System Information

Winsage
March 1, 2026
Microsoft has released enhancements to Windows 11 in build 26300.7877, including: - Modern content menu improvements, showing application icons for specific file types when right-clicked. - Updates to File Explorer with dark mode improvements for the Folder Options dialog. - Changes to the Settings app for better clarity and usability. - A redesigned "About" settings page focusing on key hardware specifications. - Introduction of the Cross-Device Resume feature, allowing users to resume applications from Android devices on Windows 11. - New customization options for the Narrator tool, enabling users to select which properties are read aloud. - Windows Hello now supports external biometric fingerprint readers for enhanced security. - Voice Typing updates allowing users to set a wait time before executing voice commands. - Redesigned SCOOBE page for a streamlined setup process. - Expansion of the AI agent in the Settings app to support additional languages. - Quick Machine Recovery feature enabled by default on Windows 11 Pro editions. - Camera support for pan and tilt settings accessible from device properties. - A new network speed test feature available from the Taskbar. - Improvements to the Widgets dashboard with a new settings page. Additionally, changes from build 28020.1619 are related to version 26H1, designed for new ARM64 hardware expected in 2026, and the Canary Channel has been divided into two paths for different versions.
Tech Optimizer
February 16, 2026
OysterLoader, a sophisticated malware loader also known as Broomstick and CleanUp, has emerged as a significant threat since mid-2024. It is a multi-stage downloader linked to ransomware attacks and data theft, particularly associated with the Rhysida ransomware group. Written in C++, it infiltrates systems through malicious websites that impersonate legitimate software download platforms, tricking victims into executing a signed Microsoft Installer (MSI) that launches the malware. OysterLoader employs a four-stage infection chain designed to evade detection. The first stage uses a packer named TextShell to load hidden code into memory, creating an illusion of legitimacy through harmless Windows API calls. The second stage decompresses a concealed payload using a modified LZMA algorithm. The third stage functions as a downloader and environment tester, establishing contact with its command-and-control (C2) server via HTTPS. In the final stage, OysterLoader installs a malicious DLL that executes every 13 minutes through the Windows Task Scheduler, communicating with multiple hardcoded servers and transmitting critical system information. The malware uses customized Base64 encoding and variable communication endpoints to evade detection. Its primary objective is to ensure persistence and facilitate the delivery of additional payloads, including ransomware and credential stealers. Security analysts predict that OysterLoader will remain a formidable threat through 2026, particularly for organizations downloading administrative tools from unverified sources. Indicators of Compromise (IOC): - Mutex: h6p#dx!&fse?%AS! - Task: COPYING3 (rundll32 DllRegisterServer) - C2 Domain: grandideapay[.]com/api/v2/facade - RC4 Key: vpjNm4FDCr82AtUfhe39EG5JLwuZszKPyTcXWVMHYnRgBkSQqxzBfb6m75HZV3UyRY8vPxDna4WC2KMAgJjQqukrFdELXeGNSws9SBFXnYJ6ExMyu97KCebD5mTwaUj42NPAvHdkGhVtczWgfrZ3sLyRZg4HuX97AnQtK8xvpLU2CWDhVq5PEfjTNz36wdFasecBrkGSDApf83d6NMyaJCsvcRBq9ZYKthjuw5S27EVzWrPHgkmUxFL4bQSgMa4F - IP: 85.239.53.66
Winsage
February 11, 2026
Microsoft discontinued Windows Phone in 2017, a decision regretted by CEO Satya Nadella. Nex Computer is now taking pre-orders for the NexPhone, which aims to run Android, Linux, and Windows 11. The device features a custom Mobile UI designed for touch interactions, reminiscent of Windows Phone. When connected to an external display, it offers full Windows 11 capabilities but lacks cellular connectivity in Windows mode. The NexPhone is not intended to replace primary smartphones but serves as a secondary option with mid-range performance, powered by Qualcomm's DragonWing QCM6490 chip, 12GB of RAM, and 512GB of storage. It operates on Windows for Arm, which may present compatibility issues. While in Windows mode, cellular calling and SMS functions are unavailable, requiring users to switch to Android for those features. The device has a rugged design with military-grade build quality, a 120 Hz 6.58-inch display, a 64 MP main camera, and a 5,000 mAh battery, priced at 9.
Winsage
February 10, 2026
Open-source software provides flexibility and control for users, particularly on Windows. Notable applications include: 1. LibreOffice: A comprehensive office suite with a customizable interface, supports MS Office formats, and is free to download. 2. Flow Launcher: A file search and application launcher that enhances efficiency, customizable, and free to use. 3. Duplicati: A zero-trust backup solution with encryption and scheduling features, free for personal use. 4. Nextcloud: An open-source cloud service for file storage and collaboration, free to install on Windows. 5. Franz: Consolidates multiple messaging platforms into one interface, free to install and use. 6. YAZB: Allows users to create custom top bars for system information and quick access controls, enhancing the user experience. 7. File Converter: Simplifies file conversion and compression within the Windows file manager, available for free. 8. Bitwarden: A password management tool with a free version and additional paid features for collaboration. 9. AutoHotKey: Automates tasks on Windows through scripting, free to install and use. 10. Ollama: An open-source AI interaction tool that prioritizes privacy, free to use on Windows.
