Technical Information
- %TEMP%\20230926t022814_294.exe
- %TEMP%\20230926t022844_830.exe
- '20##########814_294.ltiapmyzmjxrvrts.info':80
- '20##########844_830.ltiapmyzmjxrvrts.info':80
- '20##########918_660.ltiapmyzmjxrvrts.info':80
- http://20##########814_294.ltiapmyzmjxrvrts.info/v4/20230926T022814_294.exe
- http://20##########844_830.ltiapmyzmjxrvrts.info/v4/20230926T022844_830.exe
- http://20##########918_660.ltiapmyzmjxrvrts.info/v4/20230926T022918_660.exe
- DNS ASK 20##########814_294.ltiapmyzmjxrvrts.info
- DNS ASK 20##########844_830.ltiapmyzmjxrvrts.info
- DNS ASK 20##########918_660.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t022814_294.exe'
- '%TEMP%\20230926t022844_830.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T022814_294.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T022844_830.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T022918_660.exe