiviruses, as well as their rating, is described in our other article - . Our site also contains reviews of all the best anti-virus scanners Dr.Web CureIt, ESET Online Scanner, HitmanPro, Cezurity Antivirus Scanner, Kaspersky Virus Removal Tool. A complete overview of antivirus software is located .

What I Love About Malwarebytes "Anti-Malware

1) Malwarebytes "Anti-Malware finds almost all existing malicious objects, be it Trojans, worms, rootkits, Spyware (spyware), etc. The" Quick Scan "mode available in the program will find and neutralize all malicious programs in a relatively short time interval.

2) Malwarebytes "Anti-Malware can be installed on a very infected computer, literally teeming with viruses, on which NOD32 and Kaspersky cannot install, also launching anti-virus scanners Dr.Web CureIt or Kaspersky Virus Removal Tool will result in an error, and Malwarebytes" Anti- Malware "if only henna", it installs quietly, scans and removes viruses. Personally, I have always had computers with hopelessly infected viruses, but recently, in exactly half of the cases, it turns out to be able to do with one Malwarebytes "Anti-Malware program.

3) The program has a special Chameleon mode! If your computer is infected with numerous malicious programs, then they have probably blocked your ability to download any antivirus, any other than Malwarebytes "Anti-Malware. A special Chameleon module will help you download and install the Malwarebytes" Anti-Malware program, as well as clean your computer from viruses and all this in automatic mode!

4) At the moment, Malwarebytes "Anti-Malware is one of the best antivirus scanners. It is constantly updated with new virus signature databases.

5) If you use Malwarebytes "Anti-Malware only in scanner mode, then the program works for free.

6) All detected threats are sent to quarantine; if necessary, any file can be restored from quarantine.

7) Malwarebytes Chameleon technology will allow Malwarebytes "Anti-Malware" to run when completely blocked by virus programs.

8) Malwarebytes "Anti-Malware has an additional tool (proprietary) Malwarebytes Anti-Rootkit, designed to find and remove rootkits.

Disadvantages of Malwarebytes "Anti-Malware, but this is my personal opinion

1) When Malwarebytes "Anti-Malware is installed on a computer, the program works for 14 days for free and is fully functional, that is, in addition to an antivirus scanner, real-time protection is available, capable of detecting and neutralizing malicious files when attempting to perform destructive actions. already a claim for a full-fledged antivirus program After 14 days we are faced with a choice whether to buy the program or stay with one scanner.

2) I bought the program and decided to use it instead of an antivirus on one of my computers, as a result I came to the conclusion that Anti-Malware does not pull a full-fledged Malwarebytes antivirus, it lets a lot of viruses pass. malicious processes, but if you then run a scan, then Malwarebytes "Anti-Malware" finds the same "malware" and neutralizes it. In short, nonsense.

3) But even when scanning, the program does not find all viruses. Last week I found 22 viruses on users' computers and placed them in the "Beware of viruses" folder. When I scanned this folder with my standard antivirus, all 22 viruses were found,

And while scanning the same folder with Malwarebytes "Anti-Malware, 17 viruses were found.

4) Real-time protection. Let's run all these malicious files on a test machine. Out of 22 two virus files Malwarebytes "Anti-Malware did not allow launching only 10, which means that the remaining 12 are now in charge of our operating system. In turn, the standard antivirus installed in the system did not allow any of the 22 malicious processes to be executed.

5) Malwarebytes "Anti-Malware immediately after installation decides for you which sites you can go to and which not. And in this case, the algorithm of the program is not at all clear. I have a list of sites, when you visit which you will be immediately planted with a" virus " "(don't go to your grandmother), so, according to the program, you can enter all these sites, but you can't go to completely harmless ones. In other words, the program blocks access to many clean sites. According to my calculations, about every twentieth site existing on the Internet, According to Malwarebytes "Anti-Malware, it is infected.

When you visit the allegedly infected site Malwarebytes "Anti-Malware will display this window for you, and of course you will not get to the site.

Or even worse, there will be no window and your browser will simply tell you that the site you need is not available (which is what happened with our webmaster).

You may notice - what if these sites are actually malicious? I will answer this way - you can check them on all sorts of services for checking sites for malware, for example https://www.virustotal.com/ru/ or http://antivirus-alarm.ru/ and you will be convinced that this is not the case. It's good that Malwarebytes "Anti-Malware has settings where you can disable this mess. Security module. Disable blocking malicious sites.

Installing Malwarebytes "Anti-Malware

We go to the official website of the program

http://www.malwarebytes.org/

Click on the button Free Version Download,

Download and install the Malwarebytes "Anti-Malware" program. During the installation process, you do not need to change anything,

but in the final phase of installing the program, be sure to check the box Enable free trial period for Malwarebytes "Anti-Malware PRO and the program will work fully functional for 14 days, but we want to determine how well the program will work as a full-fledged antivirus, and not just a simple scanner. We also check the items Malwarebytes "Anti-Malware update and Run Malwarebytes "Anti-Malware.

