Technical Information
- %TEMP%\20230926t040959_156.exe
- %TEMP%\20230926t041019_253.exe
- %TEMP%\20230926t041039_408.exe
- '20##########959_156.ltiapmyzmjxrvrts.info':80
- '20##########019_253.ltiapmyzmjxrvrts.info':80
- '20##########039_408.ltiapmyzmjxrvrts.info':80
- '20##########059_769.ltiapmyzmjxrvrts.info':80
- http://20##########959_156.ltiapmyzmjxrvrts.info/v4/20230926T040959_156.exe
- http://20##########019_253.ltiapmyzmjxrvrts.info/v4/20230926T041019_253.exe
- http://20##########039_408.ltiapmyzmjxrvrts.info/v4/20230926T041039_408.exe
- http://20##########059_769.ltiapmyzmjxrvrts.info/v4/20230926T041059_769.exe
- DNS ASK 20##########959_156.ltiapmyzmjxrvrts.info
- DNS ASK 20##########019_253.ltiapmyzmjxrvrts.info
- DNS ASK 20##########039_408.ltiapmyzmjxrvrts.info
- DNS ASK 20##########059_769.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t040959_156.exe'
- '%TEMP%\20230926t041019_253.exe'
- '%TEMP%\20230926t041039_408.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T040959_156.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T041019_253.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T041039_408.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T041059_769.exe