Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 07-03-2026
Uruchomiony przez hp (09-03-2026 15:05:29)
Uruchomiony z C:\Users\hp\Downloads
Microsoft Windows 11 Home Wersja 25H2 26200.7922 (X64) (2025-12-22 09:26:17)
Tryb startu: Normal
==========================================================
==================== Konta użytkowników: =============================
(Załączenie wejścia w fixlist spowoduje jego usunięcie.)
Administrator (S-1-5-21-2579479290-873652568-4020128794-500 - Administrators - Disabled)
Gość (S-1-5-21-2579479290-873652568-4020128794-501 - Limited - Disabled)
hp (S-1-5-21-2579479290-873652568-4020128794-1001 - Administrators - Enabled) => C:\Users\hp
Konto domyślne (S-1-5-21-2579479290-873652568-4020128794-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2579479290-873652568-4020128794-504 - Limited - Disabled)
==================== Centrum zabezpieczeń ========================
(Załączenie wejścia w fixlist spowoduje jego usunięcie.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}
==================== Zainstalowane programy ======================
(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
ESET Security (HKLM\...\{5EBE1855-7526-4CE1-BA67-10FB18C5BC7E}) (Version: 19.0.14.0 - ESET, spol. s r.o.)
Google Chrome (HKLM\...\{6EB73F60-E858-3AF3-913A-0C1783656B42}) (Version: 145.0.7632.160 - Google LLC)
HP Deskjet 1050 J410 series — badanie mające na celu poprawę produktów (HKLM\...\{851E98B9-1D7E-4217-A07B-413EBC760EB2}) (Version: 28.1.1333.0 - Hewlett-Packard Co.)
HP Deskjet 1050 J410 series — podstawowe oprogramowanie urządzenia (HKLM\...\{202E1093-EB09-46ED-9717-5A48077308B5}) (Version: 28.1.1333.0 - Hewlett-Packard Co.)
HP Deskjet 1050 J410 series Pomoc (HKLM-x32\...\{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}) (Version: 140.0.66.66 - Hewlett Packard)
HP Support Solutions Framework (HKLM-x32\...\{A448AEB6-09D7-4066-961F-19CA473116AF}) (Version: 13.0.1.131 - HP Inc.)
HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 145.0.3800.97 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2579479290-873652568-4020128794-1001\...\OneDriveSetup.exe) (Version: 26.026.0209.0004 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.28902 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox (x64 pl) (HKLM\...\Mozilla Firefox) (Version: 148.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 147.0.3 - Mozilla)
OpenOffice 4.1.16 (HKLM-x32\...\{888D566B-E528-45A3-9FB9-AF84A70B35E6}) (Version: 4.116.9816 - Apache Software Foundation)
Revo Uninstaller 2.6.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.8 - VS Revo Group, Ltd.)
Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 145.0.3800.97 - Microsoft Corporation) Hidden
WinRAR 7.13 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 7.13.0 - win.rar GmbH)
Packages:
=========
AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-12-20] (INTEL CORP) [Startup Task]
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2026-03-03] (Sparse Package)
HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.47.308.0_x64__v10z8vjag6ke6 [2025-12-20] (HP Inc.)
Intel® Rapid Storage Technology Application -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_20.0.1024.0_x64__8j3eq9eme6ctt [2026-01-15] (INTEL CORP)
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2025-12-21] (Microsoft Corp.)
