A new Windows malware family is reported to spread through USB devices and use Tor, while altering wallet addresses to steal cryptocurrency.
The malware’s use of Tor and a local SOCKS5 proxy suggests a design built for both wallet theft and quieter operator tasking, a combination that complicates endpoint defense.