Malwarebytes Anti-Exploit

Discussion in 'other anti-malware software' started by ZeroVulnLabs, Oct 15, 2013.

  1. pbust

    pbust AV Expert

    Joined:
    Apr 29, 2009
    Posts:
    1,176
    Location:
    Spain
    One thing doesn't preclude the other, we can disagree and still go out and have fun. We just had a fun night in Amsterdam with HMPA guys years ago :shifty:
     
  2. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    It's been a long time, almost 6 years? Nice to hear from you!
     
  3. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
    Yes of course, as long as you guys keep each other on your toes when it comes to developing the best anti-exploit tools, why not LOL. And I've read that Malwarebytes is getting better and better, it performed quite good in the latest MRG Effitas test, also when it came to blocking ransomware and exploit attacks. BTW, make sure that MBAE also supports the newest browsers out of the box, like Brave and Vivaldi. Besides Edge, Firefox, Chrome and Opera of course.
     
  4. loungehake

    loungehake Registered Member

    Joined:
    Mar 9, 2015
    Posts:
    201
    Location:
    Wigan
    Application Behaviour Protection for MS Office

    Protection for Office VBE7 Object Abuse does not remain enabled on some installations of MBAE.

    Some installations of MBAE 1.13.1.443 (and recent previous versions) allow this protection to be consistently enabled but others, for no apparent reason, disable it even after it has been specifically enabled by the user. Does anyone have any suggestions about why this could be?

    Protection for Office VBE7 Process Abuse is always enabled unless specifically disabled.
     
  5. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
  6. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
  7. loungehake

    loungehake Registered Member

    Joined:
    Mar 9, 2015
    Posts:
    201
    Location:
    Wigan
    MBAE 1.13.1.476 will not download and install automatically. I think I found the download in the windows\temp folder but had to install it manually.

    The Malwarebytes forum does not mention version 1.13.1.476. What is going on? The new version seems to work OK. There are some useful enhancements in it.
     
  8. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Announced few hours ago =
    https://forums.malwarebytes.com/top...ti-exploit-113-build-476-released-may-3-2022/
     
  9. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Malwarebytes Anti-Exploit Beta 1.13.1.481
    May 18, 2022

    Download: https://downloads.malwarebytes.org/file/mbae
    Edit:
    Also here=
    https://forums.malwarebytes.com/top...i-exploit-113-build-481-released-may-18-2022/
     
    Last edited: May 18, 2022
  10. loungehake

    loungehake Registered Member

    Joined:
    Mar 9, 2015
    Posts:
    201
    Location:
    Wigan
    Automatic installation now seems to work.
     
  11. Cache

    Cache Registered Member

    Joined:
    May 20, 2016
    Posts:
    445
    Location:
    Mercia
    I ran this for several years before uninstalling it. I can't quite remember why but I think it was because I also run VoodooShield which also should prevent exploits. Anyone know if I can safely carry on without MBAE?
     
  12. Brummelchen

    Brummelchen Registered Member

    Joined:
    Jan 3, 2009
    Posts:
    5,919
    windows 10 defender has an anti-exploit module, so i dont care about others.
     
  13. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
    MBAE works in a different way than VS, it tries to block exploits in an earlier stage. But in practice a tool like VS will also block most if not all exploit attacks, since it simply blocks the payload/malware from running. Tools like EXE Radar and OSArmor do the same as VS. Apparently AppCheck also blocks exploit, but I'm not sure how it works, most likely it works like VS. So long story short, tools like MBAE and Hitman.Pro Alert are the most advanced anti-exploit tools.
     
  14. Cache

    Cache Registered Member

    Joined:
    May 20, 2016
    Posts:
    445
    Location:
    Mercia
    Thanks for the detailed explanation Rasheed. i've installed MBAE again. Better safe than sorry!
     
  15. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
    Yes, if it doesn't give you any problems why not. I can't remember why I uninstalled it months ago, I believe it's because Vivaldi was acting a bit weird, but I'm not sure if it was MBAE that was causing the problem. I think it was probably AppCheck or KeyScrambler.
     
  16. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
  17. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Malwarebytes Anti-Exploit Beta 1.13.1.516
    Nov 17, 2022
    https://forums.malwarebytes.com/top...i-exploit-113-build-516-released-nov-17-2022/

    https://www.majorgeeks.com/files/details/malwarebytes_anti_exploit_(formerly_exploitshield).html

    Download: https://downloads.malwarebytes.org/file/mbae
     
    Last edited: Nov 17, 2022
  18. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Malwarebytes Anti-Exploit Beta 1.13.1.521
    Jan 26, 2023
    https://forums.malwarebytes.com/top...i-exploit-113-build-516-released-nov-17-2022/

    https://www.majorgeeks.com/files/details/malwarebytes_anti_exploit_(formerly_exploitshield).html

    Download: https://downloads.malwarebytes.org/file/mbae

     
  19. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,296
    Just decided to reinstall on this Windows 10 Pro laptop, after my Surface Book laptop failed back in May 2021.

    I had forgotten about MBAE.

    MBAE_v1.13.1.521_default settings_01.JPG
     
  20. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,296
    Just updated to v1.13.1.543

    MBAE_v1.13.1.543 update.JPG
     
  21. Azure Phoenix

    Azure Phoenix Registered Member

    Joined:
    Nov 22, 2014
    Posts:
    1,560
  22. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,296
    Just updated my version:

    Malwarebytes Anti-Exploit 1.13.1.551
    Protection:

    • New protection technique to block exploits from abusing MS Office and scripting applications
    • New technique to protect MS Office applications from loading points abuse attacks
    • New technique to protect MS Office applications from batch command abuse attacks
    • New granular protection against VBA7 process and VBE7 object abuse
    • New protection for email clients against scripting applications abuse attacks
    • New protection to protect MS Office applications from macro 4.0 abuse attacks

    Stability/issues fixed:
    • Fixed slowdown issues with MS Excel application
    • Disabled Java shield by default
    • Improved Logging capabilities
    • Internal Product Improvements
     
  23. 1PW

    1PW Registered Member

    Joined:
    Apr 2, 2010
    Posts:
    1,934
    Location:
    North of the 38th parallel.
    Last edited: Sep 21, 2023
  24. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
  25. 1PW

    1PW Registered Member

    Joined:
    Apr 2, 2010
    Posts:
    1,934
    Location:
    North of the 38th parallel.
    Hello @Rasheed187

    Without asking Malwarebytes' AE/MBAE's Technical Product Manager, I feel she would tell us that several hundred browsers are vying for market share and keeping that type of DB current would be a never-ending chore. Chrome is going to lead for a long time.

    If you feel the need to pursue this further, please open a topic in the Malwarebytes' AE Beta sub-forum.

    Thank you.
     
    Last edited: Sep 30, 2023
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.