Technical Information
- %TEMP%\20230916t014334_875.exe
- '20##########334_875.ltiapmyzmjxrvrts.info':80
- '20##########405_745.ltiapmyzmjxrvrts.info':80
- http://20##########334_875.ltiapmyzmjxrvrts.info/v4/20230916T014334_875.exe
- http://20##########405_745.ltiapmyzmjxrvrts.info/v4/20230916T014405_745.exe
- DNS ASK 20##########334_875.ltiapmyzmjxrvrts.info
- DNS ASK 20##########405_745.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t014334_875.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T014334_875.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T014405_745.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T014439_873.exe