EasyMalwareBlocker - Host Intrusion Prevention System


EasyMalwareBlocker protects your computer in real-time from all kind of malware like viruses, spyware, bots, keyloggers, even rootkits, etc. It hardly slows down your computer and NO scans are needed!
It consists of two parts: A harddisc and Registry protection part and a firewall.

EasyMalwareBlocker (EMB) is Not just like any other AV Program: It's Different


EMB analyzes file extensions and does NOT do pattern recognizing and/or blacklisting like other AV programs.
That results in some unique features: - Real-time protection: Your computer can't get infected with any kind of malware anymore, especially when surfing the Internet and opening malicious email attachments. Infections by means of CD\DVD drives and USB memory sticks are also prevented. - Smart: EMB is able to recognize even the very latest malware which is not blacklisted yet (!) - Fast as lightning: As only file extensions have to be checked EMB works on slow (netbook) and old computers with no perceivable delays. - Spares resources: NO time-consuming and disk-wrecking scannings are necessary (!) - Wow: NO (hardly any) updates for EMB are needed! - No kidding: Likewise NO updates are needed for the Windows OS (!!!) At EMB most of the computers are un-updated SP2 versions (dated about 2004). - Economical: You don't have to renew licences every year. You test and buy EMB and use it forever! - Super Saver: You can use your current Windows Operating System (XP) for years to come! Before you read on you might want to see some screenshots.
NEW: Business Version

EasyMalwareBlocker is predestined for use in any kind of business too. Copying new programs from the Internet or from a USB memory stick can be prevented as well as downloading and/or watching movies and/or playing games.
Stealing classified data with a USB stick can easily be prevented (without glue(!)).

NEW: Netbook Version

EasyMalwareBlocker is very fast and it only takes up little resources. That makes it the preferred Security program for netbook computers. The program is essentially the same as the 'Home' version, but the maximum screen size has been reduced to fit Netbook screens. The screen must be 1024 x 600 or bigger.

NEW: EasyMalwareBlocker is Eventually really EASY to Setup and Use!

EasyMalwareBlocker now lives up to its expectations and is much easier to use than previous versions.
In the first run you just tick the programs you use - so no difficult to understand popups and (falsely) blocked file- and Registry operations anymore*.
*If EMB has been setup correctly and no malware is running...

Full Transparency

Unlike other computer security programs EMB offers features for advanced users too: You have full control over any program any time listed in the FRP and Firewall section. Adding and deleting programs and Registry keys in both of these panels is easily possible.

Note for computer experts: EMB's sophisticated firewall is able to - unlike others (notably the one from Microsoft) - distinguish between programs and modules that are loaded with it.

Comes with a Smart Uninstaller

You can uninstall any program which has been installed with EMB's Uninstaller, including any kind of malware like trojans.

Unique feature: Neither a reference file nor an uninstaller file is needed, EMB's Uninstaller creates its own Uninstaller File when a new program is being installed!
Note for computer experts: When the EMB Uninstaller is operating in Install Mode EMB's FS driver reports all file- and Registry operations which are translated to uninstall commands when the installation is completed.

EMB's Uninstaller ist the most transparent around: It gives you a detailed list of all file and Registry operations when installing a new application has been finished.
When an application has been uninstalled another detailed list (deleted, not found, etc,) can be shown.

Promotion: The EMB Uninstaller is offered as a FREE stand alone program!

Detecting Malware Directly by Monitoring its Behaviour (NOT by Pattern Analyzing)

EasyMalwareBlocker can sometimes locate malware in by its forbidden activities, a unique feature not available with any other Security Software.
Other security programs just focus on recognizing patterns of known malware. If they don't know them (yet) there is no way to show and/or block them.

In a recently conducted test a popular and wellknown Antivirus software was not able to identify malware (not a very smart one, probably written by a 'script kid') that was running on a test computer:
- It modified an importand file so that accessing the Internet with any versions of IE was no longer possible.
- It deleted many important keys in the Registry so that Safe Boots were no longer possible.
- It made entries in the Registry to bypass the Windows firewall and tried to access the Internet.
- It disabled Windows updates, etc.

