Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 10-11-2025 Uruchomiony przez Gieni (10-11-2025 18:54:32) Uruchomiony z C:\Users\Gieni\Downloads Microsoft Windows 11 Home Wersja 24H2 26100.6899 (X64) (2025-02-16 00:06:34) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-2154322142-1083756757-1331411065-500 - Administrator - Disabled) Gieni (S-1-5-21-2154322142-1083756757-1331411065-1001 - Administrator - Enabled) => C:\Users\Gieni Gość (S-1-5-21-2154322142-1083756757-1331411065-501 - Limited - Disabled) Konto domyślne (S-1-5-21-2154322142-1083756757-1331411065-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-2154322142-1083756757-1331411065-504 - Limited - Disabled) WsiAccount (S-1-5-21-2154322142-1083756757-1331411065-1009 - Limited - Disabled) => C:\Users\WsiAccount ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) ExpressVPN (HKLM-x32\...\{91acec93-88d2-4afe-bbc3-e3e376c03732}) (Version: 10.9.0.20 - ExpressVPN) ExpressVPN (HKLM-x32\...\{E5B9C3E5-889C-4F22-A959-F4B8765D7845}) (Version: 10.9.0.20 - ExpressVPN) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 142.0.7444.61 - Google LLC) HP Audio Switch (HKLM-x32\...\{0B1DA73D-0562-4DE1-B942-CEF286CF2EDD}) (Version: 1.0.211.0 - HP Inc.) HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.19.0 - HP Inc.) HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.) ManageEngine Desktop Central - Agent (HKLM-x32\...\{6AD2231F-FF48-4D59-AC26-405AFAE23DB7}) (Version: 10.1.2215.1.W - ZohoCorp) Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.19328.20178 - Microsoft Corporation) Microsoft 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.19328.20178 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 142.0.3595.53 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2154322142-1083756757-1331411065-1001\...\OneDriveSetup.exe) (Version: 25.194.1005.0003 - Microsoft Corporation) Microsoft OneNote - en-us (HKLM\...\OneNoteFreeRetail - en-us) (Version: 16.0.19328.20178 - Microsoft Corporation) Microsoft OneNote - pl-pl (HKLM\...\OneNoteFreeRetail - pl-pl) (Version: 16.0.19328.20178 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19328.20106 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.19328.20106 - Microsoft Corporation) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) ScreenConnect Client (f54e48458ed500f5) (HKLM-x32\...\{0C959B8A-E9CB-5682-CEDB-1381DB90CEA2}) (Version: 25.2.4.9229 - ScreenConnect Software) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 142.0.3595.53 - Microsoft Corporation) Hidden Unchecky v1.2 (HKLM-x32\...\Unchecky) (Version: 1.2 - Reason Software Company Inc.) WebAdvisor firmy McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1077 - McAfee, LLC) Chrome apps: ============ Midus Trade GmbH (HKU\S-1-5-21-2154322142-1083756757-1331411065-1001\...\944a29e4a9cc6c0353985c52d0c412f2) (Version: 1.0 - Google\Chrome) Packages: ========= @{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-11] () AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m [2023-07-29] (Advanced Micro Devices Inc.) [Startup Task] Dropbox – promocja -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.35.0_x64__xbfy0k16fey96 [2025-11-04] (Dropbox Inc.) Energy Star -> C:\Program Files\WindowsApps\AD2F1837.HPInc.EnergyStar_1.2.0.0_x64__v10z8vjag6ke6 [2025-02-07] (HP Inc.) HP -> C:\Program Files\WindowsApps\AD2F1837.myHP_49.52537.7800.0_x64__v10z8vjag6ke6 [2025-11-04] (HP Inc.) [Startup Task] HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.44.301.0_x64__v10z8vjag6ke6 [2025-02-07] (HP Inc.) HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_2.9.0.0_x64__v10z8vjag6ke6 [2025-11-08] (HP Inc.) HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.4.17.0_x64__v10z8vjag6ke6 [2025-08-22] (HP Inc.) HP QuickDrop -> C:\Program Files\WindowsApps\AD2F1837.HPQuickDrop_2.5.10921.0_x64__v10z8vjag6ke6 [2023-05-11] (HP Inc.) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_161.1.1087.0_x64__v10z8vjag6ke6 [2025-11-04] (HP Inc.) HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.49.5.0_x64__v10z8vjag6ke6 [2025-11-04] (HP Inc.) HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.10.0_x64__v10z8vjag6ke6 [2025-11-04] (HP Inc.) Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-11-09] () Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_2250.1.0.0_x64__8xx8rvfyw5nnt [2025-03-11] (Meta) Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-09-14] (Microsoft Corp.) Microsoft Teams Play Together -> C:\Program Files\WindowsApps\Microsoft.TeamsXboxGameBarWidget_1.2401.1101.0_x64__8wekyb3d8bbwe [2024-01-25] (Microsoft Corporation) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_55.20610.576.0_x64__8wekyb3d8bbwe [2025-07-07] (Microsoft Corporation) Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-11-09] () Minecraft Education -> C:\Program Files\WindowsApps\Microsoft.MinecraftEducationEdition_1.21.9301.0_x64__8wekyb3d8bbwe [2025-11-04] (Microsoft Studios) MSN Finanse -> C:\Program Files\WindowsApps\www.msn.com-2291B8EC_1.0.0.1_neutral__q77jw2zwjvy92 [2025-09-07] (www.msn.com) OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-11-09] () Pakiet Windows Feature Experience -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-07] (Microsoft Windows) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-2154322142-1083756757-1331411065-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\Gieni\AppData\Local\Microsoft\OneDrive\25.194.1005.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2154322142-1083756757-1331411065-1001_Classes\CLSID\{7d043d4e-4259-f459-3630-7b434fd7752c}\localserver32 -> C:\Program Files\HP\HP Media Network\HPMediaNetwork.exe (HP Inc. -> HP Inc.) CustomCLSID: HKU\S-1-5-21-2154322142-1083756757-1331411065-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\Gieni\AppData\Local\Microsoft\OneDrive\25.194.1005.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2154322142-1083756757-1331411065-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => -> Brak pliku ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [MidisrvTransferComplete] => 0 ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Gieni\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_edgokpejjnbibdelbffmlemhidplkdmc\Midus Trade GmbH.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=edgokpejjnbibdelbffmlemhidplkdmc ShortcutWithArgument: C:\Users\Gieni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Midus Trade GmbH.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=edgokpejjnbibdelbffmlemhidplkdmc ShortcutWithArgument: C:\Users\Gieni\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Midus Trade GmbH.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=edgokpejjnbibdelbffmlemhidplkdmc ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe offers.lnk -> C:\Program Files (x86)\Online Services\Adobe\WizLink.exe () -> hxxp://js.redirect.hp.com/jumpstation?type=203_NW&RedeemCode=00yxNsfrSe8%2fRiJJMDLXy0AGRTBW%2bLY55tfICvgb6zo5gx7107sugYwgMLB4jOje%2b7p6tfy1h44M%2fEQlT0DBu8eYS%2bxS81xcFt3ne%2fwXKQ%2bkN8Um2X%2bZeg1sxfp1%2bqVIa231ex2QkA6yM4JuJ9IBwsE9zNvH%2fAi8o7cMRSk87XU%3d ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.com.lnk -> C:\Program Files (x86)\Online Services\Amazon\WizLink.exe () -> hxxp://www.amazon.com/gp/ubp/oneButton/config/redirectHome?tagbase=hpbus-ubpl&ref=aagateway-businesspc-hp ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass.lnk -> C:\Program Files (x86)\Online Services\LastPass\WizLink.exe () -> hxxp://js.redirect.hp.com/jumpstation?bd=lastpass&c=*&locale=*&pf=*&s=*&tp=edge ==================== Załadowane moduły (filtrowane) ============= 2025-07-08 18:32 - 2024-08-08 17:35 - 000108032 _____ () [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\Remotely\Shared.dll 2025-07-09 07:51 - 2025-07-09 07:51 - 000138240 _____ () [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\e5fb7b8b0f77e31809bada14876d40c2\Interop.IWshRuntimeLibrary.ni.dll 2025-07-08 18:32 - 2024-08-08 17:35 - 000041472 _____ (Desktop.Native) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\Remotely\Desktop.Native.dll 2025-11-07 01:35 - 2025-11-07 01:35 - 000139776 _____ (hardcodet.net) [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\2dca5887bb0d77e07943a24b9d9f33f4\Hardcodet.Wpf.TaskbarNotification.ni.dll 2025-07-08 18:32 - 2024-08-08 17:35 - 000245248 _____ (Immense Networks) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\Remotely\Remotely_Agent.dll 2025-11-07 01:36 - 2025-11-07 01:36 - 001716736 _____ (Mark Heath & Contributors) [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\NAudio\5f6bfbb3705bf9cb53fd3f6916d252c2\NAudio.ni.dll 2025-07-08 18:32 - 2024-07-05 21:55 - 000011776 _____ (neuecc,aarnott) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\Remotely\MessagePack.Annotations.dll 2025-07-08 18:32 - 2024-07-05 21:55 - 000327680 _____ (neuecc,aarnott) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\Remotely\MessagePack.dll 2025-11-07 01:36 - 2025-11-07 01:36 - 003088896 _____ (Newtonsoft) [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\8fc9f29dfc1f9be415754e656f5ad449\Newtonsoft.Json.ni.dll 2025-11-07 01:35 - 2025-11-07 01:35 - 000780288 _____ (The Apache Software Foundation) [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\log4net\4f8edd01a8e321091cd491c50b4d1556\log4net.ni.