Technical Information
- %TEMP%\20230925t234616_713.exe
- '20##########616_713.ltiapmyzmjxrvrts.info':80
- '20##########708_513.ltiapmyzmjxrvrts.info':80
- http://20##########616_713.ltiapmyzmjxrvrts.info/v4/20230925T234616_713.exe
- http://20##########708_513.ltiapmyzmjxrvrts.info/v4/20230925T234708_513.exe
- DNS ASK 20##########616_713.ltiapmyzmjxrvrts.info
- DNS ASK 20##########708_513.ltiapmyzmjxrvrts.info
- '%TEMP%\20230925t234616_713.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T234616_713.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T234708_513.exe