Technical Information
- %TEMP%\20230916t013705_562.exe
- '20##########705_562.ltiapmyzmjxrvrts.info':80
- '20##########820_915.ltiapmyzmjxrvrts.info':80
- http://20##########705_562.ltiapmyzmjxrvrts.info/v4/20230916T013705_562.exe
- http://20##########820_915.ltiapmyzmjxrvrts.info/v4/20230916T013820_915.exe
- DNS ASK 20##########705_562.ltiapmyzmjxrvrts.info
- DNS ASK 20##########820_915.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t013705_562.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T013705_562.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T013820_915.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T013938_632.exe