Technical Information
- [<HKCU>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Default Key' = '%LOCALAPPDATA%\Default Folder\Server.exe'
- %TEMP%\taskmgr.exe
- %TEMP%\tyvg
- %LOCALAPPDATA%\default folder\server.exe
- %APPDATA%\imminent\logs\28-08-2020
- DNS ASK 80####808.ddns.net
- '%TEMP%\taskmgr.exe'