TechRepublic : A ZDNet Tech Community

Network Administrator

Host: Selena Frye
Contact

TechRepublic members have been asking about malware scanners. Which ones work? Are they safe to download? I’d like to share what I consider my favorite scanner and why I like it.
——————————————————————————————————————-

As I see it, there are three axioms when it comes to malware removal:

  1. Malware coders will be ahead of the curve at all times.
  2. Malware is not important until it causes a problem.
  3. Just because a malware removal tool worked once, doesn’t mean it will work again.

That sounds discouraging, doesn’t it? Well, I’m happy to say that I’ve found a product that’s become my malware fighter du jour. Malwarebytes’ Anti-Malware (MBAM) is the scanner that keeps malware off my computers and the one that I immediately use when trying to wrestle malware from unknown computers.

MBAM the total package

A few months ago, several members made mention of a program called MBAM and how well it worked at finding malware. I’m sure glad I paid attention, because it’s a great scanner. By far, MBAM has the best success rate of the many scanners I’ve tried. MBAM comes in either the free version or the full version. The Malwarebytes Web site mentions that the full version has the following added features:

“The Real-time Protection Module uses our advanced heuristic scanning technology which monitors your system to keep it safe and secure. In addition, we have implemented a threats center, which will allow you to keep up to date with the latest malware threats. Activating the full version unlocks real-time protection, scheduled scanning, and scheduled updating.”

The free version has met my needs completely, since it’s a specific tool that I’m using to remove malware. Still for only $24.95 US, the added benefit of the full version of MBAM running on a computer in the background may be a good way to get some peace of mind.

Simple to use

MBAM has a very simple user interface that even makes sense to me.

mbam1.JPG

While researching MBAM, I ran across a very useful tip from Samuel Dean on the WebWorkersDaily Web site. The following quote is from his “Malwarebytes’ Anti-Malware Ferrets Out the Hidden Gunk” blog post:

“One piece of advice before you run this program: Go into any browsers you have loaded on your system and delete any saved temporary Internet files (available through the Tools menu of the popular browsers). The reason is that Malwarebytes’ Anti-Malware does a highly thorough scan of your files even if you choose its Quick Scan choice instead of Full Scan.”

It does make a difference, especially on some of the monster hard drives that are now being used.

Remember the third axiom

I consider MBAM the heavy hitter of all general-purpose malware scanners. Still, I’ve seen MBAM miss malware, in particular rootkits. To help in that regard, I wrote an article Rootkits: Is Removing Them Even Possible?” which featured many qualified rootkit detection and removal applications. If hard pressed, I’d recommend GMER as my first choice for detecting rootkits.

Final thoughts

I continually hope for a magical application that once installed on a computer will give the user assurance that all is good. It’s not quite there yet, and on many occasions more than one program or even an operating system reload will be required. For example, I’d like you to check out Swatkat’s blog post “Zlob Fake Codec Rootkit Removal Procedure,” where both GMER and MBAM were required.

Need help keeping systems connected and running at high efficiency? Delivered Monday and Wednesday, TechRepublic’s Network Administrator newsletter has the tips and tricks you need to better configure, support, and optimize your network. Automatically sign up today!

Michael KassnerMichael Kassner has been involved with communications for 40 plus years, starting with amateur radio (K0PBX) and now as a systems/network administrator for an international corporation and consultant with MKassner Net. Read his full bio and profile.

