• New version (1.50) of Malwarebytes anti-malware

    Home » Forums » Cyber Security Information and Advisories » Code Red – Security/Privacy advisories » New version (1.50) of Malwarebytes anti-malware

    Author
    Topic
    #473326

    The Malwarebytes team is excited to announce the release of Malwarebytes’ Anti-Malware 1.50. This version features many security, performance, stability and functionality improvements, and is without a doubt our best release yet.

    This release represents a major update to the Malwarebytes software:
    Version 1.50 (November 29th, 2010)

    Overall Improvements:

    1. Dramatically improved scan speed: up to 5 times faster.
    2. Dramatically improved stability of both the scanner and protection module (paid version only).
    3. More responsive: program loads up to 3 times faster, and protection module has lower impact on system resources (paid version only).
    4. New internal detection algorithms enable detection of more real-world malware.

    New Features:

    1. You can now add files and folders to the ignore list manually.
    2. Ability to schedule and unschedule scans and updates from the command line (paid version only).
    3. Notifications of blocked malicious websites now include additional details such as type, port, and process on Windows Vista and higher.
    4. Ability to include or exclude potentially unwanted programs (PUP), potentially unwanted system modifications (PUM), and peer-to-peer software (P2P) from scans and protection module detections.
    5. Dramatically improved flash scan (paid version only) — designed to determine whether a more in-depth scan is needed, in less than 10 seconds on many machines.
    6. One-touch easy-to-use option to keep protection up-to-date automatically (paid version only).
    7. “Warn if database is outdated by:” option now warns if the database is far out-of-date (7 days by default), including for protection (paid version only).
    8. Ability to scan system startup locations for improved detection and to target persistent malware that may be obstructing removal.
    9. Right-click context menu scans now use heuristics.

    Issues Fixed:

    1. Improved compatibility with antivirus software.
    2. Fixed issue with “Recover if missed by” setting in scheduler not working correctly on Windows 2000 and Windows XP.
    3. Fixed issue with “Recover if missed by” setting in scheduler not working for scans and updates scheduled to run ‘Once’.
    4. Fixed issue with Heuristics.Shuriken causing the program to freeze or crash.
    5. Fixed issue with certain infections going undetected by the protection module in 64-bit Windows versions.
    6. Fixed issue with silent scans not creating logs in certain scenarios.

    Get the new version either through your internal updater or go to:
    http://www.malwarebytes.org

    Viewing 13 reply threads
    Author
    Replies
    • #1257019

      Read some tales of woe here on Malwarebytes’ site….
      General Malwarebytes’ Anti-Malware Forum Topics

    • #1257024

      Adam,

      Thanks for the link & Info.

      Tim,

      I uninstalled my old version 1.46
      Rebooted
      Installed 1.50
      Updated —- No problems so far…
      Scanned
      Results:

      Code:
      Malwarebytes' Anti-Malware 1.50
      [url]www.malwarebytes.org[/url]
      
      Database version: 5220
      
      Windows 6.1.7600
      Internet Explorer 8.0.7600.16385
      
      11/30/2010 1:28:16 PM
      mbam-log-2010-11-30 (13-28-16).txt
      
      Scan type: Quick scan
      Objects scanned: 149982
      Time elapsed: 3 minute(s), 36 second(s)
      
      Memory Processes Infected: 0
      Memory Modules Infected: 0
      Registry Keys Infected: 2
      Registry Values Infected: 0
      Registry Data Items Infected: 0
      Folders Infected: 8
      Files Infected: 1
      
      Memory Processes Infected:
      (No malicious items detected)
      
      Memory Modules Infected:
      (No malicious items detected)
      
      Registry Keys Infected:
      HKEY_CLASSES_ROOT.pox (Rogue.FixTool) -> Quarantined and deleted successfully.
      HKEY_CLASSES_ROOTpofile (Rogue.FixTool) -> Quarantined and deleted successfully.
      
