Malwarebytes
ArchivedThe Malwarebytes application normalizes Malwarebytes events and enables you to analyze the data using pre-set dashboard views. You can further customize the dashboard and searches to perform in-depth analysis.
Release Details
Package Details
- Dashboard Package
- LP_Malwarebytes
- Compiled Normalizer
- MalwarebytesCEFCompiledNormalizer
Enhancement
A minor update has been done in the application’s normalizer for better signature handling.
Installation
Follow these steps to install the Malwarebytes v5.0.1 application:
- Download the Malwarebytes package from the Download section above.
- Add Malwarebytes as the required device in LogPoint.
- Create a collection policy with the Syslog collector and appropriate processing policy.
- Assign the policy to the device.
- Add the dashboard.
Past Release
For LogPoint v6.0.0 to v6.6.6 ▾
Bug Fix
From now on, the application's compiled normalizer correctly calculates the log_ts for the timezones behind UTC.
Log Format
Expected Log Format
CSV
Log Sample
log_ts=06/07/2018 20:23:20,norm_id=Malwarebytes,severity=CRITICAL,status=Completed,host=mlbytesxxx,user=Bob,event_type=Scan,event_source=TSTxxxxx
To export data to LogPoint, use syslog collector on port 514 on the LogPoint server.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.