Print/View all Posts Comments on this blog

Thanks! seanferd | 01/20/09
I've had a rash of compromised computers lately Michael Kassner | 01/21/09
I know. The only way to feel sure seanferd | 01/21/09
It's a huge paradox Michael Kassner | 01/22/09
my router (2Wire) is my firewall, however..... LongOfTooth | 01/23/09
Install another firewall. seanferd | 01/23/09
Thanks Sean & Michael. I'm downloading it now. (nfm) LongOfTooth | 01/25/09
Let us know if you have any issues Michael Kassner | 01/25/09
I agree with Sean Michael Kassner | 01/24/09
What about Linux? Pringles86 | 01/26/09
Linux FW pgit | 01/26/09
spread the news pgit | 01/26/09
Interesting idea Michael Kassner | 01/27/09
Global Reinstall Day Synthetic | 02/18/09
I have another favorite app feetsdr@... | 01/21/09
I researching it as well Michael Kassner | 01/21/09
I just loaded up CounterSpy / VIPRE to test.....so far VERY impressed. robo_dev | 01/21/09
Interesting Michael Kassner | 01/21/09
Vipre: a mixed bag for me billfranke@... | 01/22/09
That's some very good feedback....I'll watch for that. robo_dev | 01/22/09
MBAM is best of breed Jacky Howe | 01/20/09
Question Jacky Michael Kassner | 01/21/09
I have run into a situation before... cmiller5400 | 01/21/09
Good to know Michael Kassner | 01/21/09
This one... cmiller5400 | 01/21/09
Question Michael Kassner | 01/21/09
I never tell the client that the problem is solved... cmiller5400 | 01/21/09
Combofix and MBAM bill@... | 10/13/09
I have also run into that problem Pringles86 | 01/21/09
Tried that. cmiller5400 | 01/21/09
Also PC Tools Spyware Doctor as Well as Trend version 12 robo_dev | 01/21/09
Yup. cmiller5400 | 01/21/09
I'd appreciate your help Michael Kassner | 01/21/09
Depends on what was on the machine iamltr@... | 01/22/09
Does the pc seem to be running normally now?? tstreich@... | 02/18/09
Recommend a Defragmentation whether it's faster or slower. megamanx | 03/04/09
I am currently working on removing Dumphrey | 01/21/09
I find that often as well Michael Kassner | 01/21/09
I know I sound like an Avast salesman. tstreich@... | 02/18/09
Same megamanx | 03/04/09
Avast tstreich@... | 02/18/09
Sure have Jacky Howe | 01/21/09
Thanks for sharing Michael Kassner | 01/22/09
I mainly Jacky Howe | 01/22/09
You are at the forefront Michael Kassner | 01/23/09
me? yes pgit | 01/26/09
Ran into a really ugly one about the time of your post here... jemorris@... | 02/06/09
Thanks for sharing Michael Kassner | 02/07/09
changed name... pgit | 02/07/09
So am I Michael Kassner | 02/08/09
I have a question... acavasin@... | 01/27/09
not the source pgit | 01/27/09
Pgit is correct Michael Kassner | 01/28/09
RE: Malware scanners: MBAM is best of breed JMIRTC | 01/21/09
Glad you agree Michael Kassner | 01/21/09
Gets rid of AV2009! jwmartin@... | 01/21/09
MBAM and AV2009 sdsnyr94@... | 01/21/09
Can't officially confirm Michael Kassner | 01/21/09
AV2009 ActiveX control bpc@... | 01/21/09
Look in seanferd | 01/21/09
Good point Michael Kassner | 01/22/09
yep shasca | 01/22/09
Yes I did... jemorris@... | 02/06/09
I have!!!! tstreich@... | 02/18/09
Good job. megamanx | 03/04/09
Actually PC Tools Spyware Doctor was able to kill AV2009 robo_dev | 01/21/09
RE: Malware scanners: MBAM is best of breed jimdrvr99@... | 01/21/09
Let us know Michael Kassner | 01/21/09
GMER is an awsome little program Dumphrey | 01/21/09
Is GMER safe rsquared@... | 01/21/09
Your concern is valid Michael Kassner | 01/22/09
Another program to look into Dumphrey | 01/22/09
Exactly Michael Kassner | 01/22/09
Sorry for the much late reply Dumphrey | 02/09/09
Multiple download versions Michael Kassner | 02/11/09
MBAM and roving profiles tomkunasfamily@... | 01/28/09
No, this is first I've heard Michael Kassner | 01/29/09
Think I found why tomkunasfamily@... | 02/11/09
Glad to hear that Michael Kassner | 02/11/09
RE: Malware scanners: MBAM is best of breed cindy@... | 01/21/09
Compatible Michael Kassner | 01/21/09
RE: Malware scanners: MBAM is best of breed compuguy@... | 01/21/09
I like that Michael Kassner | 01/21/09
To the best of my knowledge Dumphrey | 01/21/09
RE: Malware scanners: MBAM is best of breed sdsnyr94@... | 01/21/09
Makes sense Michael Kassner | 01/22/09
This is an old thread... JCitizen | 10/03/09
Question for everyone: When is it all gone? Michael Kassner | 01/21/09
Never blacksmith@... | 01/21/09
