Техническая информация
- %TEMP%\20230915t222040_039.exe
- %TEMP%\20230915t222127_994.exe
- '20##########040_039.ltiapmyzmjxrvrts.info':80
- '20##########127_994.ltiapmyzmjxrvrts.info':80
- http://20##########040_039.ltiapmyzmjxrvrts.info/v4/20230915T222040_039.exe
- http://20##########127_994.ltiapmyzmjxrvrts.info/v4/20230915T222127_994.exe
- DNS ASK 20##########040_039.ltiapmyzmjxrvrts.info
- DNS ASK 20##########127_994.ltiapmyzmjxrvrts.info
- '%TEMP%\20230915t222040_039.exe'
- '%TEMP%\20230915t222127_994.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222040_039.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222127_994.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222210_766.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222246_607.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230915T222319_177.exe