Fix result of Farbar Recovery Scan Tool (x64) Version: 13-03-2026 01 Ran by bosch (14-03-2026 11:36:16) Run:1 Running from C:\Users\bosch\Desktop\fixlist Loaded Profiles: bosch Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: SystemRestore: On CreateRestorePoint: ShortcutTarget: Opdaterings Underetter.lnk -> C:\Program Files\WinZip\WZUpdateNotifier.exe (WinZip) [File not signed] Task: {461E599B-7A9E-420C-8CAE-0226FA4664E8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File) Task: {0E02C0C0-EE4C-4821-AC32-4A07F427B68B} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File) Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File) S2 Tobii Service; "C:\Program Files\Tobii\Tobii EyeX\Tobii.Service.exe" -WaitForEULA=1 -DeviceDefaultEnabled=0 -KillOnDisable=1 [X] S3 cpuz158; \??\C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [X] <==== ATTENTION U3 dmwappushsvc; no ImagePath CustomCLSID: HKU\S-1-5-21-106026854-2024998212-2574704355-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> "C:\Users\bosch\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe" -ToastActivated /app nahimic => No File AlternateDataStreams: C:\ProgramData\TEMP:1EBFFC7B [140] AlternateDataStreams: C:\ProgramData\TEMP:263AF925 [139] FirewallRules: [{2E072B5E-9EEB-4BE0-8A7F-4F4F300FD91B}] => (Allow) C:\Program Files\LogiOptionsPlus\logivoice\logioptionsplus_logivoice => No File File: C:\Program Files\WinZip\WZUpdateNotifier.exe; C:\Program Files\notepad\app\notepad.exe CMD: schtasks.exe /change /TN "\Winhance\BloatRemoval" /Disable CMD: schtasks.exe /change /TN "\WinZip Update Notifier" /Disable CustomCLSID: HKU\S-1-5-21-106026854-2024998212-2574704355-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> "C:\Users\bosch\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe" -ToastActivated /app nahimic => No File AlternateDataStreams: C:\ProgramData\TEMP:1EBFFC7B [140] AlternateDataStreams: C:\ProgramData\TEMP:263AF925 [139] FirewallRules: [{2E072B5E-9EEB-4BE0-8A7F-4F4F300FD91B}] => (Allow) C:\Program Files\LogiOptionsPlus\logivoice\logioptionsplus_logivoice => No File StartRegedit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer] "SmartScreenEnabled"="Warn" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=dword:00000005 "ConsentPromptBehaviorUser"=dword:00000003 "EnableLUA"=dword:00000001 EndRegedit: Reboot: ***************** Processes closed successfully. SystemRestore: On => completed Restore point was successfully created. C:\Program Files\WinZip\WZUpdateNotifier.exe => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{461E599B-7A9E-420C-8CAE-0226FA4664E8}" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{461E599B-7A9E-420C-8CAE-0226FA4664E8}" => removed successfully C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0E02C0C0-EE4C-4821-AC32-4A07F427B68B}" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E02C0C0-EE4C-4821-AC32-4A07F427B68B}" => removed successfully C:\WINDOWS\System32\Tasks\Lenovo\Vantage\StartupFixPlan => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\StartupFixPlan" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully HKLM\System\CurrentControlSet\Services\Tobii Service => removed successfully Tobii Service => service removed successfully HKLM\System\CurrentControlSet\Services\cpuz158 => removed successfully cpuz158 => service removed successfully HKLM\System\CurrentControlSet\Services\dmwappushsvc => removed successfully dmwappushsvc => service removed successfully HKU\S-1-5-21-106026854-2024998212-2574704355-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb} => removed successfully C:\ProgramData\TEMP => ":1EBFFC7B" ADS removed successfully C:\ProgramData\TEMP => ":263AF925" ADS removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E072B5E-9EEB-4BE0-8A7F-4F4F300FD91B}" => removed successfully ========================= File: C:\Program Files\WinZip\WZUpdateNotifier.exe; C:\Program Files\notepad\app\notepad.exe ======================== "C:\Program Files\WinZip\WZUpdateNotifier.exe" => not found C:\Program Files\notepad\app\notepad.exe File not signed MD5: E60295D4D202496C1D689343BB58C9E0 Creation and modification date: 2024-03-17 04:15 - 2023-12-04 05:50 Size: 000201216 Attributes: ----A Company Name: Microsoft Corporation Internal Name: Notepad Original Name: NOTEPAD.EXE Product: Microsoft® Windows® Operating System Description: Notepad File Version: 10.0.19041.3636 (WinBuild.160101.0800) Product Version: 10.0.19041.3636 Copyright: © Microsoft Corporation. All rights reserved. Virusscan: https://virusscan.jotti.org/filescanjob/406p7tjiy2 ====== End of File: ====== ========= schtasks.exe /change /TN "\Winhance\BloatRemoval" /Disable ========= SUCCESS: The parameters of scheduled task "\Winhance\BloatRemoval" have been changed. ========= End of CMD: ========= ========= schtasks.exe /change /TN "\WinZip Update Notifier" /Disable ========= SUCCESS: The parameters of scheduled task "\WinZip Update Notifier" have been changed. ========= End of CMD: ========= HKU\S-1-5-21-106026854-2024998212-2574704355-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb} => not found "C:\ProgramData\TEMP" => ":1EBFFC7B" ADS not found. "C:\ProgramData\TEMP" => ":263AF925" ADS not found. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E072B5E-9EEB-4BE0-8A7F-4F4F300FD91B}" => not found Registry ====> Handlingen er gennemf�rt. The system needed a reboot. ==== End of Fixlog 11:36:28 ====