ServHelper (704ed49d-103c-4b33-b85c-73670cc1d719)
ServHelper is a backdoor first observed in late 2018. The backdoor is written in Delphi and is typically delivered as a DLL file.[Proofpoint TA505 Jan 2019]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
TA505 (b3220638-6682-4a4e-ab64-e7dc4202a3f1) | Tidal Groups | ServHelper (704ed49d-103c-4b33-b85c-73670cc1d719) | Tidal Software | 1 |