Technical Information
- %TEMP%\20230926t020101_022.exe
- %TEMP%\20230926t020143_328.exe
- '20##########101_022.ltiapmyzmjxrvrts.info':80
- '20##########143_328.ltiapmyzmjxrvrts.info':80
- '20##########216_722.ltiapmyzmjxrvrts.info':80
- http://20##########101_022.ltiapmyzmjxrvrts.info/v4/20230926T020101_022.exe
- http://20##########143_328.ltiapmyzmjxrvrts.info/v4/20230926T020143_328.exe
- http://20##########216_722.ltiapmyzmjxrvrts.info/v4/20230926T020216_722.exe
- DNS ASK 20##########101_022.ltiapmyzmjxrvrts.info
- DNS ASK 20##########143_328.ltiapmyzmjxrvrts.info
- DNS ASK 20##########216_722.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t020101_022.exe'
- '%TEMP%\20230926t020143_328.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T020101_022.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T020143_328.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T020216_722.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T020251_895.exe