Technical Information
- %TEMP%\20230926t014116_885.exe
- %TEMP%\20230926t014150_188.exe
- '20##########116_885.ltiapmyzmjxrvrts.info':80
- '20##########150_188.ltiapmyzmjxrvrts.info':80
- '20##########221_992.ltiapmyzmjxrvrts.info':80
- http://20##########116_885.ltiapmyzmjxrvrts.info/v4/20230926T014116_885.exe
- http://20##########150_188.ltiapmyzmjxrvrts.info/v4/20230926T014150_188.exe
- DNS ASK 20##########116_885.ltiapmyzmjxrvrts.info
- DNS ASK 20##########150_188.ltiapmyzmjxrvrts.info
- DNS ASK 20##########221_992.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t014116_885.exe'
- '%TEMP%\20230926t014150_188.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T014116_885.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T014150_188.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T014221_992.exe