Jump to content

Malwarebytes

mbamswissarmy


6 replies to this topic

#1
gsgsgs

    New Member

  • Members
  • Pip
  • 1 posts
Windows Defender has requested I send information on 'mbamswissarmy', which I have never heard of. Searching online it appears to be part of a driver in system 32 signed to Malwarebytes. I do use malwarebytes anti-malware, has anyone else had this, is this genuinely part of the software or it is something I need to worry about?

#2
Tigger93

    Forum Deity

  • Moderators
  • PipPipPipPipPipPip
  • 1,648 posts
  • Gender:Male
It is part of Malwarebytes. :D

#3
melboy

    True Member

  • Experts
  • PipPipPipPip
  • 290 posts
For Windows defender to ignore this:

Open Windows Defender

click Tools > settings click options scroll down to Advanced Options and under Do not scan these files or locations click add and navigate to mbamswissarmy click OK. You should stop seeing the warning from WD.

The path typically (in XP) is C:\WINDOWS\system32\drivers\mbamswissarmy.sys

#4
JeanInMontana

    Delete this account!!

  • Honorary Members
  • PipPipPipPipPipPip
  • 3,867 posts
  • Interests:would love to see some honesty around this site.
It's not malware at all and maybe if you send it MS will get it's act together and stop pegging it. melboy has good advice too.

#5
zomalaja

    New Member

  • Members
  • Pip
  • 1 posts
I am getting this multiple times in my events:

Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume2\Windows\System32\drivers\mbamswissarmy.sys

Scandisk shows no errors on the drive and neither does the factory Diagnostic disk.

#6
Roadkil

    Regular Member

  • Honorary Members
  • PipPip
  • 58 posts
  • Gender:Male
  • Location:United States
mbamswissarmy.sys is a driver for MBAM just add it to the exceptions so it doesn't get scanned.
Roadkil
"Shut up brain or I'll stab you with a Q-tip"

#7
GT500

    Mostly Cantankerous

  • Trusted Advisors
  • PipPipPipPipPipPip
  • 5,524 posts
  • Gender:Male
  • Location:Fortville, IN

zomalaja said:

I am getting this multiple times in my events:

Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

In addition to adding exclusions for that file to your anti-virus software, you may want to turn off your anti-virus software, reinstall Malwarebytes' Anti-Malware, and then turn your anti-virus back on.

Quote

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us