Malwarebytes Anti-Malware Updates

Discussion in 'other anti-malware software' started by puff-m-d, Nov 14, 2016.

  1. RubbeR DuckY

    RubbeR DuckY Developer

    Joined:
    Jul 7, 2006
    Posts:
    228
    First of all, you guys are amazing. To see this response from this community, and to see the number of installs and people willing to test a beta, it's just awesome. If you've got a 1 year key, email me and I'll get you switched to a lifetime while the beta is ongoing: mkleczynski at malwarebytes dot com.

    We are working day and night to resolve the known issues as well as everything reported here.
     
  2. smith2006

    smith2006 Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    808
    Got it, thanks!
     
  3. smith2006

    smith2006 Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    808
    Anyone have this issue with Malware Protection?
     

    Attached Files:

  4. clocks

    clocks Registered Member

    Joined:
    Aug 25, 2007
    Posts:
    2,787
    I'll test again in the future, but the current build seems to eat cpu cycles like it's preparing for a famine. Memory use was about 275meg.
     
  5. ZeroVulnLabs

    ZeroVulnLabs Developer (aka "pbust")

    Joined:
    Mar 5, 2012
    Posts:
    1,189
    Location:
    USA
    Don't recall which license I gave you. Do you remember when it was and what it was for?

    We have some short-term plans for adding new innovative techniques. More on that later.
     
  6. haakon

    haakon Guest

    Should mbamservice.exe have a persistent 443 connect? (In my case to amazonaws.)

    If so, purpose please. Thank you.
     
  7. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    Okay just to be sure I understand, will there be a conflict between MBAM 3.0 and HMPA?

    Also if I want to run MBAM 3 and HMPA can I switch of the conflicting parts.
     
  8. syrinx

    syrinx Registered Member

    Joined:
    Apr 7, 2014
    Posts:
    427
    pardon the random, drunken, response as I haven't tested this but from what I read it seems that the conflicting components can be disabled but you'd be STUCK with an alert in MB3 concerning the disabled section which someone suggested adding an option to check and avoid future notifications for. I agree with that suggestion....

    (unrelated) /me still thinks the SBIE pizza icon is a horror show... :p
     
  9. Scyna

    Scyna Registered Member

    Joined:
    Jan 30, 2015
    Posts:
    17
    So I uninstalled it yesterday and when I tried to reinstall it right now I couldn't. I still had traces of mbam 3.0 running even though it's supposed to be uninstalled.
     
  10. The Seeker

    The Seeker Registered Member

    Joined:
    Oct 24, 2005
    Posts:
    1,338
    Location:
    Adelaide
    It's customer service like this that makes Malwarebytes stand out amongst the rest! :) (The product being awesome doesn't hurt, either.)
     
  11. Gandalf_The_Grey

    Gandalf_The_Grey Registered Member

    Joined:
    Jan 31, 2012
    Posts:
    1,188
    Location:
    The Netherlands
    Hi Pedro. It was on 22 june 2015 for beta testing MBAE. I replied to the PM you sent me at that time.
     
  12. deugniet

    deugniet Registered Member

    Joined:
    Nov 25, 2013
    Posts:
    1,242
    +1
     
  13. daman1

    daman1 Registered Member

    Joined:
    Mar 27, 2009
    Posts:
    1,292
    Location:
    USA, MICHIGAN
    Installed V3 on a test machine W7x64 last night memory use seems high as reported will be playing with it more days to come, so far it looks promising :thumb:
     
  14. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    hello
    no skinning for export dialog but also font a little big
    mal.png