WiFi Analyzer -> C:\Program Files\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.8.3.0_x64__gs5k5vmxr2ste [2026-01-03] (Matt Hafner)
WinRAR -> C:\Program Files\WinRAR [2025-12-20] (win.rar GmbH)
==================== Niestandardowe rejestracje CLSID (filtrowane): ==============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{6e1f4e4d-65f7-4c83-be2e-9e6683cda268}\localserver32 -> C:\Program Files\ESET\ESET Security\egui.exe (ESET, spol. s r.o. -> ESET)
CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\hp\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.28902\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-24] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-24] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2025-11-24] (ESET, spol. s r.o. -> ESET)
==================== Codecs (filtrowane) ====================
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 1
HKLM\...\Drivers32: [midi1] => C:\WINDOWS\system32\wdmaud2.drv [143360 2026-02-27] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [91648 2026-02-27] (Microsoft Windows -> Microsoft Corporation)
==================== Skróty & WMI ========================
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje internetowe Firefoksa\Lotto.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> "-taskbar-tab" "ca9c3d9a-4e24-4026-ad4e-1df87180bd9f" "-new-window" "hxxps://www.lotto.pl" "-profile" "C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\nv2lq724.default-release-1768465124041" "-container" "0"
==================== Załadowane moduły (filtrowane) =============
==================== Alternate Data Streams (filtrowane) ========
==================== Tryb awaryjny (filtrowane) ==================
==================== Powiązania plików (filtrowane) =================
==================== Internet Explorer (filtrowane) =============
==================== Hosts - zawartość: =========================
(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
2022-05-07 06:24 - 2022-05-07 06:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Obecnie brak automatycznej naprawy dla tej sekcji.)
DNS Servers: 178.235.153.33 - 178.235.153.32
Zapora systemu Windows [funkcja włączona]
Network Binding:
=============
Wi-Fi: Realtek RTL8822CE 802.11ac PCIe Adapter -> rtwlane.sys
==================== Inne obszary ===========================
(Obecnie brak automatycznej naprawy dla tej sekcji.)
HKU\S-1-5-21-2579479290-873652568-4020128794-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
==================== Reguły Zapory systemu Windows (filtrowane) ================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
FirewallRules: [{28AB8E16-4674-455C-9F2C-2F789F19FFE6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{EA5E78A7-CF0F-4E29-A9B9-8228C8674266}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3DBA9F09-681D-4585-A5D9-3E8A5F25B72E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25331.1101.4152.8047_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0846B1EF-93B0-447F-B903-F3BB7A5C2E58}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25331.1101.4152.8047_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{36ACE334-4121-4F29-9402-C1D047587C4A}] => (Allow) C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\USBSetup.exe (HP Inc. -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{44468CE9-A775-4994-A241-D8AD337E589F}C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe] => (Allow) C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe (WebCatalog, Inc.) [Brak podpisu cyfrowego]
FirewallRules: [UDP Query User{33E26696-B359-43A8-AD86-AC44B032EEB2}C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe] => (Allow) C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe (WebCatalog, Inc.) [Brak podpisu cyfrowego]
FirewallRules: [{0D6F21FF-9396-4DC8-8F91-CBB3847D5997}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Punkty Przywracania systemu =========================
UWAGA: Przywracanie systemu jest wyłączone (Total:237.44 GB) (Free:185.1 GB) (78%)
==================== Wadliwe urządzenia w Menedżerze urządzeń ============
==================== Błędy w Dzienniku zdarzeń: ========================
Dziennik Aplikacja:
==================
Error: (03/09/2026 02:22:54 PM) (Source: Application Error) (EventID: 1000) (User: ZARZĄDZANIE NT)
Description: Nazwa aplikacji powodującej błąd: RstMwService.exe, wersja: 19.5.7.1058, sygnatura czasowa: 0x649d49b2
Nazwa modułu powodującego błąd: ntdll.dll, wersja: 10.0.26100.7920, sygnatura czasowa: 0x5ffc11eb
Kod wyjątku: 0xc0000374
Przesunięcie błędu: 0x00000000001176e5
Identyfikator procesu błędu: 0x15cc
Czas uruchomienia aplikacji powodującej błąd: 0x1dcafc7d5cec818
Faulting ścieżka aplikacji: C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_d0ba3dc7378fedf6\RstMwService.exe
Faulting ścieżka modułu: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 05f545c5-5f1b-418f-9469-a6c640bf1f44
Faulting pełna nazwa pakietu:
Faulting identyfikator aplikacji względnej dla pakietu:
Error: (03/09/2026 01:38:37 PM) (Source: MsiInstaller) (EventID: 1013) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The device is not a supported system. Aborting installation.
