The group continues to evolve its custom malware in an effort to evade detection.
Source: Threadpost