Техническая информация
- %TEMP%\20230913t221838_920.exe
- %TEMP%\20230913t221904_967.exe
- '20##########838_920.ltiapmyzmjxrvrts.info':80
- '20##########904_967.ltiapmyzmjxrvrts.info':80
- '20##########936_313.ltiapmyzmjxrvrts.info':80
- http://20##########838_920.ltiapmyzmjxrvrts.info/v4/20230913T221838_920.exe
- http://20##########904_967.ltiapmyzmjxrvrts.info/v4/20230913T221904_967.exe
- http://20##########936_313.ltiapmyzmjxrvrts.info/v4/20230913T221936_313.exe
- DNS ASK 20##########838_920.ltiapmyzmjxrvrts.info
- DNS ASK 20##########904_967.ltiapmyzmjxrvrts.info
- DNS ASK 20##########936_313.ltiapmyzmjxrvrts.info
- '%TEMP%\20230913t221838_920.exe'
- '%TEMP%\20230913t221904_967.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230913T221838_920.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230913T221904_967.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230913T221936_313.exe