Техническая информация
- %TEMP%\20230925t222926_103.exe
- %TEMP%\20230925t222957_273.exe
- '20##########926_103.ltiapmyzmjxrvrts.info':80
- '20##########957_273.ltiapmyzmjxrvrts.info':80
- '20##########022_907.ltiapmyzmjxrvrts.info':80
- http://20##########926_103.ltiapmyzmjxrvrts.info/v4/20230925T222926_103.exe
- http://20##########957_273.ltiapmyzmjxrvrts.info/v4/20230925T222957_273.exe
- http://20##########022_907.ltiapmyzmjxrvrts.info/v4/20230925T223022_907.exe
- DNS ASK 20##########926_103.ltiapmyzmjxrvrts.info
- DNS ASK 20##########957_273.ltiapmyzmjxrvrts.info
- DNS ASK 20##########022_907.ltiapmyzmjxrvrts.info
- '%TEMP%\20230925t222926_103.exe'
- '%TEMP%\20230925t222957_273.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T222926_103.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T222957_273.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230925T223022_907.exe