Technical Information
- [HKLM\System\CurrentControlSet\Services\GoogleUpdateBeta] 'Start' = '00000002'
- [HKLM\System\CurrentControlSet\Services\GoogleUpdateBeta] 'ImagePath' = '%LOCALAPPDATA%\Google\Update\GoogleUpdateBeta.exe /svc'
- 'GoogleUpdateBeta' %LOCALAPPDATA%\Google\Update\GoogleUpdateBeta.exe /svc
- %TEMP%\nsr2118.tmp
- %TEMP%\nsg2128.tmp\system.dll
- %TEMP%\nsg2128.tmp\nsprocess.dll
- %TEMP%\nsg2128.tmp\nsscm.dll
- %LOCALAPPDATA%\google\update\googleupdatebeta.exe
- %TEMP%\nsg2128.tmp\nsprocess.dll
- %TEMP%\nsg2128.tmp\nsscm.dll
- %TEMP%\nsg2128.tmp\system.dll
- 'se#####14.APArtmSk.Ru':8000
- 'se#####15.APARTmSK.Ru':8000
- 'sE#####3.apARtMSK.ru':8000
- 'se#####11.aPaRtmsK.rU':8000
- 'sE#####6.apaRtMsK.rU':8000
- DNS ASK Se####-7.RU###nO.tv
- DNS ASK se#####14.APArtmSk.Ru
- DNS ASK se#####15.APARTmSK.Ru
- DNS ASK sE#####3.apARtMSK.ru
- DNS ASK se#####14.RU###no.TV
- DNS ASK se#####11.aPaRtmsK.rU
- DNS ASK sE#####6.apaRtMsK.rU
- DNS ASK Se#####17.Ru###no.Tv
- DNS ASK Se####-1.RU###no.tv
- DNS ASK Se#####11.Ru###nO.tv
- '%LOCALAPPDATA%\google\update\googleupdatebeta.exe' /svc