Technical Information
- %TEMP%\20230926t032445_461.exe
- %TEMP%\20230926t032503_112.exe
- %TEMP%\20230926t032520_052.exe
- '20##########445_461.ltiapmyzmjxrvrts.info':80
- '20##########503_112.ltiapmyzmjxrvrts.info':80
- '20##########520_052.ltiapmyzmjxrvrts.info':80
- http://20##########445_461.ltiapmyzmjxrvrts.info/v4/20230926T032445_461.exe
- http://20##########503_112.ltiapmyzmjxrvrts.info/v4/20230926T032503_112.exe
- http://20##########520_052.ltiapmyzmjxrvrts.info/v4/20230926T032520_052.exe
- DNS ASK 20##########445_461.ltiapmyzmjxrvrts.info
- DNS ASK 20##########503_112.ltiapmyzmjxrvrts.info
- DNS ASK 20##########520_052.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t032445_461.exe'
- '%TEMP%\20230926t032503_112.exe'
- '%TEMP%\20230926t032520_052.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T032445_461.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T032503_112.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T032520_052.exe