02.23.2013 10:37:36, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Open process memory allocation error (Memory)
02.23.2013 10:37:36, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to open process C:\WINDOWS\explorer.exe (Process)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Initialization{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Message{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Signature{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Certificate{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\CertCheck{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\FinalPolicy{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\Providers\Trust\Cleanup{FC451C16-AC75-11D1-B4B8-00C04FB66EA0}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg{DE351A42-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg{DE351A42-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg{DE351A42-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData{DE351A42-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData{DE351A42-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg{C689AAB8-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg{C689AAB8-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg{C689AAB8-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData{C689AAB8-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData{C689AAB8-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg{C689AABA-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg{C689AABA-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg{C689AABA-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData{C689AABA-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData{C689AABA-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg{C689AAB9-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg{C689AAB9-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg{C689AAB9-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData{C689AAB9-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData{C689AAB9-8E78-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg{DE351A43-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg{DE351A43-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg{DE351A43-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData{DE351A43-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData{DE351A43-8E59-11D0-8C47-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllRemoveSignedDataMsg{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}\ (Registry)
02.23.2013 10:37:27, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllVerifyIndirectData{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2004\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2008\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2009\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2005\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2130\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2003\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10\ (Registry)
02.23.2013 10:37:26, module C:\virus\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa\4nkmvj2cb1ltvwsnzpoxpa.exe, Attempt to delete key HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject#2000\ (Registry)