Техническая информация
- %TEMP%\20230917t001542_756.exe
- '20##########542_756.ltiapmyzmjxrvrts.info':80
- '20##########626_432.ltiapmyzmjxrvrts.info':80
- http://20##########542_756.ltiapmyzmjxrvrts.info/v4/20230917T001542_756.exe
- http://20##########626_432.ltiapmyzmjxrvrts.info/v4/20230917T001626_432.exe
- DNS ASK 20##########542_756.ltiapmyzmjxrvrts.info
- DNS ASK 20##########626_432.ltiapmyzmjxrvrts.info
- '%TEMP%\20230917t001542_756.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230917T001542_756.exe