Техническая информация
- %TEMP%\20230913t020238_738.exe
- %TEMP%\20230913t020308_460.exe
- '20##########238_738.ltiapmyzmjxrvrts.info':80
- '20##########308_460.ltiapmyzmjxrvrts.info':80
- http://20##########238_738.ltiapmyzmjxrvrts.info/v4/20230913T020238_738.exe
- http://20##########308_460.ltiapmyzmjxrvrts.info/v4/20230913T020308_460.exe
- DNS ASK 20##########238_738.ltiapmyzmjxrvrts.info
- DNS ASK 20##########308_460.ltiapmyzmjxrvrts.info
- '%TEMP%\20230913t020238_738.exe'
- '%TEMP%\20230913t020308_460.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230913T020238_738.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230913T020308_460.exe