encrypted

Tech Optimizer
April 13, 2026
Claude, an AI tool developed by Anthropic, receives nearly 290 million web visits monthly and has become a target for cybercriminals. A fake website has been found that impersonates Claude, distributing a trojanized installer named Claude-Pro-windows-x64.zip. This installer, while appearing legitimate, deploys PlugX malware, granting attackers remote access to users' systems. The fraudulent site mimics the official download page and uses passive DNS records linked to commercial bulk-email platforms, indicating active maintenance by the operators. The ZIP file contains an MSI installer that incorrectly spells "Claude" as "Cluade" and creates a desktop shortcut that launches a VBScript dropper. This script runs the legitimate claude.exe while executing malicious activities in the background, including copying files to the Windows Startup folder to ensure persistence after reboot. The attack utilizes a DLL sideloading technique recognized by MITRE as T1574.002, where a legitimate G DATA antivirus updater is exploited with a malicious DLL. Within 22 seconds of execution, the malware establishes a connection to an IP address associated with Alibaba Cloud, indicating control over the compromised system. The dropper script also employs anti-forensic measures to delete itself and the VBScript after deployment. Indicators of compromise include the filenames Claude-Pro-windows-x64.zip, NOVUpdate.exe, avk.dll, and NOVUpdate.exe.dat, along with the network indicator 8.217.190.58:443 (TCP) as the command and control destination. Users are advised to download Claude only from the official site and to remain vigilant against potential compromises.
AppWizard
April 11, 2026
XChat is now available for pre-order on the App Store and will be officially released on April 17. The app is designed for users of the X platform and features end-to-end encryption, the ability to edit and delete messages, block screenshots, and enable disappearing messages. It supports group chats of up to 481 members and is promised to be ad-free without user tracking. Users can pre-order XChat for iPhones and iPads, ensuring automatic download upon release.
AppWizard
April 9, 2026
A new application called the GeminiMan Wellness Companion has been developed for Galaxy Watch users by Dante63, who previously created a patched version of the Samsung Health Monitor. The app allows users to record electrocardiogram (ECG) data from the Galaxy Watch, providing detailed reports and AI-driven analysis through a mobile app. It can track heart rhythm and rate, flagging abnormal rhythms, which the Samsung Health Monitor does not. Users can personalize their measurements with notes and create multiple profiles for different users. The app ensures data security through encryption and offers export options for ECG reports in CSV or PDF formats. Future updates will include blood pressure recording and additional health metrics like blood oxygen levels and sleep patterns. The development roadmap is available on the GeminiMan Wellness Companion GitHub page.
Winsage
April 6, 2026
A newly discovered Windows malware called ResokerRAT uses Telegram’s Bot API for its command-and-control operations, allowing it to monitor and manipulate infected systems without a conventional server. It obscures its communications by integrating with legitimate Telegram traffic, complicating detection. Upon execution, it creates a mutex to ensure only one instance runs and checks for debuggers to avoid analysis. It attempts to relaunch with elevated privileges and logs failures to its operator. ResokerRAT terminates known monitoring tools and installs a global keyboard hook to obstruct defensive key combinations. It operates through text-based commands sent via Telegram, allowing it to check processes, take screenshots, and modify system settings to evade detection. Persistence is achieved by adding itself to startup and altering UAC settings. The malware retrieves additional payloads from specified URLs and uses URL-encoded data for communication. Researchers have confirmed its Telegram traffic, and its behavior aligns with various MITRE ATT&CK techniques. Security teams are advised to monitor for unusual Telegram traffic and scrutinize registry keys related to startup and UAC.
Tech Optimizer
April 4, 2026
Windows 11 provides a more secure environment than previous versions, but recovery remains a concern for users. Built-in protections are limited against threats like phishing and ransomware. The need for antivirus solutions has evolved to include comprehensive protection and recovery options. Basic threat prevention is often insufficient for home users and remote workers, who risk losing important files. Microsoft Defender offers a solid foundation, but products like Acronis True Image combine anti-malware capabilities with backup and recovery features. Antivirus software is essential for Windows 11 users, protecting against various malicious software. Modern antivirus programs offer real-time protection, web protection, and identity theft protection. Users must consider free versus paid solutions, as premium options typically provide advanced features. Top antivirus picks for Windows 11 in 2026 include Acronis True Image, Bitdefender Total Security, McAfee Total Protection, Norton 360 Deluxe, and Microsoft Defender Antivirus. Acronis True Image stands out for its dual functionality of prevention and recovery, utilizing AI-driven analysis to monitor unauthorized changes. Backup-focused alternatives like EaseUS Todo Backup Home and Macrium Reflect Home specialize in recovery but lack comprehensive antivirus protection. The choice between paid and free antivirus depends on whether Microsoft Defender meets users' needs. Paid suites generally offer deeper protection and advanced features. The best antivirus should provide robust protection while minimizing system impact, tailored to users' specific needs for prevention or recovery.
Search