      Registry Values Infected:
      (No malicious items detected)
      
      Registry Data Items Infected:
      (No malicious items detected)
      
      Folders Infected:
      c:program files (x86)perfect optimizer (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerBackup (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerBackupapplication (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerBackupRegistry (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerBackupRegistryfirstbackup (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerBackupRegistryfullbackup (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerBackupService (PUP.PerfectOptimizer) -> Not selected for removal.
      c:program files (x86)perfect optimizerTemp (PUP.PerfectOptimizer) -> Not selected for removal.
      
      Files Infected:
      c:program files (x86)perfect optimizerperfectoptimizer.ini (PUP.PerfectOptimizer) -> Not selected for removal.

      Looks like a full scan is in order and a hunt for some removal tools.

      Update: Repeated process with my laptop and all is good! I manually cleaned the desktop then ran a full scan and all ok there also.

      May the Forces of good computing be with you!

      RG

      PowerShell & VBA Rule!
      Computer Specs

    • #1257038

      I also uninstalled the old version using Revo, then installed the newest version. No problems so far.

      • #1257040

        I also uninstalled the old version using Revo, then installed the newest version. No problems so far.

        Dang! Ted,

        I downloaded Revo yesterday and this would have been a good chance to test it…but old habits….
        Thanks for the reminder I hope I’ll remember at my next uninstall.

        May the Forces of good computing be with you!

        RG

        PowerShell & VBA Rule!
        Computer Specs

        • #1257080

          Dang! Ted,

          I downloaded Revo yesterday and this would have been a good chance to test it…but old habits….
          Thanks for the reminder I hope I’ll remember at my next uninstall.

          RG,

          The remembering is sometimes the hard part for me. My thought is that as the covering on the roof gets “Platinum Blond” (hair, not gray) and as I am growing through my hair (my head seems to be ever expanding) the times I can fire up my brain cell to remember gets fewer and longer between.

          What was I talking about??? This seems to be a 2 mug o java morning. Cheers, Ted

    • #1257041

      A warning about MBAM free version, when I was running Vista H Prem. I let it fix:-

      this entry, please excuse unprintable explanation of events, the only ‘fix’ was a clean install.

      • #1257147

        A warning about MBAM free version, when I was running Vista H Prem. I let it fix:-

        this entry, please excuse unprintable explanation of events, the only ‘fix’ was a clean install.

        If Malwarebytes gives you a “Bad/Good” score, DO NOT REMOVE what it has flagged! This is their Advanced Heuristics, and it invariably spits out False Positives. In your case, had you know about this, the Bad(0)/Good(1) rating should have tipped you off. This rating means that there are Zero reasons to suspect this of being malicious, and One reason to think it is a good file or Registry Entry. And why would any knowledgeable person delete anything relating to Windows Explorer? Well, I can understand blind faith if you are not a technical person, so this is forgivable. But in the future, know that MBAM’s Advanced Heuristics is very error-prone. If I could, I would disable it entirely, and just use the standard scanner when doing scans.

        I only use MBAM on my Windows XP computer, and only as a second-opinion scanner. That is, in my opinion, the proper place for this tool.

        -- rc primak

        • #1257299

          If Malwarebytes gives you a “Bad/Good” score, DO NOT REMOVE what it has flagged! This is their Advanced Heuristics, and it invariably spits out False Positives. In your case, had you know about this, the Bad(0)/Good(1) rating should have tipped you off. This rating means that there are Zero reasons to suspect this of being malicious, and One reason to think it is a good file or Registry Entry. And why would any knowledgeable person delete anything relating to Windows Explorer? Well, I can understand blind faith if you are not a technical person, so this is forgivable. But in the future, know that MBAM’s Advanced Heuristics is very error-prone. If I could, I would disable it entirely, and just use the standard scanner when doing scans.

          I only use MBAM on my Windows XP computer, and only as a second-opinion scanner. That is, in my opinion, the proper place for this tool.

          Bob, thanks for the advice.
          After doing the clean install, MBAM free was used to quick scan my PC, it found the same file. Before taking any action, I posted the find on MBAM forums, I gave no mention of previous happening and was told it could be safely removed, which I did was to remove MBAM and keep the file.