Malwarebytes "Anti-Malware Settings

Friends, keep in mind that by default Malwarebytes "Anti-Malware is set to maximum protection.

Scanner

In this tab, you can select the type of scanning your computer for malware. In my experience Fast scan always finds all working viruses and neutralizes them. To start scanning, you need to mark the desired type and press the button Scanning.

If malicious objects are found, we will immediately know about it. After the end of scanning, click on the button Show results.

We carefully look at the objects found, if among them there is a file you need that is accepted by the program as a virus, then uncheck it and click Delete objects.

A detailed report on the scan performed and the viruses removed is issued. In some cases, a complete cleanup will require a computer restart.

Security module

We mark the items we need with checkmarks.

Enable file system protection- Malwarebytes "Anti-Malware will work in real time, monitoring all processes in the operating system, that is, as a full-fledged antivirus.

Enable blocking of malicious sites and Turn on blocking of malicious websites, when the security module is started- if you check both of these items, you will not be able to get to those sites that, according to the program, contain malicious code. If you you do not want so that the program decides for you which sites you can go to and which not, uncheck both of these items.

Run the protection module together with Windows- must be marked.

Updates

You can manually run Malwarebytes "Anti-Malware updates at any time.

Quarantine

If any file got here by mistake, select it with the left mouse and click the Restore button.

Hello everyone, Malwarebytes Anti-Malware is a program that is designed to protect your computer from all kinds of evil spirits such as viruses, Trojans and other harmful programs that do all sorts of nonsense on your computer! This program quickly scans the computer for viruses, looks at all the places where they usually hide, and if a virus is found, the program will remove it or treat it. Malwarebytes Anti-Malware is an advanced virus detection tool and many users only praise the program

In its work, Malwarebytes Anti-Malware uses sophisticated technologies that can sniff out even the coolest viruses that are invisible in Windows and difficult to detect. Well, actually, it really is. I'll even write why. There are viruses that are designed in such a way that they are constantly changing. That is, it is a constantly new malicious program and it cannot be caught, because it has a constantly new look, this is me, so figuratively speaking ...

This is what the program looks like:


That is, here, as you can see, all sorts of buttons, there are four tab buttons at the top, each with its own function. To check the computer, you need to click Start check and the process has started:


It can be seen that a serious check is underway, memory, Windows autorun, registry, file system are checked. In general, everything is as it should be ... Surprisingly, I found a virus, I hope that he did not manage to steal anything from my computer:


And then some viruses were found there, believe it or not, but I did not even think that I have viruses, well, of course, I'm very surprised:


I have a whole bunch of them, to be more precise, estimate 188 pieces. Well, so, I clicked means Delete Selected and the removal of assholes went.

Then the program showed me a message saying that it wants to restart the computer to complete the removal. I understood everything and did not bother her, I clicked Yes in this message:


That's it, after that the computer went to reboot and I waited until the computer was cleared of all evil spirits.

Windows booted up and everything seemed to be normal, but there were no messages, well, there was a check and all that. That is, there was no report on the work done, like u

To open the Malwarebytes Anti-Malware settings, then click on the Options button at the top, the following settings window will appear:


In principle, everything is set up optimally here. But what else would I personally include? This is on the Detection and Protection tab, I put a checkmark so that the program detects rootkits, this is the checkbox:


I also enabled the self-defense and self-defense module before loading, these checkboxes are located on the Advanced options tab:


By the way, on the same tab, you can check the box to decrease the priority, it is at the very bottom. It must be installed if Malwarebytes Anti-Malware loads the computer. But keep in mind that this will make the scan slower!

Well, that is, in principle, I think that it is already clear to you what kind of program it is.

How to completely remove Malwarebytes Anti-Malware from your computer?

I would not advise doing this, think well, the computer will be in danger, but what if a virus? But if you are firmly resolved and you have antivirus standards installed, then there are no questions.

If you are an advanced user, can you use an advanced removal tool to remove Malwarebytes Anti-Malware? It will not only remove the program but also clean the Windows from the traces of the program! In general, I recommend, but you think for yourself ...

Well, now how to remove the built-in functions of Windows. Click Start and select Control Panel there:


If you have a brand new Windows 10, then to see this item, hold down Win + X and it will be in the menu that appears!

Then we find the Programs and Features icon:


A window will open with a list of all installed software in your Windows. Here you need to find Malwarebytes Anti-Malware, right-click and select Uninstall there:


There will be such a message, then click Yes:


And that's it, the program will be removed quickly and you will see the following message:


What else I want to tell you guys. The fact that you have an antivirus is of course a good thing. But here's the catch. The fact is that the Malwarebytes Anti-Malware programs, as well as, well, others, all of them are designed to detect mainly just those viruses that ordinary antiviruses do not catch. I mean ad viruses. They have the same task, it is to show ads wherever possible - in the browser or on the desktop, or even all together! Antiviruses often do not consider such programs to be malicious, because they do not steal personal data. Well, by the way it is, although who knows ... In general, this all I mean is that even if you have an antivirus, sometimes check your computer with some kind of utility like Malwarebytes Anti-Malware ..

