Technical Information
- %TEMP%\20230915t213445_914.exe
- '20##########445_914.ltiapmyzmjxrvrts.info':80
- '20##########532_905.ltiapmyzmjxrvrts.info':80
- http://20##########445_914.ltiapmyzmjxrvrts.info/v4/20230915T213445_914.exe
- http://20##########532_905.ltiapmyzmjxrvrts.info/v4/20230915T213532_905.exe
- DNS ASK 20##########445_914.ltiapmyzmjxrvrts.info
- DNS ASK 20##########532_905.ltiapmyzmjxrvrts.info
- '%TEMP%\20230915t213445_914.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T213445_914.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T213532_905.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T213608_666.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T213643_029.exe