    and also in uninstalling WerFault.exe dumped mbamtray.exe
    i look in to it with AppCrashView
    Version=1
    EventType=APPCRASH
    EventTime=131237670922118132
    ReportType=2
    Consent=1
    ReportIdentifier=a2019b92-abea-11e6-b09d-20cf30c00912
    IntegratorReportIdentifier=a2019b91-abea-11e6-b09d-20cf30c00912
    Response.type=4
    Sig[0].Name=Application Name
    Sig[0].Value=mbamtray.exe
    Sig[1].Name=Application Version
    Sig[1].Value=3.0.0.802
    Sig[2].Name=Application Timestamp
    Sig[2].Value=5825f988
    Sig[3].Name=Fault Module Name
    Sig[3].Value=Qt5Core.dll
    Sig[4].Name=Fault Module Version
    Sig[4].Value=5.6.0.0
    Sig[5].Name=Fault Module Timestamp
    Sig[5].Value=5710f3a4
    Sig[6].Name=Exception Code
    Sig[6].Value=c0000005
    Sig[7].Name=Exception Offset
    Sig[7].Value=00191a51
    DynamicSig[1].Name=OS Version
    DynamicSig[1].Value=6.1.7601.2.1.0.256.48
    DynamicSig[2].Name=Locale ID
    DynamicSig[2].Value=1065
    DynamicSig[22].Name=Additional Information 1
    DynamicSig[22].Value=0a9e
    DynamicSig[23].Name=Additional Information 2
    DynamicSig[23].Value=0a9e372d3b4ad19135b953a78882e789
    DynamicSig[24].Name=Additional Information 3
    DynamicSig[24].Value=0a9e
    DynamicSig[25].Name=Additional Information 4
    DynamicSig[25].Value=0a9e372d3b4ad19135b953a78882e789
    UI[2]=C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
    UI[3]=Malwarebytes Tray Application has stopped working
    UI[4]=Windows can check online for a solution to the problem.
    UI[5]=Check online for a solution and close the program
    UI[6]=Check online for a solution later and close the program
    UI[7]=Close the program
    LoadedModule[0]=C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
    LoadedModule[1]=C:\Windows\SYSTEM32\ntdll.dll
    LoadedModule[2]=C:\Windows\system32\kernel32.dll
    LoadedModule[3]=C:\Windows\system32\KERNELBASE.dll
    LoadedModule[4]=C:\Windows\system32\SHELL32.dll
    LoadedModule[5]=C:\Windows\system32\msvcrt.dll
    LoadedModule[6]=C:\Windows\system32\SHLWAPI.dll
    LoadedModule[7]=C:\Windows\system32\GDI32.dll
    LoadedModule[8]=C:\Windows\system32\USER32.dll
    LoadedModule[9]=C:\Windows\system32\LPK.dll
    LoadedModule[10]=C:\Windows\system32\USP10.dll
    LoadedModule[11]=C:\Program Files\Malwarebytes\Anti-Malware\Qt5Quick.dll
    LoadedModule[12]=C:\Program Files\Malwarebytes\Anti-Malware\Qt5Qml.dll
    LoadedModule[13]=C:\Program Files\Malwarebytes\Anti-Malware\Qt5Network.dll
    LoadedModule[14]=C:\Windows\system32\WS2_32.dll
    LoadedModule[15]=C:\Windows\system32\RPCRT4.dll
    LoadedModule[16]=C:\Windows\system32\NSI.dll
    LoadedModule[17]=C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
    LoadedModule[18]=C:\Windows\system32\ole32.dll
    LoadedModule[19]=C:\Windows\system32\ADVAPI32.dll
    LoadedModule[20]=C:\Windows\SYSTEM32\sechost.dll
    LoadedModule[21]=C:\Windows\system32\MPR.dll
    LoadedModule[22]=C:\Program Files\Malwarebytes\Anti-Malware\MSVCP120.dll
    LoadedModule[23]=C:\Program Files\Malwarebytes\Anti-Malware\MSVCR120.dll
    LoadedModule[24]=C:\Windows\system32\DNSAPI.dll
    LoadedModule[25]=C:\Windows\system32\IPHLPAPI.DLL
    LoadedModule[26]=C:\Windows\system32\WINNSI.DLL
    LoadedModule[27]=C:\Program Files\Malwarebytes\Anti-Malware\Qt5Gui.dll
    LoadedModule[28]=C:\Windows\system32\OPENGL32.dll
    LoadedModule[29]=C:\Windows\system32\GLU32.dll
    LoadedModule[30]=C:\Windows\system32\DDRAW.dll
    LoadedModule[31]=C:\Windows\system32\DCIMAN32.dll
    LoadedModule[32]=C:\Windows\system32\SETUPAPI.dll
    LoadedModule[33]=C:\Windows\system32\CFGMGR32.dll
    LoadedModule[34]=C:\Windows\system32\OLEAUT32.dll
    LoadedModule[35]=C:\Windows\system32\DEVOBJ.dll
    LoadedModule[36]=C:\Windows\system32\dwmapi.dll
    LoadedModule[37]=C:\Program Files\Malwarebytes\Anti-Malware\Qt5Widgets.dll
    LoadedModule[38]=C:\Windows\system32\WININET.dll
    LoadedModule[39]=C:\Windows\system32\urlmon.dll
    LoadedModule[40]=C:\Windows\system32\CRYPT32.dll
    LoadedModule[41]=C:\Windows\system32\MSASN1.dll
    LoadedModule[42]=C:\Windows\system32\iertutil.dll
    LoadedModule[43]=C:\Windows\system32\PSAPI.DLL
    LoadedModule[44]=C:\Windows\system32\IMM32.DLL
    LoadedModule[45]=C:\Windows\system32\MSCTF.dll
    LoadedModule[46]=C:\Windows\system32\cryptbase.dll
    LoadedModule[47]=C:\Windows\system32\profapi.dll
    LoadedModule[48]=C:\Program Files\Malwarebytes\Anti-Malware\platforms\qwindows.dll
    LoadedModule[49]=C:\Windows\system32\WINMM.dll
    LoadedModule[50]=C:\Windows\system32\uxtheme.dll
    LoadedModule[51]=C:\Windows\system32\CLBCatQ.DLL
    LoadedModule[52]=C:\Windows\system32\CRYPTSP.dll
    LoadedModule[53]=C:\Windows\system32\rsaenh.dll
    LoadedModule[54]=C:\Windows\system32\RpcRtRemote.dll
    LoadedModule[55]=C:\Windows\system32\SXS.DLL
    LoadedModule[56]=C:\Windows\system32\apphelp.dll
    FriendlyEventName=Stopped working
    ConsentKey=APPCRASH
    AppName=Malwarebytes Tray Application
    AppPath=C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
     
