Back to Feed
MalwareSep 24, 2026

New AvisLoader Windows Malware Uses ClickFix Lure and Tox P2P for C2

New AvisLoader malware uses Tox P2P for C2 and a ClickFix lure.

Summary

Varonis Threat Labs has identified AvisLoader, a new malware loader targeting Windows systems. This malware employs a malicious 'ClickFix' lure to gain initial access and utilizes the Tox peer-to-peer network for its command and control (C2) infrastructure, making it more resilient to takedowns.

Indicators of Compromise

  • malware — AvisLoader

Entities

Windows (product)Tox (technology)Varonis (vendor)