        • #1258399

          If Malwarebytes gives you a “Bad/Good” score, DO NOT REMOVE what it has flagged! This is their Advanced Heuristics, and it invariably spits out False Positives. In your case, had you know about this, the Bad(0)/Good(1) rating should have tipped you off. This rating means that there are Zero reasons to suspect this of being malicious, and One reason to think it is a good file or Registry Entry. And why would any knowledgeable person delete anything relating to Windows Explorer? Well, I can understand blind faith if you are not a technical person, so this is forgivable. But in the future, know that MBAM’s Advanced Heuristics is very error-prone. If I could, I would disable it entirely, and just use the standard scanner when doing scans.

          I only use MBAM on my Windows XP computer, and only as a second-opinion scanner. That is, in my opinion, the proper place for this tool.

          Bob, my apologies for late reply. I have been investigating the issue and will now re use it. Thanks for you educational post.

    • #1257174

      Vista SP2,… I had Malwarebytes anti-malware 1.4. About a month ago it started “Freezing up” my computer. I was forced to hold down the “POWER” button on my laptop to shut my laptop down & do a restart. It took me some time, but I determined that Malwarebytes anti-malware was definitely the problem. I had been using it for 2 Years without any problems. So, I removed it. :~(( Then when Version 1.5 came out I read about all the improvements & installed the 1.5 version from Filehippo.
      http://filehippo.com/
      http://filehippo.com/download_malwarebytes_anti_malware/
      No changes. It still locks up my computer so that I can do absolutely nothing. Would not even let me click on the Task Manager (already opened) to shut it down. The action of the mouse being able to click on anything was still there, but it had NO effect. Unfortunately, there is no way I can determine… EXACTLY… whatever changes occurred to my system so that I am no longer able to use it. Malwarebytes anti-malware, I will miss you, but I will survive just fine without you.
      Signed,…
      A (still) fairly new & ignorant computer user.
      [/font]

      • #1257300

        Vista SP2,… I had Malwarebytes anti-malware 1.4. About a month ago it started “Freezing up” my computer. I was forced to hold down the “POWER” button on my laptop to shut my laptop down & do a restart. It took me some time, but I determined that Malwarebytes anti-malware was definitely the problem. I had been using it for 2 Years without any problems. So, I removed it. :~(( Then when Version 1.5 came out I read about all the improvements & installed the 1.5 version from Filehippo.
        http://filehippo.com/ http://filehippo.com…s_anti_malware/
        No changes. It still locks up my computer so that I can do absolutely nothing. Would not even let me click on the Task Manager (already opened) to shut it down. The action of the mouse being able to click on anything was still there, but it had NO effect. Unfortunately, there is no way I can determine… EXACTLY… whatever changes occurred to my system so that I am no longer able to use it. Malwarebytes anti-malware, I will miss you, but I will survive just fine without you.
        Signed,…
        A (still) fairly new & ignorant computer user.

        My scanning experience with MBAM, Quick scan was still running, 4 hours later. C: drive size 45gb’s

        • #1257303

          My scanning experience with MBAM, Quick scan was still running, 4 hours later. C: drive size 45gb’s

          RR,

          I can do a FULL scan my 100Gb C: partition with MBAM in less than 40 minutes! I’d say you have another problem somewhere. See my system specs in signature link. This machine originally came with VISTA so it ain’t new.

          May the Forces of good computing be with you!

          RG

          PowerShell & VBA Rule!
          Computer Specs

    • #1257186

      I got it, I tried it and I like it.

      If a program can’t find something, it can’t remove it. Eh?
      Well, I’ve been using Malwarebytes to find and remove Malware that other programs don’t even see,
      for quite some time. It’s a must-have program for every computer tech’s toolkit.

      Happy Holidays!

    • #1257252

      So why are you all uninstalling the old version first? I usually just allow the updater to do it’s stuff. Are you saying it’s better to uninstall the old version?

