TrendMicro have detected a new variant of the BIFROSE malware leveraging on the Tor network in a targeted attack. TrendMicro detected as BKDR_BIFROSE.ZTBG-A has the hash 5e2844b20715d0806bfa28bd0ebcba6bba637ea1. The use of Tor network is becoming popular within the community of malware authors, also a recent variant of Zeus was able to hide its communications in the anonymizing network. IT administrators could carefully monitor the network to detect Tor activity.”]
Source: https://securityaffairs.co/wordpress/27885/cyber-crime/bifrose-uses-tor.html