Malwarebytes Anti-Rootkit BETA

Discussion in 'other anti-malware software' started by Cudni, Nov 10, 2012.

  1. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    Thanks, do you have any info when it will be available?
     
  2. arifg

    arifg Developer

    To the end of this week I guess...
     
  3. Mops21

    Mops21 Registered Member

  4. Tarnak

    Tarnak Registered Member

    With latest beta...

    ScreenShot_mbar2_scan_02.jpg

    ScreenShot_mbar2_scan_05.jpg
     
  5. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    It's fixed in the new beta :)
     
  6. jadinolf

    jadinolf Registered Member

    hayc59 tipped me off that you folks had a thread here. Thanks G.

    My only report is that I've been using it since the beginning.

    No problems and it has found nothing.
     
  7. mrtonyg

    mrtonyg Registered Member

    I received the identical warning to the guy on post #26 and proceeded to delete the registry key.

    The key is installed by Adobe Acrobat 9.0 Professional (at least in my case) and it broke the install.

    I am running the latest version of MBAR 1.01.0.1011.
     
  8. AdvancedSetup

    AdvancedSetup Security Expert

    Thank you for the feedback.

    Though Microsoft has said for a long time now that this feature should not be used there are still software vendors that do use it but you find much more abuse by malware than legit vendors.

    Even in XP, Microsoft says this is bad practice and may not be supported in future versions of Windows.

    AppInit_DLLs in Windows 7 and Windows Server 2008 R2


    Hopefully we'll come up an update on this issue in a future build before release.

    Just a reminder that it is still beta software and anyone using it should be taking proper precautions to ensure the safety of their machine before using it.

    Thank you
     
  9. Kees1958

    Kees1958 Registered Member

    Group Policy Hardening: disable turning off System restore = false positive

    Please check on value, enabled should be reported, not disabled, thanks
     
  10. Mops21

    Mops21 Registered Member

  11. G1111

    G1111 Registered Member

  12. Durad

    Durad Registered Member

    Can you tell us everything what "fixdamage.exe" will fix?
    Thanks
     
  13. gerardwil

    gerardwil Registered Member

    Within the MBAR folder there is the ReadMe.rtf file with explanations.

    Bleeping Computer has a Tutorial as well: how to use malwarebytes anti-rootkit
     

    Attached Files:

  14. Rules

    Rules Registered Member

  15. iammike

    iammike Registered Member

    Last edited: Jan 29, 2013
  16. Rules

    Rules Registered Member

  17. Mops21

    Mops21 Registered Member

  18. Victek

    Victek Registered Member

  19. Mops21

    Mops21 Registered Member

  20. gerardwil

    gerardwil Registered Member

    Attached Files:

  21. Tarnak

    Tarnak Registered Member

    Just finished scanning...

    ScreenShot_MBAR6_scan_02.jpg ScreenShot_MBAR6_scan_03.jpg

    ScreenShot_MBAR6_scan_05.jpg ScreenShot_MBAR6_scan_06.jpg
     
  22. G1111

    G1111 Registered Member

  23. CyberMan969

    CyberMan969 Registered Member

    I also got the AppInit_DLLs warning with the latest version. The scan completes fine without removing this registry entry, and results come back clean anyway. When I search in regedit for this entry it cannot be found, still the MBAM Anti-rootkit tells me that it's there.

    I suspect this may be because of Rollback RX but I'm not sure. I just ran the scan again and opted to delete the entry, I will now reboot to see if something stops working. Any opinions would be welcome!

    PS: I just rebooted and everything seems to be fine. All my programs function as normal. I don't know why that entry was there in the first place. My computer has never been infected, I'm actually quite paranoid about my security setup...
     
    Last edited: Mar 7, 2013
  24. ronjor

    ronjor Global Moderator

    http://www.techrepublic.com/blog/security/rootkit-coders-beware-malwarebytes-is-in-hot-pursuit/9207
     
  25. G1111

    G1111 Registered Member

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice