Technical Information
- %TEMP%\20230916t031117_617.exe
- '20##########117_617.ltiapmyzmjxrvrts.info':80
- '20##########229_157.ltiapmyzmjxrvrts.info':80
- http://20##########117_617.ltiapmyzmjxrvrts.info/v4/20230916T031117_617.exe
- http://20##########229_157.ltiapmyzmjxrvrts.info/v4/20230916T031229_157.exe
- DNS ASK 20##########117_617.ltiapmyzmjxrvrts.info
- DNS ASK 20##########229_157.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t031117_617.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T031117_617.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T031229_157.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T031319_775.exe