Technical Information
- %TEMP%\20230916t234329_717.exe
- %TEMP%\20230916t234406_823.exe
- '20##########329_717.ltiapmyzmjxrvrts.info':80
- '20##########406_823.ltiapmyzmjxrvrts.info':80
- '20##########443_904.ltiapmyzmjxrvrts.info':80
- http://20##########329_717.ltiapmyzmjxrvrts.info/v4/20230916T234329_717.exe
- http://20##########406_823.ltiapmyzmjxrvrts.info/v4/20230916T234406_823.exe
- http://20##########443_904.ltiapmyzmjxrvrts.info/v4/20230916T234443_904.exe
- DNS ASK 20##########329_717.ltiapmyzmjxrvrts.info
- DNS ASK 20##########406_823.ltiapmyzmjxrvrts.info
- DNS ASK 20##########443_904.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t234329_717.exe'
- '%TEMP%\20230916t234406_823.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T234329_717.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T234406_823.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T234443_904.exe