Техническая информация
- %TEMP%\20230911t200100_566.exe
- %TEMP%\20230911t200145_540.exe
- '20##########100_566.ltiapmyzmjxrvrts.info':80
- '20##########145_540.ltiapmyzmjxrvrts.info':80
- '20##########221_500.ltiapmyzmjxrvrts.info':80
- http://20##########100_566.ltiapmyzmjxrvrts.info/v4/20230911T200100_566.exe
- http://20##########145_540.ltiapmyzmjxrvrts.info/v4/20230911T200145_540.exe
- http://20##########221_500.ltiapmyzmjxrvrts.info/v4/20230911T200221_500.exe
- DNS ASK 20##########100_566.ltiapmyzmjxrvrts.info
- DNS ASK 20##########145_540.ltiapmyzmjxrvrts.info
- DNS ASK 20##########221_500.ltiapmyzmjxrvrts.info
- '%TEMP%\20230911t200100_566.exe'
- '%TEMP%\20230911t200145_540.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230911T200100_566.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230911T200145_540.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230911T200221_500.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230911T200258_931.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230911T200332_918.exe