Техническая информация
- %TEMP%\20230916t022652_224.exe
- %TEMP%\20230916t022739_254.exe
- '20##########652_224.ltiapmyzmjxrvrts.info':80
- '20##########739_254.ltiapmyzmjxrvrts.info':80
- '20##########807_944.ltiapmyzmjxrvrts.info':80
- http://20##########652_224.ltiapmyzmjxrvrts.info/v4/20230916T022652_224.exe
- http://20##########739_254.ltiapmyzmjxrvrts.info/v4/20230916T022739_254.exe
- http://20##########807_944.ltiapmyzmjxrvrts.info/v4/20230916T022807_944.exe
- DNS ASK 20##########652_224.ltiapmyzmjxrvrts.info
- DNS ASK 20##########739_254.ltiapmyzmjxrvrts.info
- DNS ASK 20##########807_944.ltiapmyzmjxrvrts.info
- '%TEMP%\20230916t022652_224.exe'
- '%TEMP%\20230916t022739_254.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022652_224.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022739_254.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230916T022807_944.exe