Technical Information
- %TEMP%\20230917t041035_982.exe
- '20##########035_982.ltiapmyzmjxrvrts.info':80
- '20##########116_303.ltiapmyzmjxrvrts.info':80
- http://20##########035_982.ltiapmyzmjxrvrts.info/v4/20230917T041035_982.exe
- http://20##########116_303.ltiapmyzmjxrvrts.info/v4/20230917T041116_303.exe
- DNS ASK 20##########035_982.ltiapmyzmjxrvrts.info
- DNS ASK 20##########116_303.ltiapmyzmjxrvrts.info
- '%TEMP%\20230917t041035_982.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230917T041035_982.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230917T041116_303.exe