Technical Information
- %TEMP%\20230915t234324_752.exe
- '20##########324_752.ltiapmyzmjxrvrts.info':80
- '20##########425_412.ltiapmyzmjxrvrts.info':80
- http://20##########324_752.ltiapmyzmjxrvrts.info/v4/20230915T234324_752.exe
- http://20##########425_412.ltiapmyzmjxrvrts.info/v4/20230915T234425_412.exe
- DNS ASK 20##########324_752.ltiapmyzmjxrvrts.info
- DNS ASK 20##########425_412.ltiapmyzmjxrvrts.info
- '%TEMP%\20230915t234324_752.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T234324_752.exe