Technical Information
- %TEMP%\20230924t222900_024.exe
- %TEMP%\20230924t222942_007.exe
- '20##########900_024.ltiapmyzmjxrvrts.info':80
- '20##########942_007.ltiapmyzmjxrvrts.info':80
- http://20##########900_024.ltiapmyzmjxrvrts.info/v4/20230924T222900_024.exe
- http://20##########942_007.ltiapmyzmjxrvrts.info/v4/20230924T222942_007.exe
- DNS ASK 20##########900_024.ltiapmyzmjxrvrts.info
- DNS ASK 20##########942_007.ltiapmyzmjxrvrts.info
- '%TEMP%\20230924t222900_024.exe'
- '%TEMP%\20230924t222942_007.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230924T222900_024.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230924T222942_007.exe