Technical Information
- %TEMP%\20230916t034818_095.exe
- '20##########818_095.ltiapmyzmjxrvrts.info':80
- '20##########917_709.ltiapmyzmjxrvrts.info':80
- http://20##########818_095.ltiapmyzmjxrvrts.info/v4/20230916T034818_095.exe
- http://20##########917_709.ltiapmyzmjxrvrts.info/v4/20230916T034917_709.exe
- DNS ASK 20##########818_095.ltiapmyzmjxrvrts.info
- DNS ASK 20##########917_709.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t034818_095.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T034818_095.exe