Gbhackers iconGbhackersSep 24, 2026

New Windows Malware Built to Survive Takedowns With a Hidden P2P Command Network

AvisLoader, a newly observed Windows malware loader designed to maintain operator access even when conventional command-and-control infrastructure is disrupted. Instead of relying on a fixed domain, IP address, or centralized server, the malware uses the encrypted Tox peer-to-peer messaging network to receive commands and deliver follow-on payloads.

New Windows Malware Built to Survive Takedowns With a Hidden P2P Command Network

Share this story

Send the public story page.

Useful takeaways from this story.

AvisLoader, a newly observed Windows malware loader designed to maintain operator access even when conventional command-and-control infrastructure is disrupted.

Instead of relying on a fixed domain, IP address, or centralized server, the malware uses the encrypted Tox peer-to-peer messaging network to receive commands and deliver follow-on payloads.

The discovery highlights a growing challenge for defenders: […]

Building the complete brief

The page is ready to read now. The fuller skim-friendly version will appear here automatically.

The useful part

AvisLoader, a newly observed Windows malware loader designed to maintain operator access even when conventional command-and-control infrastructure is disrupted. Instead of relying on a fixed domain, IP address, or centralized server, the malware uses the encrypted Tox peer-to-peer messaging network to receive commands and deliver follow-on payloads. The discovery highlights a growing challenge for defenders: […]

Details worth keeping

The discovery highlights a growing challenge for defenders: […]

Keep reading in the app

Open the app view to save this story, compare related coverage, and continue from the same source.

Open in app