Техническая информация
- %TEMP%\20230912t040958_447.exe
- %TEMP%\20230912t041016_487.exe
- '20##########958_447.ltiapmyzmjxrvrts.info':80
- '20##########016_487.ltiapmyzmjxrvrts.info':80
- '20##########041_898.ltiapmyzmjxrvrts.info':80
- http://20##########958_447.ltiapmyzmjxrvrts.info/v4/20230912T040958_447.exe
- http://20##########016_487.ltiapmyzmjxrvrts.info/v4/20230912T041016_487.exe
- http://20##########041_898.ltiapmyzmjxrvrts.info/v4/20230912T041041_898.exe
- DNS ASK 20##########958_447.ltiapmyzmjxrvrts.info
- DNS ASK 20##########016_487.ltiapmyzmjxrvrts.info
- DNS ASK 20##########041_898.ltiapmyzmjxrvrts.info
- '%TEMP%\20230912t040958_447.exe'
- '%TEMP%\20230912t041016_487.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T040958_447.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T041016_487.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T041041_898.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230912T041111_246.exe