HKLMsoftwaremicrosoftwindowscurrentversionrun
Is the registry key where most viruses set themselves to execute when the machine is booted.
first step is to stop the virus processes. on a Win 2K/XP machine hold down shift and ctrl and tap esc. that will bring up the task manager. click the processes tab. find the virus processes. any antivirus site will tell you all that information. i like to use nai.com or ca.com click on the virus definition links there and just do a search untill you find the name of the virus process.
stop the process first. most if not all viruses will watch the registry and re add key's as you delete them. so if you stop the process, nothing related to the virus can hrm your machine. next in the registry location discribed above. delete all references to the virus process running.
after that. do a search on your hard drive(s) for the name of the virus and delete them while holding down the shift key. unless of course, your like me and you copy it to your my documents folder to keep in case you need it
tada... manual removal of a virus.
The more you know the better off you are......
hope this helps and good luck...
p.s. you may want to back up the registry before you edit it so you have a back up spot incase something goes wrong.