Technical Information
- %TEMP%\20230926t034747_681.exe
- %TEMP%\20230926t034819_828.exe
- '20##########747_681.ltiapmyzmjxrvrts.info':80
- '20##########819_828.ltiapmyzmjxrvrts.info':80
- '20##########846_668.ltiapmyzmjxrvrts.info':80
- http://20##########747_681.ltiapmyzmjxrvrts.info/v4/20230926T034747_681.exe
- http://20##########819_828.ltiapmyzmjxrvrts.info/v4/20230926T034819_828.exe
- http://20##########846_668.ltiapmyzmjxrvrts.info/v4/20230926T034846_668.exe
- DNS ASK 20##########747_681.ltiapmyzmjxrvrts.info
- DNS ASK 20##########819_828.ltiapmyzmjxrvrts.info
- DNS ASK 20##########846_668.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t034747_681.exe'
- '%TEMP%\20230926t034819_828.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T034747_681.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T034819_828.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T034846_668.exe