      • #1257284

        So why are you all uninstalling the old version first? I usually just allow the updater to do it’s stuff. Are you saying it’s better to uninstall the old version?

        Malwarebytes doesn’t have a software updater. The updates are only for the definitions. As I understand it. When I download a new version I always uninstall – reboot – install – reboot. IMHO just good practice.

        May the Forces of good computing be with you!

        RG

        PowerShell & VBA Rule!
        Computer Specs

      • #1257285

        So why are you all uninstalling the old version first? I usually just allow the updater to do it’s stuff. Are you saying it’s better to uninstall the old version?

        I did a little reading on forums, and based off of what I read, allowed MBAM to update on both WIN7 Pro 64bit PCs and on a XP Pro 32bit PC, and have had no problems. YMMV.

    • #1257288

      OK, thanks. I still have Vista and have always just updated. I suppose it won’t do any harm to uninstall (I use revouninstaller) and install the latest. I’m a little freaked by the problems some people have had I have to say!

    • #1257365

      Another warning: If MWB starts throwing up errors while running a scan (you’ll know because you have to respond to them) DO NOT DELETE ANY FILES THAT ARE FOUND. You need to get the scan stopped – which can be difficult. I haven’t taken the time to figure out what triggers the errors, I just know from personal experience that you will regret the consequences if you delete the files that are found.

      On the other hand, as long as errors are not found, I have found MWB to be the most effective and reliable tool for cleaning the current crop of malware from a computer and restoring it to a workable state. I suppose that I have cleaned dozens of computers (most that were protected with Business class level anti-virus software) with excellent results.

      I highly recommend the product as long as my warning is heeded.

    • #1257459

      RR,I can do a FULL scan my 100Gb C: partition with MBAM in less than 40 minutes! I’d say you have another problem somewhere. See my system specs in signature link. This machine originally came with VISTA so it ain’t new.

      RG, I no longer use MBAM

      Another warning: If MWB starts throwing up errors while running a scan (you’ll know because you have to respond to them) DO NOT DELETE ANY FILES THAT ARE FOUND. You need to get the scan stopped – which can be difficult. I haven’t taken the time to figure out what triggers the errors, I just know from personal experience that you will regret the consequences if you delete the files that are found.

      On the other hand, as long as errors are not found, I have found MWB to be the most effective and reliable tool for cleaning the current crop of malware from a computer and restoring it to a workable state. I suppose that I have cleaned dozens of computers (most that were protected with Business class level anti-virus software) with excellent results.

      I highly recommend the product as long as my warning is heeded.

      SuperAntispyware is my tool of choice, which has a better reputation on ‘Gizmo’ web site. I use the portable SAS which I download from Here

    • #1257535

      My recent experience (my first) with MBAM led me to decide to do a restore point before a scan, next time.
      I deleted two lines in the registry, and as a result I got an annoying Microsoft nag icon next time I booted,
      telling me I wasn’t protected.I just restored. I thought I’d mention. (I’m also printing some of the good advice
      in this thread, for later reference).

    • #1257547

      My gosh, I have been under the impression that MWBAM is the best you can get as it’s recommended everywhere and I use it on all the computers I clean up for family and friends but this thread has made me think again and, although I have never had any problems with it, I don’t think I’ll risk using it again.

      Can anyone else endorse SuperAntispyware and is it free…….or is there another alternative?

      • #1257553

        My gosh, I have been under the impression that MWBAM is the best you can get as it’s recommended everywhere and I use it on all the computers I clean up for family and friends but this thread has made me think again and, although I have never had any problems with it, I don’t think I’ll risk using it again.

        Can anyone else endorse SuperAntispyware and is it free…….or is there another alternative?

        Read the full report Here of attached image.

    • #1257555

      Thank you very much!

    • #1257600

      I installed v.1.50 a few days ago – did not uninstall earlier version. The only thing I have noticed is that Quick Scan took half the time to complete than the previous version.

    Viewing 13 reply threads
    Reply To: New version (1.50) of Malwarebytes anti-malware

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information: