Malwarebytes (software)

Malwarebytes (formerly Malwarebytes Anti-Malware, abbreviated as MBAM) is a cybersecurity software suite for Microsoft Windows,[7] macOS, ChromeOS, Android, and iOS that finds and removes malware.[8][9] Made by Malwarebytes Corporation, it was first released in January 2006. This is available in a free version, which scans for and removes malware when started manually, and a paid version, which additionally provides scheduled scans, real-time protection and a flash-memory scanner.

Malwarebytes
DeveloperMalwarebytes Inc.
Initial releaseJanuary 2006; 19 years ago (2006-01) (as RogueRemover)
Stable release
Windows5.4.5 / December 1, 2025; 18 days ago (2025-12-01)[1]
macOS5.19 / November 19, 2025; 30 days ago (2025-11-19)[2]
Android & ChromeOS5.19.2 /
November 11, 2025; 38 days ago (2025-11-11)[3]
iOS5.21 /
November 27, 2025; 22 days ago (2025-11-27)[4]
Operating systemWindows 7 and later,
macOS 10.12 and later,[5] Android 9.0 and up, iOS 17 and later, ChromeOS[6]
PlatformIA-32, x86-64
SizeWindows: 287 MB
Android: 42.5 MB
Available in30 languages
List of languages
Bulgarian, Catalan, Chinese (Traditional), Czech, Danish, Dutch, English, Estonian, Finnish, French, German, Greek, Hebrew, Hungarian, Indonesian, Italian, Japanese, Korean, Norwegian, Polish, Portuguese (Brazil), Portuguese (Portugal), Romanian, Russian, Slovak, Slovene, Spanish, Swedish, Turkish and Vietnamese
TypeAnti-malware
LicenseProprietary (Freemium)
Websitemalwarebytes.com

Overview

edit

Malwarebytes scans and removes malicious software, including rogue security software, adware, and spyware.[10] Malwarebytes scans in batch mode, rather than scanning all files opened, reducing interference if another on-demand anti-malware software is also running on the computer.[11][12]

Malwarebytes antivirus has four plans: Free, Standard, Plus, and Ultimate.[8] The free edition functions purely as an on-demand scanner. It can remove existing malware but lacks continuous realtime protection, so users must launch scans manually to stay secure. Premium plans add real-time protection and scheduled scanning, blocking malicious websites, scanning files and memory automatically, and performing daily "Threat scans" of memory, startup items, the registry, and file system objects, alongside other advanced scan modes.[8]

In 2020, Malwarebytes introduced its own virtual private network solution, Malwarebytes Privacy, built on the WireGuard protocol.[13][14]

In 2023, the software suite was expanded through the integration of technology acquired from Cyrus, a privacy services provider. This added automated digital footprint scanning and tools for submitting personal data removal requests.[15][16]

That same year, Identity Theft Protection became available as an optional component that could be added to any Malwarebytes plan.[17]

In 2024, the functionality of the software was expanded again following the acquisition of AzireVPN, adding another virtual private network service to the privacy features available to users.[18]

Also in 2024, Malwarebytes released Personal Data Remover, which scans data broker platforms and people-search sites, assists users in removing exposed personal information, and provides ongoing privacy monitoring.[19] The company additionally introduced the Digital Footprint Portal, a free tool that analyzes online sources for data linked to a user’s email address and offers guidance on improving privacy protections.[20]

In 2025, the product was further expanded with the addition of Scam Guard, an AI-based mobile tool designed to identify potentially fraudulent messages and links.[21]

Artificial intelligence

edit

Malwarebytes uses artificial intelligence by integrating behavior-based machine-learning models into its malware detection engines.[22]

In early 2025, reviewers noted that the Katana engine had been updated to include more advanced AI-driven and machine-learning approaches, allowing it to recognise malware families that had not yet been catalogued and improving its ability to address newly emerging forms of malicious software.[23]

Further assessments in 2025 reported that Malwarebytes made broader use of heuristic analysis and machine-learning components to enhance the detection of evolving threats, contributing to more comprehensive behaviour-based protection within its consumer products.[24][25]

Security vulnerabilities

edit

On February 2, 2016, Project Zero discovered four vulnerabilities in the Malwarebytes flagship product, including lack of server-side encryption for update files and lack of proper payload signing within encrypted data; the combination of which allowed an attacker to recompile the encrypted payload with exploits.[26] Malwarebytes responded one day before disclosure in a blog article detailing the extreme difficulty in executing these attacks, as well as revealing that the announced server-side and encryption issues were resolved within days of private disclosure and were not outstanding at the time Project Zero published their research.[27] Malwarebytes also published information on how to protect current users until a patch was released. This event also resulted in the establishment of a formal bug bounty program by Malwarebytes, which offers up to $1,000 per disclosure as of 2018, depending on severity and exploitability.[28]

Dispute with IObit

edit

On November 2, 2009, Malwarebytes accused IObit, a Chinese company that offers similar products, of incorporating the database of Malwarebytes Anti-Malware (and several products from other vendors, which were not named) into its security software IObit Security 360.[29][30] IObit denied the accusation and stated that the database is based on user submissions, and sometimes the same signature names that are in Malwarebytes get placed into the results.[30][31]

