Farbar Recovery Scan Tool (x64) Wersja:06-05-2016 Uruchomiony przez Kasia (2016-05-06 13:47:26) Uruchomiony z H:\AV Tryb startu: Normal ================== Szukaj w rejestrze: "IHeeaWA" =========== [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet] ""="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM] [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM] ""="IHeeaWA" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities] "ApplicationIcon"="C:\Program Files (x86)\IHeeaWA\IHeeaWA\chrome.exe,0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities] "ApplicationName"="IHeeaWA" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\FileAssociations] ".htm"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\FileAssociations] ".html"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\FileAssociations] ".shtml"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\FileAssociations] ".xht"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\FileAssociations] ".xhtml"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\StartMenu] "StartMenuInternet"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\URLAssociations] "https"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\URLAssociations] "ftp"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities\URLAssociations] "http"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\DefaultIcon] ""="C:\Program Files (x86)\IHeeaWA\IHeeaWA\chrome.exe,0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\InstallInfo] "HideIconsCommand"=""C:\Program Files (x86)\IHeeaWA\IHeeaWA\chrome.exe" "-HideIconsCommand"" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\InstallInfo] "ReinstallCommand"=""C:\Program Files (x86)\IHeeaWA\IHeeaWA\chrome.exe" "-ReinstallCommand"" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\InstallInfo] "ShowIconsCommand"=""C:\Program Files (x86)\IHeeaWA\IHeeaWA\chrome.exe" "-ShowIconsCommand"" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Clients\StartMenuInternet\IHeeaWAHTM\shell\open\command] ""="C:\Program Files (x86)\IHeeaWA\IHeeaWA\chrome.exe" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_.htm"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_.html"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_.shtml"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_.xht"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_.xhtml"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_https"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_ftp"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\ApplicationAssociationToasts] "IHeeaWAHTM_http"="0" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Roaming\OpenWith\FileExts\.htm\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Roaming\OpenWith\FileExts\.html\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Roaming\OpenWith\FileExts\.shtml\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Roaming\OpenWith\FileExts\.xht\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Roaming\OpenWith\FileExts\.xhtml\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Roaming\OpenWith\UrlAssociations\ftp\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\ftp\UserChoice] "ProgId"="IHeeaWAHTM" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\RegisteredApplications] "IHeeaWAHTM"="SOFTWARE\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\RegisteredApplications] "IHeeaWAHTM"="SOFTWARE\Clients\StartMenuInternet\IHeeaWAHTM\Capabilities" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Classes\.htm\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Classes\.html\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Classes\.shtml\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Classes\.xht\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001\Software\Classes\.xhtml\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001_Classes\.htm\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001_Classes\.html\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001_Classes\.shtml\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001_Classes\.xht\OpenWithProgids] "IHeeaWAHTM"="" [HKEY_USERS\S-1-5-21-27256294-3351816481-630482978-1001_Classes\.xhtml\OpenWithProgids] "IHeeaWAHTM"="" ====== Koniec Szukaj ======