Technical Information
- %TEMP%\20230915t041027_260.exe
- %TEMP%\20230915t041101_594.exe
- '20##########027_260.ltiapmyzmjxrvrts.info':80
- '20##########101_594.ltiapmyzmjxrvrts.info':80
- '20##########136_405.ltiapmyzmjxrvrts.info':80
- http://20##########027_260.ltiapmyzmjxrvrts.info/v4/20230915T041027_260.exe
- http://20##########101_594.ltiapmyzmjxrvrts.info/v4/20230915T041101_594.exe
- http://20##########136_405.ltiapmyzmjxrvrts.info/v4/20230915T041136_405.exe
- DNS ASK 20##########027_260.ltiapmyzmjxrvrts.info
- DNS ASK 20##########101_594.ltiapmyzmjxrvrts.info
- DNS ASK 20##########136_405.ltiapmyzmjxrvrts.info
- '%TEMP%\20230915t041027_260.exe'
- '%TEMP%\20230915t041101_594.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T041027_260.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T041101_594.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T041136_405.exe