The competing AV program did NOT report any of these malicious operations although it takes up more than 20 times of the resources of EMB (...) In stark contrast EMB made itself heard by many beeps and sounds due to attempts to write protected Registry areas and to replace a system file in an eternal loop.
This malware program was completely removed in no time without scanning by using EMB system tools.

Registry Protection

When using EMB not only your File System (Hard Disc) is being protected, the Registry is being protected too!
On the Diagnostic Panel the current and default state of some important Registry keys are shown at a glance.

Delete Protection

Malicious software won't be able to delete your personal files like documents (text), photos, music and/or movies.

The Installation and Setup of EasyMalwareBlocker is easy

Installing this version is as now simple as it can be, it only takes about 20 seconds (NO reboot is required). NO Microsoft Framework is required.
NEW: NO popups by the EMB Firewall (and NO unwanted blocked file- and Registry operations too) even if you did NOT have a reference file created!

Windows XP Updates are supported

Although it's recommended to turn Windows updates off as in most cases they are no longer needed when EMB's FRP is running in an appropriate mode you can download and install Windows updates.

EMB Autostart System Utility

EMB Autostart lists the most important programs, modules and drivers.

EMB Test Program

An Open Source (easy to understand VB6) test program which tests all the functions of the FRP and the most important ones of the Firewall is now available too! It makes the job of testing EMB for professional testers and for anyone else much easier.

 

Introduction to EasyMalwareBlocker Host Intrusion Prevention System

EasyMalwareBlocker belongs to a new generation of Host Intrusion Prevention Systems. It is an easy to use program with some new and unique features never seen before.

As its name implies it is a highly efficient malware blocker (what is malware ?), it automatically blocks any kind of malware like viruses, adware and spyware, trojans, keyloggers, backdoors, bots, worms, dialers, even rootkits, etc, from being (clandestinely) installed to your system while surfing the Internet (also called drive-by downloads) using any of the browsers Internet Explorer, Firefox or Opera.
It also protects you from malicious email attachments as potentially dangerous files will be blocked (read 'Help' on the 'File and Registry Protection' (FRP) panel first to properly setup the FRP) (Screenshot File System Monitor).

Some Internet Security programs - especially freeware - search your computer for a long time for malicious programs after these have been allowed to previously install themselves. Others work with file pattern recognizing which is never 100 % foolproof or they deal with difficult to maintain Reference Lists to block files.
Note: Unlike other browsers, including IE7 and IE8 which also offer (limited) protection against drive-by downloads as they are blacklist based, EasyMalwareBlocker internally works with monitoring file extensions and therefore also recogizes and blocks even the very latest malware and never needs any updates (!!!).

EasyMalwareBlocker provides real-time protection, therefore NO nerve-wrecking and time consuming scannings are needed.

EasyMalwareBlocker is fast: It adds no perceivable delays to file-, Registry and network operations including surfing the Internet - quite unlike most of other big name Internet Security Systems.

There are NO annoying reminder popups.

Firewall

Version 2.0: An Incoming and Outgoing Firewall is included. Unnecessarily listening ports are automatically blocked (Screenshot). Should any program try to send (personal) data over the Internet EasyMalwareBlocker safely blocks these requests if you don't allow them (Screenshot Application Control).

Version 3.4 is more transparent than version 2.0: All modules loaded with an application are shown.

On top of that there are useful System Check Utilities like Startup Programs (Screenshot), Compare Executable Files and more. New entries are listed separately, based on a Reference File, so that you can immediately see which programs were added (and modified or deleted) since you had EasyMalwareBlocker create the last Reference File.

The two major design goals were to offer maximum protection with minimal user intervention. Unlike in the Windows XP (and Vista too) environment you will never see unnecessary and nerve-wrecking popups like 'You have received a picture.bmp file. Would you like to open it?'

EasyMalwareBlocker comes in two different versions, one is for Home users and the other one is for Small Business users. Most of the features are exactly the same in both versions, they slightly differ eg in the predefined genres and downloading films and music files won't be possible by default in the Business Version.

In the 'HOME' Version (click here for detailed information) users can optionally install new programs, but for instance parents can set up EasyMalwareBlocker that installing new programs by their kids is not possible.

