Техническая информация
- %TEMP%\20230923t023757_391.exe
- %TEMP%\20230923t023831_066.exe
- %TEMP%\20230923t023858_584.exe
- '20##########757_391.ltiapmyzmjxrvrts.info':80
- '20##########831_066.ltiapmyzmjxrvrts.info':80
- '20##########858_584.ltiapmyzmjxrvrts.info':80
- '20##########926_204.ltiapmyzmjxrvrts.info':80
- http://20##########757_391.ltiapmyzmjxrvrts.info/v4/20230923T023757_391.exe
- http://20##########831_066.ltiapmyzmjxrvrts.info/v4/20230923T023831_066.exe
- http://20##########858_584.ltiapmyzmjxrvrts.info/v4/20230923T023858_584.exe
- http://20##########926_204.ltiapmyzmjxrvrts.info/v4/20230923T023926_204.exe
- DNS ASK 20##########757_391.ltiapmyzmjxrvrts.info
- DNS ASK 20##########831_066.ltiapmyzmjxrvrts.info
- DNS ASK 20##########858_584.ltiapmyzmjxrvrts.info
- DNS ASK 20##########926_204.ltiapmyzmjxrvrts.info
- '%TEMP%\20230923t023757_391.exe'
- '%TEMP%\20230923t023831_066.exe'
- '%TEMP%\20230923t023858_584.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230923T023757_391.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230923T023831_066.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230923T023858_584.exe