Fumik0_ a twitter user and malware researcher has found a website that spreads cryptocurrency malware. When someone visits the website, it automatically downloads a setup.exe installer, which will infect the computer once it runs. To trick the user it also shows the logo of Cryptohopper. The installer will install the Vidar information-stealing Trojan it then attempts to scrape user data such as browser cookies, browser history, browser payment information, saved login credentials, and cryptocurrency wallets.