Steals credentials, browser history, cookies, and clipboard contents.
For further technical details, researchers at Check Point Research and The Hacker News have published comprehensive analyses of this threat. ToxicEye RAT hits Telegram app to spy, steal user data ToxicEye.rar
Look for the file path C:\Users\ToxicEye\rat.exe on your system. ToxicEye.rar
The malware communicates back to the attacker via the Telegram API, which often bypasses enterprise security because Telegram is seen as a "trusted" service. Signs of Infection & Protection ToxicEye.rar
Terminate active processes and take over the Task Manager.
Hijacks the PC’s microphone and camera to record audio and video.