Technical Information
- %TEMP%\20230915t222821_424.exe
- %TEMP%\20230915t222858_073.exe
- '20##########821_424.ltiapmyzmjxrvrts.info':80
- '20##########858_073.ltiapmyzmjxrvrts.info':80
- '20##########936_833.ltiapmyzmjxrvrts.info':80
- http://20##########821_424.ltiapmyzmjxrvrts.info/v4/20230915T222821_424.exe
- http://20##########858_073.ltiapmyzmjxrvrts.info/v4/20230915T222858_073.exe
- http://20##########936_833.ltiapmyzmjxrvrts.info/v4/20230915T222936_833.exe
- DNS ASK 20##########821_424.ltiapmyzmjxrvrts.info
- DNS ASK 20##########858_073.ltiapmyzmjxrvrts.info
- DNS ASK 20##########936_833.ltiapmyzmjxrvrts.info
- '%TEMP%\20230915t222821_424.exe'
- '%TEMP%\20230915t222858_073.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222821_424.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222858_073.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222936_833.exe