Technical Information
- %TEMP%\20230925t220550_019.exe
- '20##########550_019.ltiapmyzmjxrvrts.info':80
- '20##########616_635.ltiapmyzmjxrvrts.info':80
- http://20##########550_019.ltiapmyzmjxrvrts.info/v4/20230925T220550_019.exe
- http://20##########616_635.ltiapmyzmjxrvrts.info/v4/20230925T220616_635.exe
- DNS ASK 20##########550_019.ltiapmyzmjxrvrts.info
- DNS ASK 20##########616_635.ltiapmyzmjxrvrts.info
- '%TEMP%\20230925t220550_019.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T220550_019.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T220616_635.exe