Farbar Recovery Scan Tool (x64) Version: 27-04-2017 Ran by Arekcipa (30-04-2017 14:49:16) Running from C:\Users\Arekcipa\Downloads Boot Mode: Normal ================== Search Registry: "doeye;firefox" =========== ===================== Search result for "doeye" ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Doeye] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Doeye] "path"="C:\Program Files (x86)\Doeye\" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Doeye] [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\Program Files (x86)\Doeye\Application\chrome.exe"="0x5341435001000000000000000700000028000000585F0E0077AC0E0001000000000000000000000A002100003457EA2DBE1AD2010000000100000000" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\ftp\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\ftp\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\http\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\http\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\https\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\https\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\irc\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\irc\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\mailto\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\mailto\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\mms\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\mms\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\news\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\news\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\nntp\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\nntp\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\sms\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\sms\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\smsto\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\smsto\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\tel\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\tel\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\urn\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\urn\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\webcal\DefaultIcon] ""="C:\Program Files (x86)\Doeye\Application\chrome.exe,0" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Classes\webcal\shell\open\command] ""=""C:\Program Files (x86)\Doeye\Application\chrome.exe" "%1"" ===================== Search result for "firefox" ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTP\Defaults\AppProfiles\Mozilla Firefox] [HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTPEnh\OSD\TouchPad\AppProfiles\Mozilla Firefox] [HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTPEnh\OSD\TouchPad\AppProfiles\Mozilla Firefox] "AppExe"="firefox.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTPEnh\OSD\TouchPad\AppProfiles\Mozilla Firefox] "AppFriendlyName"="Mozilla Firefox" [HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTPEnh\PlugInConfig\TouchPad\AppProfiles\Mozilla Firefox] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Firefox] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Firefox] "path"="C:\Program Files (x86)\Firefox\" [HKEY_USERS\.DEFAULT\Software\Mozilla\Firefox] [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Firefox] [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\38d13376_0] ""="{2}.\\?\hdaudio#func_01&ven_10ec&dev_0269&subsys_17aac022&rev_1002#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\eduplicatedhpspeakertopo/00010001 \Device\HarddiskVolume4\Program Files (x86)\Firefox\Firefox.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\Program Files (x86)\Firefox\uninstall\helper.exe"="0x5341435001000000000000000700000028000000884A0D00F2540D0001000000000000000000000A002100003457EA2DBE1AD201000000000000000002000000280000000000000000000000000000000000000000000000000000004E000000000000000400000004000000" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\Program Files (x86)\Firefox\Firefox.exe"="0x5341435001000000000000000700000028000000B8A007005742080001000000000000000000000A002100003457EA2DBE1AD2010000000100000000" [HKEY_USERS\S-1-5-21-252974029-621322211-1437129156-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe"="0x5341435001000000000000000700000028000000B0A801009BC2010001000000000000000000000A712200003457EA2DBE1AD2010000008000000000050000001000000000000000000000000000000000000000020000002800000000000000000000000000000000000000000000000000000020050000000000000100000001000000" ====== End of Search ======