Jump to content

Recommended Posts

  • ExTS Admin
Posted

Today Malwarebytes announced their latest security offering called Malwarebytes Anti-Ransomware.

Malwarebytes Anti-Ransomware, or MBARW for short, is currently in beta and is a small utility that runs in the background while quietly monitoring computer for behavior associated with file encrypting ransomware.

When it detects associated behavior it automatically blocks the thread from encrypting your data, quarantines the executable, and alerts you that something was detected.

 

https://www.youtube.com/watch?v=WOkUhGlXnRg

 

Malwarebytes Anti-Ransomware is currently being released as a free standalone product that anyone can use to protect their computer.

With ransomware being one of the biggest computer security threats currently affecting users, tools dedicated to its prevent is a welcome one.

 

Malwarebytes feels the same way as according to Nathan Scott, the leader technical developer of Malwarebytes Anti-Ransomware, "I'm thrilled with the release of this application as it has finally brought together all of the ideas from our top developers who sought one common goal; to stop victims from getting infected by Ransomware.

We want to make ransomware a thing of the past and this application is going to get us much closer to that day."

 

On release, I tested this product against ransomware samples such as the heavy hitters TeslaCrypt and CryptoWall as well as smaller ones like Magic Ransomware and LeChiffre. Knowing this was a beta and expecting bugs, I was pleasantly suprised that Malwarebytes Anti-Ransomware did a great job stopping threads that were trying to encrypt the files on my test computer. On each test it terminated the threads or processes, quarantined the associated executables, and issued a detection alert notifying me of the threat.

 

http://exts.org/data/MetaMirrorCache/e7a2cd4d7ce0a7c3e8cfcdefaf79e77c.png

Ransomware Detection Alert

 

Though Malwarebytes Anti-Ransomware did a terrific job protecting the test computer, I did notice that on the smaller ransomware infections such as LeChiffre and Magic, one or two files were encrypted before MBARW kicked in and blocked the encryption thread.

Also MBARW currently allows other ransomware actions such as removing shadow volume copies and creating ransom notes to occur.

Finally, Malwarebytes Anti-Ransomware is currently labeling all detected ransomware as Malware.Ransom.Agent.Generic rather than more descriptive names that help identify the particular family the infection belongs to.

 

http://exts.org/data/MetaMirrorCache/d3634bbc5982ac74c466c8c447882c6c.png

Quarantine Screen

 

According to Nathan Scott, "This version of Malwarebytes Anti-Ransomware is focused on stopping the ransomware at all costs and eliminating any false positives. The next beta version will have a stronger focus on preventing ransomware actions such as shadow volume manipulation, the creation of ransom notes, and to properly identify the ransomware families."

 

Without a doubt, Malwarebytes Anti-Ransomware Beta makes a strong debut with its ability to stop ransomware from encrypting your data.

Along with other products such as Emsisoft Anti-Malware's Behavior Blocker and SurfRight's HitmanPro.Alert, Malwarebytes Anti-Ransomware provides strong protection against current and future ransomware threats.

 

For those who want to help beta test this product, Malwarebytes has setup a dedicated topic where you can discuss the product and provide feedback.

 

 

Source and Credit:

http://www.bleepingcomputer.com/news/security/malwarebytes-releases-new-anti-ransomware-beta-software/

 

 

Note:

As this is the very first beta we do encourage beta users to install the product in non-production environments for testing purposes.

You can safely install Malwarebytes Anti-Ransomware beta alongside Malwarebytes Anti-Malware and Malwarebytes Anti-Exploit.

 

Download link:

https://malwarebytes.box.com/s/s7h3v3derixc7b88q5okal5c0vol5h1x

Member of:

UNITE

  • Replies 1
  • Created
  • Last Reply

Top Posters In This Topic

Top Posters In This Topic

Posted

Thanks for information

Bob

Bob

(bob12a)

My 3D pictures need red cyan glasses to view

medion MD8855,Win 7 IE8, Firefox/3, Avast,MS security essentials, NERO 9,malware bytes.Mailwasher pro ,6.54,Roboform,spybot S&D 1.6, Canon ixus 860 X 2,PS CS5

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...