Technical Information
- %TEMP%\20230916t020359_536.exe
- '20##########359_536.ltiapmyzmjxrvrts.info':80
- '20##########447_243.ltiapmyzmjxrvrts.info':80
- http://20##########359_536.ltiapmyzmjxrvrts.info/v4/20230916T020359_536.exe
- http://20##########447_243.ltiapmyzmjxrvrts.info/v4/20230916T020447_243.exe
- DNS ASK 20##########359_536.ltiapmyzmjxrvrts.info
- DNS ASK 20##########447_243.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t020359_536.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T020359_536.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T020447_243.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T020530_960.exe