OFFICIAL SECURITY BLOG
May 24, 2013 | BY Pieter Arntz
The Malwarebytes Anti-Malware Pro version offers you a protection module that utilizes different methods to stop malware, before it can hurt your system or compromise your data.
The first method is to block traffic to known malware servers. This module is called IP Protection and as the name reveals, this is done by IP address, which means in theory that legitimate websites could be blocked because they share a server with known malware-distributing sites. If you run into such a situation let us know on the forums. Here you can also find a FAQ about the IP Protection module.
The second method is an automatic scan of every file that gets loaded in the memory of your computer. This method is called Malware Execution Prevention. I have demonstrated this in the video by checking the properties of a malware file. Checking the properties makes the computer load the file in memory, only to have a look at certain characteristics, but it is enough for the Malware Execution Prevention module to intervene, if the file is recognized by Malwarebytes Anti-Malware. In other words, if the file is in the definitions, then you will receive a warning and the file will be quarantined, depending on the options you have checked on the Protection tab.
Since there are a lot of installers that bundle many different malware files, these installers change often and the latest version is not always in the definitions. But, using this method of scanning in memory, the malware files will get intercepted as soon as the installer tries to deploy them. In the video you can see this at work when we execute the installer, which was not recognized. The protection module recognizes some, if not all, of the files it tries to plant on your computer, and immediately quarantines them. Since it quarantined a few files it went too fast to be able to read what happened exactly, so I checked the log to see which files were put in quarantine.
Summary: I hope to have demonstrated how the protection modules offered in the Malwarebytes Anti-Malware Pro version give you an added value. It should speak for itself that prevention is better than cure. So as I always like to say and write: Save yourself the hassle and get protected.