Better not to delete Malwarebytes Anti-Malware at all, but this is everyone's business.

I hope that everything is fine and accessible, I wrote it, good luck with everything, while

19.07.2016

(also called MBAM) is a free and highly effective security tool. The product has a paid Premium version that comes with real-time protection and scheduled scans, but we will consider a free version for home users.

If you don't have this antivirus scanner installed on your device, download Malwarebytes Anti-Malware 2 from our website. The scanner can be used absolutely free on home computers for non-commercial purposes.

The installation process is extremely simple, it is only important on the last screen of the wizard to uncheck the box "Enable free trial period for Malwarebytes Anti-Malware PRO" and click the "Finish" button.

You may need to restart your computer to update the program modules. Close other programs first.

This is what the main interface of Malwarebytes Anti-Malware 2.2 looks like.

If this is not the first time you run the program, you may see a yellow warning about an outdated database. Click "Fix" in the main interface window or "Update now" in the warning that appears above the notification area of ​​the taskbar.

If a software module update is available, MBAM 2 will ask you to install the new version. Click OK and follow the instructions at the beginning of the article.

If Malwarebytes Anti-Malware 2 is not working, Windows XP users can launch the program by going to Start -> All Programs, expanding the Malwarebytes Anti-Malware folder and selecting the Malwarebytes Anti-Malware icon.

In Windows Vista, 7 and 10, users can open the Start menu, enter the phrase "malware" in the search bar, and select Malwarebytes Anti-Malware.

Windows 8 and 8.1 users can press WINDOWS KEY + Q to open an application search and type in the phrase "malware", then select Malwarebytes Anti-Malware.

Configuring Malwarebytes Anti-Malware

At the top of the program window, click the "Options" button. By default, the “Basic Settings” section will open. On this tab, you need to make sure that the "Context Menu in Explorer" option is enabled. This will allow you to start scanning files and folders using the context menu item in Windows Explorer.

Also note that the “Restore Defaults” option provides a quick way to reset the configuration in all the tabs available for the free version. Other tabs contain a “Recommended Settings” link that applies only to a specific tab.

Open the “Detection and Protection” tab by selecting the appropriate item in the left navigation menu. First of all, check the box next to “Check for rootkits” to strengthen the protection of Malwarebytes Anti-Malware. Advanced heuristic analysis (Shuriken) and archive scanning are active by default. Users who have made changes to local security policies (or group policies) that might be detected as malicious (for example, disabling Windows Defender) should configure handling of potentially unwanted changes. For PUM (Potentially Unwanted Changes), select Warn user of detections.

Please note that the Potentially Unwanted Program (PUP) protection in Malwarebytes Anti-Malware can flag many installers because they contain third-party software. Don't worry about the danger of installers, unless they are flagged as malware in the scan results.

Then, select the “Update Options” tab. Set the "Notify if the database is more than ... days old" parameter to "1". In this case, MBAM will be guaranteed to use the latest signature database.

Make sure that the option “Check for program updates when checking for database updates” is enabled. If necessary, you can configure a proxy server on this screen.

For users who are serious about privacy, it is recommended to disable the option “Provide anonymous statistics to help fight malware” on the “History Options” tab.

In the “Scan log settings” section, it is better not to touch the “Save log file to disk” option, change the value only if your computer is critically short of free space.

This completes the setup of the free version. Other options are available for PRO version users.

Quarantine and log management

All detected malware is quarantined by default. Since the quarantine folder can take up a lot of space, it is recommended that you empty it one month after discovery. The free CCleaner tool will help you with this task.

You can also restore objects to their original location if you are sure of what you are doing.

Click the History button in the Malwarebytes Anti-Malware top bar. The "Quarantine" section will open and all objects that have been detected and placed in it will be displayed. The easiest way to clear a folder is to click the Delete All button. The action must be confirmed.

The user can delete individual objects by simply selecting them with the mouse and pressing the “Delete” button. The action must be confirmed.

Be careful with the "Restore" button - do not use it unless you are absolutely sure that the object being restored is not malware.

To view the Malwarebytes Anti-Malware logs, click the History button in the top program menu and then select the Program Logs tab in the left navigation menu. Here you can open any of the presented magazines. Logs need to be ticked only for subsequent deletion, other actions with them are not available.

The screenshot shows a sample scan history log that displays a summary of all important settings and results. Pay attention to the scroll bar in the first section - there is much more information there than is displayed on the screen.

The “Export” button allows you to copy the report to the clipboard or save it to a TXT or XML file for further analysis.

MBAM maintains daily security logs that include information about the database and the software updates performed.

Found a typo? Highlight and press Ctrl + Enter