What's new

Trivia Malwarebytes Anti-Malware Corporate & v2.x [game over]

Malwarebytes Anti-Malware Corporate & v2.x [game over EOL]

Everyone using MB Corporate and versions 2.x will have seen this window when trying to update the virus database.

1653827683491.png


1653827691467.png


For that reason I began to investigate to see if it could be solved in some way with reverse engineering, but my conclusion was that it is impossible for the reasons that I will comment on in this thread.

Based on some research I've done, I believe it's no longer possible to get updates working on this versions of MB.
This is because the company decided to discontinue (EOL) versions equal to or earlier than 2.x

1653827708797.png


1653827719455.png


First of all, to be that the developers have taken offline 2 DNS records in versions equal to or earlier than 2.x.

edge.data-cdn.mbamupdates.com

llnw.data-cdn.mbamupdates.com

2277 9.917901 192.168.1.5 192.168.1.149 DNS 170 Standard query response 0xb2a5 No such name A edge.data-cdn.mbamupdates.com SOA ns-957.awsdns-55.net

2394 10.028120 192.168.1.5 192.168.1.149 DNS 170 Standard query response 0xfbf3 No such name A llnw.data-cdn.mbamupdates.com SOA ns-957.awsdns-55.net

On the other hand, the virus signature database in the Corporate version (v.1.8...) uses a .REF file that is no longer used for updates to new versions, in which I saw they use files .MBDB

Previous versions:
1653827844060.png


New versions:
1653827866366.png


From what I have read in specialized forums, the most modern versions, in addition to being more efficient, are more difficult to ***** than the previous ones.

Official source: forums.malwarebytes(dot)com/topic/286840-mbam-221-no-definitions-updates-after-may-19/


originally published @ teamos

 

Attachments

Similar threads

Back
Top