IObit stated that the company did not have enough time to filter out the signature names that resembled those used by Malwarebytes. They also said that Malwarebytes did not have convincing proof and declared that the databases were not stolen. After the declaration from IObit, Malwarebytes issued a reply describing IObit's denial as "unconvincing".[29] CEO Marcin Kleczynski told Softpedia that Malwarebytes served DMCA notices to CNET’s Download.com, MajorGeeks and SoftLayer, and that those hosts removed the IObit files as a result.[32] IObit responded that it had removed the disputed signatures and updated its database after the allegations were raised.[33]

See also

edit

References

edit
  1. ^ "Malwarebytes for Windows – Release History & News". support.malwarebytes.com. Archived from the original on April 5, 2024. Retrieved April 5, 2024.
  2. ^ "Malwarebytes for Mac – Release History & News". support.malwarebytes.com. Archived from the original on April 5, 2024. Retrieved April 5, 2024.
  3. ^ "Malwarebytes for Android & Chrome OS – Release History & News". support.malwarebytes.com. Archived from the original on April 5, 2024. Retrieved April 5, 2024.
  4. ^ "Malwarebytes for Malwarebytes for iOS – Release History & News". support.malwarebytes.com. Archived from the original on April 5, 2024. Retrieved April 5, 2024.
  5. ^ Born, Mindy (February 19, 2025). "Malwarebytes Review". Cloudwards. Retrieved December 16, 2025.
  6. ^ "Malwarebytes Premium Security – 5 Devices / 1 Year – Windows, Mac OS, Android iOS, Chrome". Micro Center. Retrieved December 16, 2025.
  7. ^ "10 Best Malware Removal Tools for Windows 10 - Windows Able". windowsable.com. December 18, 2015. Retrieved August 24, 2016.
  8. ^ a b c Misiūnas, Adomas (October 31, 2025). "Malwarebytes review: are free and premium versions good?". Cybernews.
  9. ^ Malwarebytes Anti-Malware review at PCworld.com, December 21, 2010, retrieved July 22, 2014
  10. ^ "MalwareBytes' Anti-Malware 1.36". PCMag UK. February 25, 2014. Retrieved December 15, 2025.
  11. ^ Elad, Barry (October 10, 2023). "Malwarebytes Statistics, Reviews, Best Antivirus? And Facts". Enterprise Apps Today. Retrieved December 15, 2025.
  12. ^ Neil J. Rubenking (July 6, 2010). "Free Antivirus and Antispyware". PC Magazine. Retrieved March 2, 2014.
  13. ^ Wagenseil, Paul (April 23, 2020). "Malwarebytes launches Privacy, its own WireGuard-based VPN service". Tom's Guide. Retrieved December 15, 2025.
  14. ^ Brinkmann, Martin (April 24, 2020). "Malwarebytes launches Malwarebytes Privacy VPN service". gHacks. Archived from the original on March 12, 2025. Retrieved December 15, 2025.
  15. ^ "Malwarebytes acquires online privacy solutions provider Cyrus". SiliconANGLE. August 24, 2023. Retrieved December 15, 2025.
  16. ^ "Malwarebytes Strengthens Portfolio with Cyrus Acquisition". Technology Signals. August 29, 2023. Retrieved December 15, 2025.
  17. ^ Barker, Ian (2023). "Malwarebytes launches ID theft protection for consumers". BetaNews. Retrieved December 16, 2025.
  18. ^ Arghire, Ionut (November 8, 2024). "Malwarebytes Acquires VPN Provider AzireVPN". SecurityWeek. Retrieved December 16, 2025.
  19. ^ "Malwarebytes Personal Data Remover protects user privacy". Help Net Security. September 25, 2024. Retrieved December 16, 2025.
  20. ^ "Malwarebytes launches free Digital Footprint Portal to protect personal data". SecurityBrief UK. April 11, 2024. Retrieved December 16, 2025.
  21. ^ "Malwarebytes launches Scam Guard to boost mobile security to users". Cybersecurity Insiders. Retrieved December 15, 2025.
  22. ^ "I've Tested Malwarebytes: Is It Good in 2025?". Cybernews. October 31, 2025.
  23. ^ "Malwarebytes Premium Review". Dealarious. February 10, 2025. Retrieved December 15, 2025.
  24. ^ "Malwarebytes Antivirus Review 2025". SafetyDetectives. March 20, 2025.
  25. ^ "Malwarebytes Review 2025". Cloudwards. January 15, 2025. Retrieved December 15, 2025.
  26. ^ Leyden, John. "Google ninjas go public with security holes in Malwarebytes antivirus". The Register. Retrieved February 6, 2016.
  27. ^ Kleczynski, Marcin (February 1, 2016). "Malwarebytes Anti-Malware vulnerability disclosure". Malwarebytes Labs.
  28. ^ "Malwarebytes Bug Bounty". Retrieved July 6, 2018.
  29. ^ a b Horowitz, Michael (November 3, 2009). "IObit accused of stealing from Malwarebytes". Computerworld.
  30. ^ a b Mills, Elinor (November 3, 2009). "Malwarebytes accuses rival of software theft". CNET. Retrieved February 23, 2022.
  31. ^ "Declaration from IObit". Archived from the original on January 17, 2010.
  32. ^ Constantin, Lucian (November 8, 2009). "Malwarebytes Accuses, IObit Plays Dead". Softpedia. Retrieved December 16, 2025.
  33. ^ Norman, George (November 5, 2009). "Malwarebytes Accuses IOBit of Stealing, IOBit Says It's Not its Fault". FindMySoft. Retrieved December 16, 2025.
edit