Technical Information
- %TEMP%\20230916t015715_364.exe
- '20##########715_364.ltiapmyzmjxrvrts.info':80
- '20##########808_824.ltiapmyzmjxrvrts.info':80
- http://20##########715_364.ltiapmyzmjxrvrts.info/v4/20230916T015715_364.exe
- http://20##########808_824.ltiapmyzmjxrvrts.info/v4/20230916T015808_824.exe
- DNS ASK 20##########715_364.ltiapmyzmjxrvrts.info
- DNS ASK 20##########808_824.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t015715_364.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T015715_364.exe