Technical Information
- %TEMP%\20230925t213614_903.exe
- %TEMP%\20230925t213630_064.exe
- %TEMP%\20230925t213651_494.exe
- %TEMP%\20230925t213716_314.exe
- '20##########614_903.ltiapmyzmjxrvrts.info':80
- '20##########630_064.ltiapmyzmjxrvrts.info':80
- '20##########651_494.ltiapmyzmjxrvrts.info':80
- '20##########716_314.ltiapmyzmjxrvrts.info':80
- '20##########740_094.ltiapmyzmjxrvrts.info':80
- http://20##########614_903.ltiapmyzmjxrvrts.info/v4/20230925T213614_903.exe
- http://20##########630_064.ltiapmyzmjxrvrts.info/v4/20230925T213630_064.exe
- http://20##########651_494.ltiapmyzmjxrvrts.info/v4/20230925T213651_494.exe
- http://20##########716_314.ltiapmyzmjxrvrts.info/v4/20230925T213716_314.exe
- http://20##########740_094.ltiapmyzmjxrvrts.info/v4/20230925T213740_094.exe
- DNS ASK 20##########614_903.ltiapmyzmjxrvrts.info
- DNS ASK 20##########630_064.ltiapmyzmjxrvrts.info
- DNS ASK 20##########651_494.ltiapmyzmjxrvrts.info
- DNS ASK 20##########716_314.ltiapmyzmjxrvrts.info
- DNS ASK 20##########740_094.ltiapmyzmjxrvrts.info
- '%TEMP%\20230925t213614_903.exe'
- '%TEMP%\20230925t213630_064.exe'
- '%TEMP%\20230925t213651_494.exe'
- '%TEMP%\20230925t213716_314.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T213614_903.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T213630_064.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T213651_494.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T213716_314.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T213740_094.exe