Friday 11 September 2026 12:30:20 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContact
EnglishItaliano

Malware & Botnets / Asia


Android Ransomware Turns Phones Into Silent Fraud Tools

Published: 11 September 2026 10:39Category: Malware & BotnetsGeo: Asia / IndonesiaAuthor: SIGNALMONK

Mantax OTAX is described as a mixed Android threat that combines file encryption, spyware, credential theft, and remote control in one package.

AI Tools Meet Zero-Click Messaging Risk in a WeChat Worm Demo

Published: 09 September 2026 02:04Category: Malware & BotnetsGeo: Asia / ChinaAuthor: IRONQUERY

A Palo Alto-based security team has put a fast-moving question on the table: when AI helps build exploit code in days, how much warning time do defenders really get?

When a Ring Becomes a Breach: The WeChat Call Path That Could Move Like Malware

Published: 08 September 2026 16:54Category: Malware & BotnetsGeo: Asia / ChinaAuthor: IRONQUERY

A demonstrated zero-click chain on iPhone and Android shows how an incoming call can become an account-takeover path when trust is baked into the wrong part of the app.

The Proxy Trap: How a Hidden Linux Implant Turned HAProxy Into a Traffic Filter

Published: 04 September 2026 18:09Category: Malware & BotnetsGeo: Asia / South KoreaAuthor: SIGNALMONK

A trojanized edge proxy can sit in the middle of web sessions, making the compromise of one server matter far beyond that single machine.

Fake Download Pages Became the Door: A Counterfeit Installer Campaign Eyes China’s Workstations

Published: 02 September 2026 20:11Category: Malware & BotnetsGeo: Asia / ChinaAuthor: IRONQUERY

A brand-cloning lure built around familiar software names shows how one mistaken download can turn a routine install into an initial access problem.

When Trust Becomes the Payload: ValleyRAT’s Quiet Infiltration of a Signed Utility

Published: 31 August 2026 16:31Category: Malware & BotnetsGeo: Asia / ChinaAuthor: IRONQUERY

A Windows backdoor linked to Silver Fox was disguised inside a signed wallpaper app, turning software trust and antivirus exclusions into part of the intrusion path.

Tax Lures, Modular Malware, and the Quiet Return of Packaged Access

Published: 29 August 2026 10:05Category: Malware & BotnetsGeo: Asia / ChinaAuthor: SIGNALMONK

A phishing chain tied to the cluster tracked as TA4922 shows how tax-themed email can be turned into a delivery path for a modular RAT, staged loaders, and follow-on access tooling.

Tax Notices, Telegram Sales, and a Modular RAT: The Quiet Machinery Behind a Phishing Run

Published: 29 August 2026 08:04Category: Malware & BotnetsGeo: Asia / ChinaAuthor: SIGNALMONK

A tax-themed lure linked to TA4922 shows how localized phishing and commodity malware can be fused into a repeatable access playbook without proving full compromise.

The Resume Trap That Can Turn Research Inboxes Into Malware Runways

Published: 28 August 2026 10:25Category: Malware & BotnetsGeo: Asia / ChinaAuthor: SIGNALMONK

A credential-flavored archive can look ordinary for one second and hostile the next, especially when it hides a disguised executable linked to the SNOWLIGHT and VShell malware stack.

Spark RAT in Cambodia: When a Familiar Trap Meets a Weakened Defense Layer

Published: 27 August 2026 14:23Category: Malware & BotnetsGeo: Asia / CambodiaAuthor: SIGNALMONK

A malware campaign aimed at Cambodian users and organizations combines social engineering with a vulnerable driver to make endpoint protection harder to trust.

Car Screens, Hidden Relays: Why Android Head Units Have Become a Botnet Prize

Published: 24 August 2026 14:13Category: Malware & BotnetsGeo: Asia / ChinaAuthor: NEXUSGUARDIAN

A malware campaign aimed at Android-based automotive head units shows how a trusted update path can turn a dashboard computer into a proxy node, even when the driving system itself is not the target.

When a CAPTCHA Becomes a Malware Loader: The macOS ClickFix Playbook Gets Harder to Kill

Published: 24 August 2026 10:20Category: Malware & BotnetsGeo: Asia / IndiaAuthor: NEXUSGUARDIAN

A macOS campaign tied to ClickFix-style lures shows how attackers can combine social engineering, blockchain-hosted infrastructure, and mixed payloads to make cleanup and disruption more difficult.

Fake Wallet Extensions Turn the Browser Into a Secret-Taking Machine

Published: 20 August 2026 10:37Category: Malware & BotnetsGeo: Asia / SingaporeAuthor: NEXUSGUARDIAN

A cluster of lookalike Firefox add-ons targeting Rabby users shows how browser-wallet security can fail before encryption even enters the picture.

The Forgotten Driver Page That Turned Into a Trust Problem

Published: 18 August 2026 14:40Category: Malware & BotnetsGeo: Asia / ChinaAuthor: NEXUSGUARDIAN

A stale support download, a malicious flag, and a domain with an old Asruex connection show how retired web assets can become risky long after a portal migration.

Old Support Link, New Malware Fear: The Hidden Risk of Driver Archives

Published: 18 August 2026 14:14Category: Malware & BotnetsGeo: Asia / ChinaAuthor: NEXUSGUARDIAN

A malware-flagged Realtek LAN driver on a legacy mini PC support page shows how stale downloads can turn ordinary maintenance into a supply-chain question.

When a Backdoor Learns to Hide in the Kernel

Published: 17 August 2026 12:17Category: Malware & BotnetsGeo: Asia / ChinaAuthor: IRONQUERY

A Windows implant reportedly gained a kernel-mode rootkit layer, a move that can make malware and command traffic harder to see from inside the host itself.

Windows at Kernel Depth: The Stealth Trick That Can Hide a Backdoor’s Breath

Published: 17 August 2026 08:06Category: Malware & BotnetsGeo: Asia / ChinaAuthor: NEXUSGUARDIAN

A reported CoolClient update moves concealment into the Windows kernel, where a rootkit can make C2-related network activity harder to trust from the host itself.

When Malware Moves Onto the Chain, the Old Takedown Playbook Starts to Fray

Published: 14 August 2026 11:01Category: Malware & BotnetsGeo: Asia / IndiaAuthor: SIGNALMONK

Aeternum is reported to use Polygon smart contracts as its control channel, a design that shifts botnet coordination away from disposable servers and toward infrastructure that is harder to remove.

Telecom Branding, Hidden Installers, and a Quiet Remote-Control Layer

Published: 14 August 2026 10:45Category: Malware & BotnetsGeo: Asia / AfghanistanAuthor: NEXUSGUARDIAN

A sector-themed ZIP, a Windows installer, and a SuperShell control layer show how trusted packaging can be bent into an intrusion path without relying on a flashy exploit.

Suspected APT36 Cluster Raises the Possibility of LLM-Assisted Malware Craft

Published: 14 August 2026 10:24Category: Malware & BotnetsGeo: Asia / PakistanAuthor: SIGNALMONK

A newly observed set of custom malware families may show signs of AI-assisted development, while attribution to APT36 remains moderate-confidence rather than definitive.