Technical Information
- %TEMP%\20230915t215659_103.exe
- %TEMP%\20230915t215731_832.exe
- %TEMP%\20230915t215806_134.exe
- '20##########659_103.ltiapmyzmjxrvrts.info':80
- '20##########731_832.ltiapmyzmjxrvrts.info':80
- '20##########806_134.ltiapmyzmjxrvrts.info':80
- '20##########838_774.ltiapmyzmjxrvrts.info':80
- http://20##########659_103.ltiapmyzmjxrvrts.info/v4/20230915T215659_103.exe
- http://20##########731_832.ltiapmyzmjxrvrts.info/v4/20230915T215731_832.exe
- http://20##########806_134.ltiapmyzmjxrvrts.info/v4/20230915T215806_134.exe
- http://20##########838_774.ltiapmyzmjxrvrts.info/v4/20230915T215838_774.exe
- DNS ASK 20##########659_103.ltiapmyzmjxrvrts.info
- DNS ASK 20##########731_832.ltiapmyzmjxrvrts.info
- DNS ASK 20##########806_134.ltiapmyzmjxrvrts.info
- DNS ASK 20##########838_774.ltiapmyzmjxrvrts.info
- '%TEMP%\20230915t215659_103.exe'
- '%TEMP%\20230915t215731_832.exe'
- '%TEMP%\20230915t215806_134.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T215659_103.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T215731_832.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T215806_134.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T215838_774.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T215915_158.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T215950_311.exe