JustPaste.it

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 12-04-2026 01
Uruchomiony przez hp (15-04-2026 11:30:23)
Uruchomiony z C:\Users\hp\Downloads
Microsoft Windows 11 Home Wersja 25H2 26200.8117 (X64) (2025-12-22 09:26:17)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

Administrator (S-1-5-21-2579479290-873652568-4020128794-500 - Administrators - Disabled)
Gość (S-1-5-21-2579479290-873652568-4020128794-501 - Limited - Disabled)
hp (S-1-5-21-2579479290-873652568-4020128794-1001 - Administrators - Enabled) => C:\Users\hp
Konto domyślne (S-1-5-21-2579479290-873652568-4020128794-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2579479290-873652568-4020128794-504 - Limited - Disabled)

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

ESET Security (HKLM\...\{5EBE1855-7526-4CE1-BA67-10FB18C5BC7E}) (Version: 19.1.12.0 - ESET, spol. s r.o.)
Google Chrome (HKLM\...\{6EB73F60-E858-3AF3-913A-0C1783656B42}) (Version: 147.0.7727.56 - Google LLC)
HP Deskjet 1050 J410 series — badanie mające na celu poprawę produktów (HKLM\...\{851E98B9-1D7E-4217-A07B-413EBC760EB2}) (Version: 28.1.1333.0 - Hewlett-Packard Co.)
HP Deskjet 1050 J410 series — podstawowe oprogramowanie urządzenia (HKLM\...\{202E1093-EB09-46ED-9717-5A48077308B5}) (Version: 28.1.1333.0 - Hewlett-Packard Co.)
HP Deskjet 1050 J410 series Pomoc (HKLM-x32\...\{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}) (Version: 140.0.66.66 - Hewlett Packard)
HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 146.0.3856.109 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2579479290-873652568-4020128794-1001\...\OneDriveSetup.exe) (Version: 26.051.0316.0004 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.28902 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox (x64 pl) (HKLM\...\Mozilla Firefox) (Version: 149.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 149.0.2 - Mozilla)
OpenOffice 4.1.16 (HKLM-x32\...\{888D566B-E528-45A3-9FB9-AF84A70B35E6}) (Version: 4.116.9816 - Apache Software Foundation)
Revo Uninstaller 2.6.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.8 - VS Revo Group, Ltd.)
Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 146.0.3856.97 - Microsoft Corporation) Hidden
WinRAR 7.13 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 7.13.0 - win.rar GmbH)

Packages:
=========
AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-12-20] (INTEL CORP) [Startup Task]
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2026-04-14] (Sparse Package)
HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.47.308.0_x64__v10z8vjag6ke6 [2025-12-20] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_164.1.1128.0_x64__v10z8vjag6ke6 [2026-04-10] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.51.14.0_x64__v10z8vjag6ke6 [2026-03-12] (HP Inc.)
Intel® Rapid Storage Technology Application -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_20.0.1024.0_x64__8j3eq9eme6ctt [2026-01-15] (INTEL CORP)
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-04-15] ()
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2025-12-21] (Microsoft Corp.)
WiFi Analyzer -> C:\Program Files\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.8.3.0_x64__gs5k5vmxr2ste [2026-01-03] (Matt Hafner)
WinAppRuntime.Main.1.8 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.8_8000.806.2252.0_x64__8wekyb3d8bbwe [2026-04-14] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2025-12-20] (win.rar GmbH)

==================== Niestandardowe rejestracje CLSID (filtrowane): ==============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{6e1f4e4d-65f7-4c83-be2e-9e6683cda268}\localserver32 -> C:\Program Files\ESET\ESET Security\egui.exe (ESET, spol. s r.o. -> ESET)
CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{A6AF7B3B-DD1E-4DB4-9E0B-DA1E9AE528DE}\InprocServer32 -> C:\Users\hp\AppData\Local\Mozilla Firefox\notificationserver.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-2579479290-873652568-4020128794-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\hp\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.28902\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2026-04-14] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2026-04-14] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2026-04-14] (ESET, spol. s r.o. -> ESET)

==================== Codecs (filtrowane) ====================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 1
HKLM\...\Drivers32: [midi1] => C:\WINDOWS\system32\wdmaud2.drv [143360 2026-04-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [94720 2026-04-08] (Microsoft Windows -> Microsoft Corporation)

==================== Skróty & WMI ========================

==================== Załadowane moduły (filtrowane) =============

==================== Alternate Data Streams (filtrowane) ========

==================== Tryb awaryjny (filtrowane) ==================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{75416E63-5912-4DFA-AE8F-3EFACCAFFB14} => ""="NvmeDisk"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{75416E63-5912-4DFA-AE8F-3EFACCAFFB14} => ""="NvmeDisk"

==================== Powiązania plików (filtrowane) =================

==================== Internet Explorer (filtrowane) =============

BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2026-01-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2026-01-27] (HP Inc. -> HP Inc.)

