uninstallation

Tech Optimizer
February 22, 2026
Security researchers have identified a new Android Trojan named PromptSpy that uses generative AI technology to enhance its persistence on compromised devices. Discovered by ESET researchers, PromptSpy leverages Google's Gemini AI model to analyze infected device screens and generate tailored instructions for embedding itself within recent apps lists. It includes a Virtual Network Computing (VNC) module that allows attackers full remote control over the device, enabling activities such as viewing the screen, performing actions remotely, capturing lock screen data, blocking uninstallation attempts, gathering device information, taking screenshots, and recording screen activity as video. The malware communicates with command-and-control servers using AES encryption and exploits Android Accessibility Services, making it difficult to remove. PromptSpy is distributed through a dedicated website and is financially motivated, adapting to various Android interfaces and operating system versions. ESET's analysis indicates that the malware is regionally targeted, with a focus on Argentina, and may have been developed in a Chinese-speaking environment. The same threat actor is believed to be responsible for both VNCSpy and PromptSpy.
AppWizard
February 19, 2026
Cybersecurity researchers have identified a new Android malware named PromptSpy that utilizes Google's Gemini AI chatbot to enhance its capabilities and persistence on infected devices. PromptSpy can capture lockscreen data, obstruct uninstallation, gather device information, take screenshots, and record screen activity. It integrates Gemini to analyze the current screen and provide instructions to keep the malware active in the recent apps list. The malware uses a hard-coded AI model and communicates with a command-and-control server via the VNC protocol, allowing remote access to the victim's device. It is financially motivated, targeting users in Argentina, and was developed in a Chinese-speaking environment. PromptSpy is distributed through a dedicated website and is considered an advanced version of a previously unidentified malware called VNCSpy.
Winsage
February 17, 2026
Microsoft's Patch Tuesday update, KB5077181, released on February 10, 2026, has caused significant boot failures for users of Windows 11 versions 24H2 (OS build 26200.7840) and 25H2 (OS build 26100.7840), resulting in endless restart loops. Users are reporting over 15 reboot cycles, preventing access to their desktops. Issues include System Event Notification Service (SENS) errors and DHCP problems affecting internet connectivity. Installation errors with codes 0x800f0983 and 0x800f0991 indicate potential hardware, driver, or servicing stack incompatibilities. The update was intended to address 58 vulnerabilities, including six zero-days, but the boot loop issue has overshadowed these enhancements. CVE IDs and their CVSS scores related to the vulnerabilities addressed include: - CVE-2026-21510: 7.5 - CVE-2026-21519: 7.8 - CVE-2026-21533: 8.8 - CVE-2026-20841: 7.1 As of February 15, 2026, there is no "known issues" entry in Microsoft's release notes despite user reports. Users can uninstall the update through the Control Panel if their systems are accessible, or use the Windows Recovery Environment to execute commands for uninstallation if their systems are unbootable.
Winsage
February 16, 2026
Trust in Windows 11 has declined significantly after the January 2026 update, which disrupted key applications like Notepad and Xbox, and caused users to be unable to shut down their PCs. The update also negatively impacted gaming performance on NVIDIA GPUs, leading to widespread user dissatisfaction. Microsoft has recommended that users uninstall the January 2026 update. To uninstall Windows updates on Windows 11, users can follow these steps: 1. Open the Settings app and select "Windows Update." 2. Click on "Update history" and note the KBxxxxx number of the update to uninstall. 3. Click on "Uninstall updates," find the KBxxx number, and click the Uninstall button. 4. Confirm the uninstallation and restart if prompted. If uninstallation fails, users may need to enter Safe Mode by holding the Shift key while restarting, selecting Troubleshoot, then Advanced Options, and Startup Settings to access Safe Mode. Once in Safe Mode, users can repeat the uninstallation steps.
Winsage
January 26, 2026
In early 2023, Microsoft announced the end of official support for Windows 10 by 2025, with regular updates and security patches ceasing on October 14, 2025. Users have options such as upgrading to Windows 11, switching to Linux, or subscribing to Microsoft's Extended Security Updates (ESU), which will end in October 2026. 0patch is a third-party service that provides micropatches for Windows 10, addressing specific vulnerabilities identified by security researchers. The service offers a free tier for zero-day patches and a paid Pro plan that includes legacy patches and post-End of Service updates. The free version should be used alongside Microsoft's ESU for comprehensive protection. 0patch plans to support Windows 10 until at least October 2030. The Pro plan is priced at approximately €35 annually, with a 30-day trial available. Users have reported some performance issues after installing patches, but the updates are lightweight and do not significantly affect system performance. Uninstallation is straightforward, and users can opt out at any time.
Winsage
January 19, 2026
IT administrators can now uninstall the Microsoft Copilot app from managed Windows devices under specific conditions. This option is available only for devices running an Insider Preview of Windows 11 and is designed for Enterprise, Pro, and Education editions. The Group Policy named RemoveMicrosoftCopilotApp allows this uninstallation, but it requires that the Microsoft 365 Copilot and the Microsoft Copilot app are installed, the app must not have been user-installed, and it must remain unopened for 28 days. The policy aims to prevent accidental removals and ensure organizations consider the app's deprecation thoughtfully. For unmanaged PCs, users can hide the Copilot button and disable it in Startup Apps to minimize its presence, but a straightforward uninstallation method is not yet available.
Search