  15. Baldrick

    Baldrick Registered Member

    Joined:
    May 11, 2002
    Posts:
    2,674
    Location:
    South Wales, UK
    Well, running very sweetly here apart from the high RAM/CPU usage...but then again it is a beta. :thumb:
     
  16. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    Okay, I think I may have answered my own question. I reinstalled the beta and when I switched off the exploit stuff and the warning about incomplete protection popped up. Didn't like that, but found a work around. I turn it back on and went thru the settings and unticked all the settings except the IE VBS ones. I don't use IE so I didn't care. That stopped the alerts and everything seems to be working well. As of this moment it's a keeper.
     
  17. Victek

    Victek Registered Member

    Joined:
    Nov 30, 2007
    Posts:
    6,219
    Location:
    USA
    Thanks for the tip about leaving exploit protection ON while unchecking the individual settings; I'll give that a try. MBAM 3.0 with exploit protection turned off is working fine with HitmanPro.Alert, but I do have the ongoing warning from MBAM. They've already said they will address this in a future build.

    Edit: I just turned exploit protection ON and then unchecked all categories in advanced settings; will run this way for a while and see if the system is stable.
     
    Last edited: Nov 16, 2016
  18. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,546
    Location:
    The Netherlands
    BTW, shouldn't the name be changed into Malwarebytes Endpoint Security? And perhaps you guys could add a behavior blocker, that either auto-blocks or is controlled by the user. But it's not really necessary, I think current features are already good enough. And do you have any comments on why MBARW performed not so good in this test? See link:

    https://www.wilderssecurity.com/thr...ction-test-against-ransomware-threats.389850/
     
  19. bigwrench9

    bigwrench9 Registered Member

    Joined:
    Oct 28, 2009
    Posts:
    148
    338megs here..... Although, its kinda like Emsisoft, Hungry but not sluggish! No real hiccups here. Just hungry!
    I don't want to transfer any of my lifetime license keys at the present time, will we be allowed a "reset" after the "trial period", for continued beta testing? I'm showing 13 days remaining.
     
    Last edited: Nov 16, 2016
  20. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,625
    Location:
    USA
    Installed in a virtual machine, Windows 8, Office 2013, SQL Server 2014, Visual Studio 2012 (not much else, is for software testing) and the scan is starting its 3rd hour. Most of the time has been spent on the "Heuristics Analysis". Much longer than I expected based on previous versions.
     
  21. Victek

    Victek Registered Member

    Joined:
    Nov 30, 2007
    Posts:
    6,219
    Location:
    USA
    Scan times seem to be all over the map. I've run one hyper scan and one threat scan and they finished lightening fast. I don't know if running in a virtual machine could account for the long scan time you're seeing...
     
  22. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    So far main issues are all minor slow down issues. But nothing so bad as to make me want to take it off.
     
  23. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,625
    Location:
    USA
    I closed the UI and opened it again and it said last scan 3 hours ago, but no evidence that it ever happened otherwise. I blew it out, but I'll give it another shot when they release the next update. I hope this meets my expectations when it's done. It may well replace the Trend Micro we have at work if so.
     
  24. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    I did a threat scan on my system 447k files in 17+minutes.
     
    Last edited: Nov 16, 2016
  25. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.