==================== Hosts - zawartość: =========================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

DNS Servers: 178.235.153.33 - 178.235.153.32
Zapora systemu Windows [funkcja włączona]

Network Binding:
=============
Wi-Fi: Realtek RTL8822CE 802.11ac PCIe Adapter -> rtwlane.sys

==================== Inne obszary ===========================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-2579479290-873652568-4020128794-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

==================== Reguły Zapory systemu Windows (filtrowane) ================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [{3DBA9F09-681D-4585-A5D9-3E8A5F25B72E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25331.1101.4152.8047_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0846B1EF-93B0-447F-B903-F3BB7A5C2E58}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25331.1101.4152.8047_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{36ACE334-4121-4F29-9402-C1D047587C4A}] => (Allow) C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\USBSetup.exe (HP Inc. -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{44468CE9-A775-4994-A241-D8AD337E589F}C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe] => (Allow) C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe (WebCatalog, Inc.) [Brak podpisu cyfrowego]
FirewallRules: [UDP Query User{33E26696-B359-43A8-AD86-AC44B032EEB2}C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe] => (Allow) C:\users\hp\appdata\local\programs\webcatalogapps\gazeta.pl\gazeta.pl.exe (WebCatalog, Inc.) [Brak podpisu cyfrowego]
FirewallRules: [{808954B3-AD1E-4D1A-940A-94BF359640FA}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2AC32CB4-FB05-45A0-9412-8F3D743351D2}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{75593506-75A6-4CEE-935C-8A043FB0AACA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)

==================== Punkty Przywracania systemu =========================

08-04-2026 15:40:00 Instalator modułów systemu Windows
13-04-2026 08:46:54 Windows Update
15-04-2026 11:15:24 Instalator modułów systemu Windows

==================== Wadliwe urządzenia w Menedżerze urządzeń ============

==================== Błędy w Dzienniku zdarzeń: ========================

Dziennik Aplikacja:
==================
Error: (04/15/2026 11:15:36 AM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (04/15/2026 11:15:36 AM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (04/15/2026 11:15:36 AM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (04/14/2026 04:37:52 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (04/14/2026 04:37:51 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (04/14/2026 04:37:51 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (04/10/2026 04:25:50 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance.  hr = 0x8007045b, Trwa proces zamykania systemu..

Error: (04/10/2026 04:25:50 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu.]


Dziennik System:
=============
Error: (04/15/2026 11:01:04 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: ZARZĄDZANIE NT)
Description: Updated Secure Boot certificates are available on this device but have not yet been applied to the firmware. Review the published guidance to complete the update and maintain full protection. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:AMI;FirmwareVersion:F.33;OEMModelBaseBoard:87FD;OEMManufacturerName:HP;OSArchitecture:amd64;
BucketId: dac2f20c006420567c6d111e5a5ec0b59c0f417c2b7bc180062eca05f9519f10
BucketConfidenceLevel: Under Observation - More Data Needed
UpdateType: 
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.

Error: (04/15/2026 10:56:14 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-4JJOVJN)
Description: Serwer {A7451292-7906-414C-BB7B-DFD32C749E5C} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (04/15/2026 10:56:05 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi MBAMService z powodu następującego błędu: 
Nie można odnaleźć określonego pliku.

Error: (04/15/2026 06:43:11 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-4JJOVJN)
Description: Serwer {A7451292-7906-414C-BB7B-DFD32C749E5C} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (04/15/2026 06:43:07 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: ZARZĄDZANIE NT)
Description: Miniport: Microsoft Wi-Fi Direct Virtual Adapter #2, {a398b78c-9b50-4e29-82a7-51efd2a2b366}, zdarzenie: 74

Error: (04/14/2026 04:33:45 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: ZARZĄDZANIE NT)
Description: Updated Secure Boot certificates are available on this device but have not yet been applied to the firmware. Review the published guidance to complete the update and maintain full protection. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:AMI;FirmwareVersion:F.33;OEMModelBaseBoard:87FD;OEMManufacturerName:HP;OSArchitecture:amd64;
BucketId: dac2f20c006420567c6d111e5a5ec0b59c0f417c2b7bc180062eca05f9519f10
BucketConfidenceLevel: Under Observation - More Data Needed
UpdateType: 
For more information, please see https://go.microsoft.com/fwlink/?linkid=2301018.

Error: (04/14/2026 04:28:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-4JJOVJN)
Description: Serwer {A7451292-7906-414C-BB7B-DFD32C749E5C} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (04/14/2026 04:28:53 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3502) (User: ZARZĄDZANIE NT)
Description: Usuwanie skojarzenia urządzenia (rozłączenie) nie powiodło się.


CodeIntegrity:
===============
Date: 2026-04-15 11:20:53
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements. 


==================== Statystyki pamięci =========================== 

BIOS: AMI F.33 10/04/2023
Płyta główna: HP 87FD
Procesor: 11th Gen Intel(R) Core(TM) i3-1115G4 @ 3.00GHz
Procent pamięci w użyciu: 89%
Całkowita pamięć fizyczna: 7834.64 MB
Dostępna pamięć fizyczna: 836.77 MB
Całkowita pamięć wirtualna: 13978.64 MB
Dostępna pamięć wirtualna: 4886.98 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:237.44 GB) (Free:165.86 GB) (Model: NVMe WD PC SN740 SDDPNQD-256G-1006) NTFS

\\?\Volume{6c3faba5-5130-4438-b05a-2e134021c851}\ () (Fixed) (Total:0.92 GB) (Free:0.1 GB) NTFS
\\?\Volume{d07386d2-5fe2-4a53-bb39-2223d52186e0}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Tablica partycji ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Koniec  Addition.txt =======================