Technical Information
- %TEMP%\20230926t013530_064.exe
- %TEMP%\20230926t013605_809.exe
- %TEMP%\20230926t013631_455.exe
- '20##########530_064.ltiapmyzmjxrvrts.info':80
- '20##########605_809.ltiapmyzmjxrvrts.info':80
- '20##########631_455.ltiapmyzmjxrvrts.info':80
- '20##########658_891.ltiapmyzmjxrvrts.info':80
- http://20##########530_064.ltiapmyzmjxrvrts.info/v4/20230926T013530_064.exe
- http://20##########605_809.ltiapmyzmjxrvrts.info/v4/20230926T013605_809.exe
- http://20##########631_455.ltiapmyzmjxrvrts.info/v4/20230926T013631_455.exe
- http://20##########658_891.ltiapmyzmjxrvrts.info/v4/20230926T013658_891.exe
- DNS ASK 20##########530_064.ltiapmyzmjxrvrts.info
- DNS ASK 20##########605_809.ltiapmyzmjxrvrts.info
- DNS ASK 20##########631_455.ltiapmyzmjxrvrts.info
- DNS ASK 20##########658_891.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t013530_064.exe'
- '%TEMP%\20230926t013605_809.exe'
- '%TEMP%\20230926t013631_455.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013530_064.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013605_809.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013631_455.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T013658_891.exe