Техническая информация
- %TEMP%\20230926t001510_287.exe
- %TEMP%\20230926t001549_869.exe
- '20##########510_287.ltiapmyzmjxrvrts.info':80
- '20##########549_869.ltiapmyzmjxrvrts.info':80
- '20##########633_839.ltiapmyzmjxrvrts.info':80
- http://20##########510_287.ltiapmyzmjxrvrts.info/v4/20230926T001510_287.exe
- http://20##########549_869.ltiapmyzmjxrvrts.info/v4/20230926T001549_869.exe
- http://20##########633_839.ltiapmyzmjxrvrts.info/v4/20230926T001633_839.exe
- DNS ASK 20##########510_287.ltiapmyzmjxrvrts.info
- DNS ASK 20##########549_869.ltiapmyzmjxrvrts.info
- DNS ASK 20##########633_839.ltiapmyzmjxrvrts.info
- '%TEMP%\20230926t001510_287.exe'
- '%TEMP%\20230926t001549_869.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T001510_287.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230926T001549_869.exe