Техническая информация
- %TEMP%\20230917t032813_301.exe
- %TEMP%\20230917t032837_401.exe
- '20##########813_301.ltiapmyzmjxrvrts.info':80
- '20##########837_401.ltiapmyzmjxrvrts.info':80
- '20##########904_001.ltiapmyzmjxrvrts.info':80
- http://20##########813_301.ltiapmyzmjxrvrts.info/v4/20230917T032813_301.exe
- http://20##########837_401.ltiapmyzmjxrvrts.info/v4/20230917T032837_401.exe
- http://20##########904_001.ltiapmyzmjxrvrts.info/v4/20230917T032904_001.exe
- DNS ASK 20##########813_301.ltiapmyzmjxrvrts.info
- DNS ASK 20##########837_401.ltiapmyzmjxrvrts.info
- DNS ASK 20##########904_001.ltiapmyzmjxrvrts.info
- '%TEMP%\20230917t032813_301.exe'
- '%TEMP%\20230917t032837_401.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230917T032813_301.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230917T032837_401.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230917T032904_001.exe