Error: (03/09/2026 01:38:36 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: DisplayControl, ,
Error: (03/09/2026 11:29:42 AM) (Source: MsiInstaller) (EventID: 1013) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The device is not a supported system. Aborting installation.
Error: (03/09/2026 11:29:41 AM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: DisplayControl, ,
Error: (03/09/2026 08:35:50 AM) (Source: MsiInstaller) (EventID: 1013) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The device is not a supported system. Aborting installation.
Error: (03/09/2026 08:35:49 AM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: DisplayControl, ,
Error: (03/09/2026 07:54:51 AM) (Source: MsiInstaller) (EventID: 1013) (User: ZARZĄDZANIE NT)
Description: Product: HP Display Control Service -- The device is not a supported system. Aborting installation.
Dziennik System:
=============
Error: (03/09/2026 02:27:51 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: ZARZĄDZANIE NT)
Description: Updated Secure Boot certificates are available on this device but have not yet been applied to the firmware. Review the published guidance to complete the update and maintain full protection. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:AMI;FirmwareVersion:F.33;OEMModelBaseBoard:87FD;OEMManufacturerName:HP;OSArchitecture:amd64;
BucketId: dac2f20c006420567c6d111e5a5ec0b59c0f417c2b7bc180062eca05f9519f10
BucketConfidenceLevel: Under Observation - More Data Needed
UpdateType:
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.
Error: (03/09/2026 02:23:06 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3502) (User: ZARZĄDZANIE NT)
Description: Usuwanie skojarzenia urządzenia (rozłączenie) nie powiodło się.
Error: (03/09/2026 02:23:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-4JJOVJN)
Description: Serwer {A7451292-7906-414C-BB7B-DFD32C749E5C} nie zarejestrował się w modelu DCOM w wymaganym czasie.
Error: (03/09/2026 02:22:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Intel(R) Storage Middleware Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.
Error: (03/09/2026 02:22:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi GUMemfilesService z powodu następującego błędu:
Nie można odnaleźć określonego pliku.
Error: (03/09/2026 01:47:27 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: ZARZĄDZANIE NT)
Description: Updated Secure Boot certificates are available on this device but have not yet been applied to the firmware. Review the published guidance to complete the update and maintain full protection. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:AMI;FirmwareVersion:F.33;OEMModelBaseBoard:87FD;OEMManufacturerName:HP;OSArchitecture:amd64;
BucketId: dac2f20c006420567c6d111e5a5ec0b59c0f417c2b7bc180062eca05f9519f10
BucketConfidenceLevel: Under Observation - More Data Needed
UpdateType:
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.
Error: (03/09/2026 01:42:43 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3502) (User: ZARZĄDZANIE NT)
Description: Usuwanie skojarzenia urządzenia (rozłączenie) nie powiodło się.
Error: (03/09/2026 01:42:37 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-4JJOVJN)
Description: Serwer {A7451292-7906-414C-BB7B-DFD32C749E5C} nie zarejestrował się w modelu DCOM w wymaganym czasie.
CodeIntegrity:
===============
Date: 2026-03-09 14:42:26
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
Date: 2026-03-09 14:37:52
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
==================== Statystyki pamięci ===========================
BIOS: AMI F.33 10/04/2023
Płyta główna: HP 87FD
Procesor: 11th Gen Intel(R) Core(TM) i3-1115G4 @ 3.00GHz
Procent pamięci w użyciu: 71%
Całkowita pamięć fizyczna: 7834.64 MB
Dostępna pamięć fizyczna: 2248 MB
Całkowita pamięć wirtualna: 12442.64 MB
Dostępna pamięć wirtualna: 5548.93 MB
==================== Dyski ================================
Drive c: () (Fixed) (Total:237.44 GB) (Free:185.1 GB) (Model: NVMe WD PC SN740 SDDPNQD-256G-1006) NTFS
\\?\Volume{6c3faba5-5130-4438-b05a-2e134021c851}\ () (Fixed) (Total:0.92 GB) (Free:0.11 GB) NTFS
\\?\Volume{d07386d2-5fe2-4a53-bb39-2223d52186e0}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Tablica partycji ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== Koniec Addition.txt =======================