I'm trying to build a tool that deals with the Cryptowall Virus. I'm working on a feature now that will read a key in HKCU\Software, but the keys are named differently on each computer in the following format:
Bleeping Computer offers a similar tool that you can run and it will find the keys if they are there and enumerate the affected files.
I can get it to work if I manually put the two sub-keys in text fields in my application, but does anyone know the best method to achieve this?
by whatchuknowbout via /r/csharp