Featured content

Thread 'Anyone else having their LG TV attempting to reach weird domains?'
My Asus TrendMicro AI blocks these on a router level. Yes router is pointing to nextdns just in case.
https://openai.com/index/fighting-nyt-user-privacy-invasion/
Privacy, that quaint myth we were once taught to revere, is no more. It wasn’t assassinated in the dark—it was euthanized in broad daylight. We clicked “I agree” like mourners signing the death certificate of our digital soul. Now, instead of protecting ourselves, we reveal our secrets to the algorithms—like confessions in a church with no priest, only the Terms of Service. — Where were you last night? — Google already has the evidence. — What’s on your mind? — Meta called it. — And your...
https://www.neowin.net/news/windows-11-kb5068861-kb5067112-november-2025-patch-tuesday-out/ https://support.microsoft.com/en-us/topic/november-11-2025-kb5068861-os-builds-26200-7171-and-26100-7171-2e0512e4-3ad4-4da6-958c-a468a1af949e
Thread 'Unfamiliar security warning by Google on Edge'
Tried to visit this website (egydead.skin) an hour ago, I have got this warning on Edge: It never has a similar one before. Trying again few minutes ago, the website loads normally; checked its certificate, it is valid: Is this a true warning by Google or some sort of scam?
It's November 11, 2025, and for Windows home users ready to level up from free AV, paid suites deliver powerhouse extras like unlimited VPNs, identity monitoring, ransomware rollback, and parental controls – all while nailing 99%+ threat detection amid AI-phishing surges (442% per IRONSCALES Q3 2025) and ransomware costs at $1.5M avg recovery (Sophos 2025). But at $30-60/year, which one's your sweet spot? We've crunched the freshest lab data from AV-Test (Aug 2025), AV-Comparatives (Sept...
It's November 11, 2025, and for Windows home users on a budget, free AV is more crucial than ever with AI-phishing up 442% (IRONSCALES Q3 2025) and ransomware recovery costs averaging $1.5M (Sophos 2025). Microsoft Defender is the silent default, but third-party free tools bring web shields, extras, or on-demand cleanup. Note: True "antivirus" means real-time protection; on-demand scanners like Malwarebytes, TotalAV Free, or AdwCleaner are great boosters but not full AVs – pair them with...
I would love to download just the apk to upload it to VirusTotal but can't see a straightforward way to do that Anyway I want to use the ntfy app for my bot. ntfy - PUT/POST to your phone - Apps on Google Play If I run the URL via virustotal, it's all clean VirusTotal but how to be 100% sure? I doN't wanna end up with a banking trojan
Thread 'QUIC protocol and ECH BrowserLeaks Test'
It is interesting to note that Browserleaks.com has implemented the QUIC + ECH test: QUIC Client Test - QUIC+HTTP/3 Fingerprinting Please also note that not all websites use QUIC, even if your browser has enabled QUIC by default. MT uses QUIC: If you do not want your browser to use QUIC, you must disable it.
Read the full Story: https://www.bleepingcomputer.com/news/microsoft/how-to-use-the-new-windows-11-start-menu-now-rolling-out/
Good morning y'all, hope to find you well. I'm curious wether MalwareTips' users use any kind of default-deny approach in their systems. This includes an anti-executable like CyberLock, an Application Control module like Kaspersky's, a hardener like Hard_Configurator, any SRP software, or even your own implemented policies. If you do, what do you use? If you don't, why don't you think it's necessary? Cheers :)
Administrator protection If possible, please provide an explanation. Thank you. P.S. Multiple votes are possible for PCs other than the one you normally use.
Thread 'What is the longest duration you have observed for a vendor to ultimately verdict a False Negative as malware?'
Last year, it took Avast more than 3 months to finally detect a false negative fake 360, which had been VT 30+ or maybe more for a long time, as malware. This time we talk about MD. Although not been that long until now. It has been a few weeks since I submitted the following false negative fake APP to Microsoft, and I resubmitted it again this week, but MD just missed it. Is it common, and does it happen often to all vendors? The sample: VirusTotal Anyrun report: Analysis...
Thread 'Missed script malware by signature analysis'
Someone has just posted got ransomware after running script command on some YT video claimed to download a game. Visted the video page, copied, the command, saved as cmd file, uploaded to VT,HA, and K online scanner. VT: VirusTotal HA: Free Automated Malware Analysis Service - powered by Falcon Sandbox K: Kaspersky Threat Intelligence Portal NB: The malware disabled MD.
Hey MalwareTips community, In 2025, with cyber threats like zero-days, ransomware, and AI-powered attacks on the rise, Host-based Intrusion Prevention Systems (HIPS) are still a thing in many antivirus suites for Windows. HIPS monitors running processes, files, and registry keys using behavioral analysis to block suspicious activity in real-time, going beyond signature-based detection. Tools like ESET's HIPS (updated as of June 2025) protect against malware trying to tamper with your...
Hey MalwareTips community, As Windows integrates AI deeper with Copilot in 2025, it's a hot topic for home users juggling productivity and security. Microsoft touts it as a smart assistant for tasks like summarizing docs or generating ideas, but concerns linger over data privacy and access. For instance, Concentric AI warns of over-permissioning risks where Copilot could access unintended personal data on your PC. Microsoft's own docs highlight built-in protections like blocking harmful...
Hey MalwareTips community, Biometrics like fingerprints, facial recognition, and iris scans are touted as the next big thing in cybersecurity for 2025, promising passwordless convenience amid rising threats. But with AI deepfakes and spoofing on the rise, are they truly secure? Recent reports show mixed views: SentinelOne highlights biometrics reducing reliance on credentials via risk-based auth, while Splashtop emphasizes biometric encryption for enhanced security using unique traits to...
https://www.neowin.net/news/windows-11-26h1-is-reportedly-coming-early-next-year-for-certain-devices/
Thread 'Problem with sandbox'
Hey everyone, I’m seeing a weird one: when I open a link from eM Client into Windows Sandbox, the Sandbox spins up and Edge launches… but all I get is a permanent white square. The link never loads. eM Client also throws a permissions warning on the first try. If I start the Sandbox with a .wsb that disables the virtual GPU, Edge works like normal. This tiny config does the trick: Is there a way to make Sandbox always start with vGPU disabled (some “default profile” or policy) so I don’t...