Winsage
January 31, 2026
The PowerToys team at Microsoft is developing a new feature that introduces a menu bar for the Windows desktop, providing glanceable system information and music controls. This dock can be pinned to any edge of the screen and allows users to pin existing PowerToys extensions without code modifications. It can be enabled from Command Palette settings and aims to enhance quick awareness of system metrics like RAM usage and CPU temperatures. User feedback is encouraged to shape its development, and developers can test this feature in a dedicated branch, although it is not yet part of the main PowerToys release.
Winsage
January 31, 2026
A new menu bar concept is being considered for Windows 11 users, which could serve as an optional dock for the Command Palette within Microsoft's PowerToys suite. This feature aims to provide quick access to favorite tools and essential system-monitoring information. Windows 11 has faced criticism for not allowing the taskbar to be repositioned to the top of the screen, and the proposed top menu bar could offer a workaround. The Command Palette is envisioned as a future replacement for the Run utility, allowing users to launch applications and access utilities seamlessly. The dock could display information such as CPU usage and internet speeds, and users would have customization options for its appearance. While some users are concerned about losing desktop space, PowerToys allows users to choose whether to enable the Command Palette dock. There are suggestions that this dock could evolve into a full taskbar replacement, incorporating Windows 11 taskbar elements as widgets. PowerToys is designed as an add-on rather than a replacement for core Windows functionality. Microsoft is focusing on enhancing Windows 11, with hopes for user-requested features like taskbar repositioning.
Winsage
January 19, 2026
Some users of Windows 11 have experienced a problem where their PCs reboot instead of shutting down after the Patch Tuesday security update KB5073455. This issue primarily affects devices with Secure Launch on Windows 11 version 23H2. Microsoft has confirmed this behavior, which disrupts the usual power-off sequence and can drain battery life for laptops and complicate remote management processes. An out-of-band update, KB5077797, has been released to restore normal shutdown and hibernation functionalities for affected systems. Users can check for this update in Windows Update or download it from the Microsoft Update Catalog. To determine if they are affected, users should look for immediate restarts when selecting Shut Down or Hibernate and check if Secure Launch is enabled in System Information.
Tech Optimizer
January 19, 2026
PDFSIDER is a sophisticated backdoor malware that bypasses modern endpoint detection and response systems. It is distributed through targeted spear-phishing campaigns that exploit vulnerabilities in legitimate PDF software. The malware is delivered via spear-phishing emails containing ZIP archives with a trojanized executable disguised as the PDF24 App. When executed, it uses DLL side-loading to load a malicious DLL (cryptbase.dll) alongside the legitimate PDF24.exe, allowing attackers to execute code without detection. PDFSIDER establishes encrypted command-and-control channels using the Botan 3.0.0 cryptographic library with AES-256 in GCM mode and operates mainly in memory to minimize detectable artifacts. It collects system information and executes commands through hidden cmd.exe processes. The malware employs advanced techniques to evade detection in sandbox and virtual machine environments, including checks for available RAM and debugger presence. Indicators of compromise include the malicious file cryptbase.dll and various clean files associated with the legitimate PDF24 application. Organizations are advised to enforce strict controls on executable files, provide user awareness training, and monitor DNS queries and encrypted traffic to detect PDFSIDER communications. The malware's behavior aligns with tactics used in state-sponsored espionage rather than financially motivated cybercrime.
Winsage
December 25, 2025
Open-source software provides flexibility and control for users. Notable applications for Windows include: 1. LibreOffice: A free office suite with tools similar to MS Office, offering a modern or classic interface and local data privacy. 2. Flow Launcher: A rapid file search and app launcher that is customizable and visually appealing, available for free. 3. Duplicati: A backup solution that allows data backup to various destinations, including cloud services, with features like scheduling and remote management, free for personal use. 4. Nextcloud: An open-source cloud service for file storage and collaboration, installable on Windows at no cost. 5. Franz: An application that consolidates multiple messaging services into one interface, free to install and use. 6. YAZB: A customizable top bar for Windows that displays system information and provides quick access to controls, enhancing desktop aesthetics and functionality. 7. File Converter: A tool for converting and compressing files directly from the Windows file manager, free to use. 8. Bitwarden: An open-source password manager with essential features, free to use with a premium option for advanced features. 9. AutoHotKey: A tool for automating tasks through scripting, available for free installation. 10. Ollama: An open-source AI solution with a user-friendly interface, free to install and use on Windows.
Search