From CupNo2413, 8 Hours ago, written in Plain Text.
This paste will self destruct in 15 Hours.
Embed
  1. Fix result of Farbar Recovery Scan Tool (x64) Version: 15-03-2026
  2. Ran by Shawn (19-03-2026 14:19:32) Run:1
  3. Running from C:\Users\Shawn\Desktop
  4. Loaded Profiles: Shawn
  5. Boot Mode: Normal
  6. ==============================================
  7.  
  8. fixlist content:
  9. *****************
  10. Start::
  11. SystemRestore: On
  12. CreateRestorePoint:
  13. CloseProcesses:
  14.  
  15. HKLM\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe (No File)
  16. HKU\S-1-5-19\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe (No File)
  17. HKU\S-1-5-20\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe (No File)
  18. GroupPolicy: Restriction ? <==== ATTENTION
  19. Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
  20. Task: {DE967047-1A95-44FC-8748-97C4796E0EA9} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe  --automatic (No File)
  21. Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File)
  22. Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe  (No File)
  23. Task: {548E5980-5268-48C9-B303-4E181BBE8574} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe  /RunOnAC RebootDialog (No File)
  24. Task: {D94E6F92-3DEE-47A9-8C28-782403CE8B0F} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe  /RunOnBattery RebootDialog (No File)
  25. Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)
  26. (sihost.exe ->) (E2014DE2-35CD-415B-AA3F-BC64B1D1F3B9 -> The NW.js Community) C:\Program Files\WindowsApps\PrivacyBrowse.PrivacyBrowse_1.12.78.0_neutral__hz4wbnfrnhwdr\VFS\AppData\PrivacyBrowse\PrivacyBrowse.exe <8>
  27.  
  28. EmptyTemp:
  29. End::
  30. *****************
  31.  
  32. SystemRestore: On => Error -> 9%
  33. CreateRestorePoint: Error(1=9%) -> Failed to create a restore point.
  34. Processes closed successfully.
  35. "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HPSEU_Host_Launcher" => removed successfully
  36. "HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\HPSEU_Host_Launcher" => removed successfully
  37. "HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\HPSEU_Host_Launcher" => removed successfully
  38.  
  39. "C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
  40.  
  41. C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
  42. C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
  43. C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
  44. C:\ProgramData\NTUSER.pol => moved successfully
  45. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DE967047-1A95-44FC-8748-97C4796E0EA9}" => removed successfully
  46. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DE967047-1A95-44FC-8748-97C4796E0EA9}" => removed successfully
  47. C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => moved successfully
  48. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => removed successfully
  49. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
  50. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
  51. C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
  52. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
  53. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
  54. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
  55. C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
  56. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
  57. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{548E5980-5268-48C9-B303-4E181BBE8574}" => removed successfully
  58. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{548E5980-5268-48C9-B303-4E181BBE8574}" => removed successfully
  59. C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => moved successfully
  60. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => removed successfully
  61. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D94E6F92-3DEE-47A9-8C28-782403CE8B0F}" => removed successfully
  62. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D94E6F92-3DEE-47A9-8C28-782403CE8B0F}" => removed successfully
  63. C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => moved successfully
  64. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => removed successfully
  65. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
  66. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
  67. C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
  68. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
  69. C:\Program Files\WindowsApps\PrivacyBrowse.PrivacyBrowse_1.12.78.0_neutral__hz4wbnfrnhwdr\VFS\AppData\PrivacyBrowse\PrivacyBrowse.exe => No running process found
  70.  
  71. =========== EmptyTemp: ==========
  72.  
  73. FlushDNS => completed
  74. BITS transfer queue => 1048576 B
  75. DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 197748344 B
  76. Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
  77. Windows/system/drivers => 52421539 B
  78. Edge => 570283302 B
  79. Chrome => 2605411858 B
  80. Firefox => 0 B
  81. Opera => 0 B
  82.  
  83. Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
  84. Default => 9216 B
  85. ProgramData => 0 B
  86. Public => 0 B
  87. systemprofile => 1300 B
  88. systemprofile32 => 0 B
  89. LocalService => 0 B
  90. NetworkService => 413830 B
  91. Shawn => 210052487 B
  92.  
  93. RecycleBin => 0 B
  94. EmptyTemp: => 3.4 GB temporary data Removed.
  95.  
  96. ================================
  97.  
  98.  
  99. The system needed a reboot.
  100.  
  101. ==== End of Fixlog 14:27:38 ====