Technical Information
- %TEMP%\20230924t022657_892.exe
- '20##########657_892.ltiapmyzmjxrvrts.info':80
- '20##########727_632.ltiapmyzmjxrvrts.info':80
- http://20##########657_892.ltiapmyzmjxrvrts.info/v4/20230924T022657_892.exe
- http://20##########727_632.ltiapmyzmjxrvrts.info/v4/20230924T022727_632.exe
- DNS ASK 20##########657_892.ltiapmyzmjxrvrts.info
- DNS ASK 20##########727_632.ltiapmyzmjxrvrts.info
- '%TEMP%\20230924t022657_892.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230924T022657_892.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230924T022727_632.exe