Technical Information
- %TEMP%\20230923t030848_312.exe
- %TEMP%\20230923t030946_865.exe
- '20##########848_312.ltiapmyzmjxrvrts.info':80
- '20##########946_865.ltiapmyzmjxrvrts.info':80
- http://20##########848_312.ltiapmyzmjxrvrts.info/v4/20230923T030848_312.exe
- http://20##########946_865.ltiapmyzmjxrvrts.info/v4/20230923T030946_865.exe
- DNS ASK 20##########848_312.ltiapmyzmjxrvrts.info
- DNS ASK 20##########946_865.ltiapmyzmjxrvrts.info
- '%TEMP%\20230923t030848_312.exe'
- '%TEMP%\20230923t030946_865.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230923T030848_312.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230923T030946_865.exe