Another feature is Delete (all) Traces (Screenshot) left when surfing the Internet. In case 'Parental Control' is being used the same password has to be entered in order to get access to the 'Delete Traces' panel.
This feature is also available in the Business Version, but the correct password (eg set up by the supervisor) is always required to cleanup the System by EMB.

Included in Home Version 2.0 is a sophisticated Parental Control feature (Screenshot). It has 4 predefined genres and a White- and Blacklist section.
Other handy features include 'No computer access after (.. o'clock)', maximum computer and Internet times per day and 3 time frames where access to the Internet is allowed.
All these features are fully customizable. Needless to say that access to the administrative part can be protected by a password.

In the 'BUSINESS Version' Computer Administrators will certainly like the full protection EMB offers against installing any programs by their employees, among other features which differ from the Home version:

- By default the File System Monitor is set up that NO programs and other files like *.mp3 or *.mpg, *.avi, *.flv, *.mov, etc, can be downloaded by employees be it by the Internet (default) or optionally (by clicking a single button) by CD/DVDs/Floppy Diskettes or by using USB Flash Drives (memory sticks).

- If new programs have to be installed only the Computer Administrator with his password has access to the FRP Panel where the normal mode can be changed to an unprotective mode so that new programs can be installed.

- The Parental Control feature is called 'Supervisor Control'. It has 2 predefined genres rather than 4 as in Parental Control otherwise it has more or less the same features. (This feature will work at an unknown later date.)

- EasyMalwareBlocker also offers full protection against stealing (classified) company data by employees. Blocking any file operations on USB Memory Sticks and CD/DVD drives has already been mentioned.
More sophisticated attempts by uploading data over the Internet are being blocked too. (This feature will be available at an unknown later date in 2010.)

The Business Version is available for download now.

System Requirements

Both versions run on computers with single and multiple core CPUs with Microsoft Windows XP 32-bit operating system (this is the configuration that an estimated 2 out of 3 computer users are working on as of January 2009).
EMB also runs on computers with multiple OSs installed (multiboot systems).
EMB runs on older computers too, you don't need computers with high CPU clock frequencies or lots of resources (a machine with a 700 MHz single core CPU and 256 MB RAM is fine(!)).
Windows XP with Service Pack 2 is required (dated about 2004). Windows updates since then can be downloaded and installed voluntarily but they are not really necessary.

EMB only runs on Windows XP machines. In principle, it also runs on Vista and Windows 7 OSs (already tentatively tested on both of these OSs) which will be supported soon.

Es ist geplant, auch eine deutsche Version anzubieten. Einige Beschreibungen zum Programm gibt es jetzt schon.

As versions 3 do not support blocking of websites the old version 2 which does is still being offered for download. However, there is NO support for this version.

The main differences between version 2.0 and any versions 3 are:

- Version 2 needs Framework, a free 22 (or 65) MB component from Microsoft, versions 3 do NOT.
- Version 2 needs a reboot (2 reboots are required when a new version is being installed), 
    versions 3 do NOT require reboots after installing/uninstalling/updating.
- Version 2 can actively block websites, versions 3 show all non-Microsft modules that are loaded
    with every launched program which is effectively nearly the same.
- On some machines version 2 can block the whole Internet traffic by mistake, with version 3 that never happens.
- Version 2 can NOT show all non-Microsoft modules loaded with all programs and therefore
    can NOT give a warning that eg malware like a keylogger is running, versions 3 can.
- Version 2 supports the Parental Control feature, versions 3 do not (yet).
- versions 3 have some more handy features like a gauged Internet traffic speed indicator and system diagnostic tools.
- versions 3 are even faster than version 2.
- versions 3 are much more thoroughly tested than version 2.

Version 3.4 of EasyMalwareBlocker 'Home' is available for download now.

Version 3.7 of EasyMalwareBlocker 'Business' is available for download now.

Version 3.9 of EasyMalwareBlocker 'Netbook' is available for download now.

Version 2.0 of EasyMalwareBlocker 'Home' is available for download now.

Last updated: August 3rd, 2010