I normally run a couple of Jacky Howe | 01/21/09
Suspected as much Michael Kassner | 01/22/09
I have the HiJackThis tutorial copied Jacky Howe | 01/22/09
I agree Michael Kassner | 01/23/09
I think in tiers for malware recidivism... JCitizen | 10/03/09
RE: Malware scanners: MBAM is best of breed The Scummy One | 01/21/09
Best of breed? Jaqui | 01/21/09
What do you tell clients when they get these problems? feetsdr@... | 01/21/09
me? Jaqui | 01/21/09
Silly Us w2ktechman | 01/21/09
Which version? Michael Kassner | 01/22/09
I would have to look w2ktechman | 01/22/09
and to add w2ktechman | 01/22/09
That's great info Michael Kassner | 01/23/09
That part works, however -- Edited The Scummy One | 01/23/09
Symantec does the quarrantine seanferd | 01/23/09
Good information Michael Kassner | 01/24/09
Oh Michael The Scummy One | 01/26/09
Thinking about that Michael Kassner | 01/27/09
RE: Malware scanners: MBAM is best of breed DHCDBD | 01/21/09
You may have Michael Kassner | 01/22/09
Very cool, just when I thought the machine was clean Michael Jay | 01/21/09
Best of Breed IamYoungie | 01/21/09
Thanks for the replies Michael Kassner | 01/22/09
Actually I believe that it was mostly left over stuff Michael Jay | 01/22/09
RE: Malware scanners: MBAM is best of breed Spector | 01/21/09
RE: Malware scanners: MBAM is best of breed daileyml | 01/22/09
My take Michael Kassner | 01/22/09
My suspicions... JCitizen | 10/03/09
I think they are purposed differently Michael Kassner | 01/22/09
RE: Malware scanners: MBAM is best of breed garibaldi69@... | 01/22/09
Let us know Michael Kassner | 01/22/09
Use it first, then do this! Randolph_67 | 01/22/09
Interesting Michael Kassner | 01/22/09
that sounds like the ticket to me too... JCitizen | 10/04/09
Absolutely! TaDaH | 01/22/09
Good to hear Michael Kassner | 01/22/09
Malware... DHCDBD | 01/22/09
Good Point Michael Kassner | 01/23/09
Where is the Malware anyways? BALTHOR | 01/22/09
Under your bed. santeewelding | 01/22/09
I thought seanferd | 01/23/09
In anything electronic The Scummy One | 01/23/09
Good luck to you seanferd | 01/23/09
Reminds me Michael Kassner | 01/24/09
Dang!... JCitizen | 10/04/09
Open Source literature bennie3327@... | 01/26/09
Glad it worked Michael Kassner | 01/26/09
MBAM bennie3327@... | 01/28/09
RE: Malware scanners: MBAM is best of breed tjspence@... | 01/26/09
It's one of the few Michael Kassner | 01/26/09
I disagree megamanx | 01/26/09
Your help please Michael Kassner | 01/26/09
A-squared megamanx | 01/27/09
Thanks Michael Kassner | 01/28/09
MBAM has always been sold as a companion... JCitizen | 10/04/09
I hope you use some Active Malware Scanner ! blue_smirnoff | 01/29/09
I've heard good things Michael Kassner | 01/29/09
Same here megamanx | 01/29/09
Dead_Bang!... JCitizen | 10/04/09
Unnecessarily picky comment jlhollin | 01/29/09
Don't be sorry Michael Kassner | 01/30/09
I think it is great but... rigo12 | 02/02/09
odd pgit | 02/03/09
What I found... jemorris@... | 02/06/09
Unless MBAM will not run, sort of Quirkly | 02/06/09
Are there 3rd-party themes/icon packs installed? seanferd | 02/06/09
imageres.dll ? Quirkly | 02/08/09
Thanks for sharing Michael Kassner | 02/07/09
Check out this link Jacky Howe | 02/08/09
Thanks Jacky Michael Kassner | 02/09/09
RE: Malware scanners: MBAM is best of breed grimalkin9999@... | 02/26/09
MBAM Jacky Howe | 02/26/09
I agree Michael Kassner | 02/26/09
Thanks Michael Jacky Howe | 02/26/09

What do you think?

White Papers, Webcasts, and Downloads

Recent Entries

TR on Twitter

Archives

TechRepublic Blogs



500 Things Every Technology Professional Needs to Know
Did you know Microsoft's RegClean does not work with XP but you can use shareware to clean your registry? Did you know most wireless access points don't have encryption enabled by default? Did you know there are 500 tidbits of information contained in TechRepublic's 500 Things Every Technology Professional Needs to Know that will help you become a successful IT professional.
Buy Now
IT Help Desk Survival Guide, Third Edition
TechRepublic's IT Help Desk Survival Guide, Third Edition provides tools and recommendations to help you better manage help desk services, improve end-user support, troubleshoot frustrating hardware issues, identify quick fixes to vexing Windows problems, and help users make the most of Microsoft Office 2003.
Buy Now

SmartPlanet

Click Here