Техническая информация
- %TEMP%\20230912t012443_386.exe
- %TEMP%\20230912t012510_207.exe
- %TEMP%\20230912t012533_197.exe
- '20##########443_386.ltiapmyzmjxrvrts.info':80
- '20##########510_207.ltiapmyzmjxrvrts.info':80
- '20##########533_197.ltiapmyzmjxrvrts.info':80
- '20##########604_537.ltiapmyzmjxrvrts.info':80
- http://20##########443_386.ltiapmyzmjxrvrts.info/v4/20230912T012443_386.exe
- http://20##########510_207.ltiapmyzmjxrvrts.info/v4/20230912T012510_207.exe
- http://20##########533_197.ltiapmyzmjxrvrts.info/v4/20230912T012533_197.exe
- http://20##########604_537.ltiapmyzmjxrvrts.info/v4/20230912T012604_537.exe
- DNS ASK 20##########443_386.ltiapmyzmjxrvrts.info
- DNS ASK 20##########510_207.ltiapmyzmjxrvrts.info
- DNS ASK 20##########533_197.ltiapmyzmjxrvrts.info
- DNS ASK 20##########604_537.ltiapmyzmjxrvrts.info
- '%TEMP%\20230912t012443_386.exe'
- '%TEMP%\20230912t012510_207.exe'
- '%TEMP%\20230912t012533_197.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T012443_386.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T012510_207.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T012533_197.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T012604_537.exe