Technical Information
- %TEMP%\20230916t022055_102.exe
- %TEMP%\20230916t022142_393.exe
- '20##########055_102.ltiapmyzmjxrvrts.info':80
- '20##########142_393.ltiapmyzmjxrvrts.info':80
- '20##########234_171.ltiapmyzmjxrvrts.info':80
- http://20##########055_102.ltiapmyzmjxrvrts.info/v4/20230916T022055_102.exe
- http://20##########142_393.ltiapmyzmjxrvrts.info/v4/20230916T022142_393.exe
- http://20##########234_171.ltiapmyzmjxrvrts.info/v4/20230916T022234_171.exe
- DNS ASK 20##########055_102.ltiapmyzmjxrvrts.info
- DNS ASK 20##########142_393.ltiapmyzmjxrvrts.info
- DNS ASK 20##########234_171.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t022055_102.exe'
- '%TEMP%\20230916t022142_393.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022055_102.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022142_393.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022234_171.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022333_687.exe