TrueBot infections involving this specific file naming convention generally follow this pattern: 1. Initial Access & Extraction
Blacklist the specific file hash and any associated C2 IPs at your firewall.
If you can provide the of the file, I can give you the specific C2 addresses and file paths for your environment.