Technical Information
- %TEMP%\20230926t013614_867.exe
- %TEMP%\20230926t013703_025.exe
- '20##########614_867.ltiapmyzmjxrvrts.info':80
- '20##########703_025.ltiapmyzmjxrvrts.info':80
- '20##########750_975.ltiapmyzmjxrvrts.info':80
- http://20##########614_867.ltiapmyzmjxrvrts.info/v4/20230926T013614_867.exe
- http://20##########703_025.ltiapmyzmjxrvrts.info/v4/20230926T013703_025.exe
- http://20##########750_975.ltiapmyzmjxrvrts.info/v4/20230926T013750_975.exe
- DNS ASK 20##########614_867.ltiapmyzmjxrvrts.info
- DNS ASK 20##########703_025.ltiapmyzmjxrvrts.info
- DNS ASK 20##########750_975.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t013614_867.exe'
- '%TEMP%\20230926t013703_025.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013614_867.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013703_025.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013750_975.exe