The favourite branches to watch out for into include HKEY_CURRENT_USER and HKEY_LOCAL_MACHINE.
If for example the virus owns a specific name like blaster.worm or 32heur and a lot more., you will find processes followed by such name extensions in addition to the weird names.
Facing issue in account approval? email us at info@ipt.pw
Log in to comment or register here.