This article was written by a Vendor but they have done a great job in breaking down the facts on Astaroth which Microsoft has now deemed "the Great Duke of Hell".
https://www.cybereason.com/blog/information-stealing-malware-targeting-brazil-full-research
Microsoft has issued a warning that confirms this Trojan does steal credentials and uses an "invisible man" method of running file which are legitimate system tools and then seems to hide in plain sight.
This one was discovered in 2018 and has been used to target systems in Brazil and Europe.
Seems the hackers are one step ahead on this one.
MHOO
d