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ManageEngine Desktop Central - Remote Control => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ManRas => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ScreenConnect Client (f54e48458ed500f5) => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ============= SearchScopes: HKLM -> {CFB729F5-1603-4836-B77F-6F335E33FA9E} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5FcPortugueseode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {CFB729F5-1603-4836-B77F-6F335E33FA9E} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5FcPortugueseode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2154322142-1083756757-1331411065-1001 -> {CFB729F5-1603-4836-B77F-6F335E33FA9E} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5FcPortugueseode=qs&index=aps&field-keywords={searchTerms} BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2025-10-21] (HP Inc. -> HP Inc.) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2025-10-21] (HP Inc. -> HP Inc.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-11-03] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2021-06-05 13:08 - 2025-11-07 01:21 - 000002103 _____ C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 rp.yefeneri2.com 0.0.0.0 os.yefeneri2.com 0.0.0.0 os2.yefeneri2.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com ==================== Network =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) DNS Servers: 195.46.37.3 - 195.46.37.2 Zapora systemu Windows [funkcja włączona] Network Binding: ============= Wi-Fi: Realtek RTL8821CE 802.11ac PCIe Adapter -> rtwlane.sys Ethernet 2: ExpressVPN TAP Adapter -> tapexpressvpn.sys Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys Połączenie lokalne: ExpressVPN TUN Driver -> expressvpn-tun.sys ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2154322142-1083756757-1331411065-1001\Control Panel\Desktop\\Wallpaper -> D:\Tapeta z Przeglądarki fotografii systemu Windows.jpg HKU\S-1-5-21-2154322142-1083756757-1331411065-1009\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5) HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0) ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\Run32: => "ExpressVPNNotificationService" HKU\S-1-5-21-2154322142-1083756757-1331411065-1001\...\StartupApproved\Run: => "HPSEU_Host_Launcher" HKU\S-1-5-21-2154322142-1083756757-1331411065-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D12E88CF926ECD2E3210F09BE4591E3D" HKU\S-1-5-21-2154322142-1083756757-1331411065-1001\...\StartupApproved\Run: => "OneDrive" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{87DC3170-0A69-4273-B580-7F51721B906F}C:\users\gieni\downloads\anydesk (6).exe] => (Allow) C:\users\gieni\downloads\anydesk (6).exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [TCP Query User{F6E7C266-AE58-4371-A63E-975723B7D158}C:\users\gieni\downloads\anydesk (6).exe] => (Allow) C:\users\gieni\downloads\anydesk (6).exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{9CF55F3A-D99D-4858-9AA7-04D2FAEBEB9F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{35A5C2E9-69E5-4AB6-A6D6-5D2F54D5F4FD}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25275.2501.4002.4859_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{92B88C58-8760-4773-85A7-D8277A48B654}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25275.2501.4002.4859_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{00A850BC-982B-4EB4-A806-EF3397148D80}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MinecraftEducationEdition_1.21.9301.0_x64__8wekyb3d8bbwe\Minecraft.Windows.exe (Microsoft Corporation -> ) FirewallRules: [{62CED870-117B-41E1-ACBA-F20EB5F8CF39}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MinecraftEducationEdition_1.21.9301.0_x64__8wekyb3d8bbwe\Minecraft.Windows.exe (Microsoft Corporation -> ) FirewallRules: [{D7089CFA-9E46-442B-B5DF-2979E25C7778}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Punkty Przywracania systemu ========================= 08-11-2025 08:23:06 Windows Update ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (11/10/2025 06:07:46 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: ZARZĄDZANIE NT) Description: System Windows nie może załadować biblioteki DLL rozszerzalnego licznika „C:\WINDOWS\system32\sysmain.dll” (kod błędu systemu Win32: 126). Error: (11/09/2025 04:57:05 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: ZARZĄDZANIE NT) Description: System Windows nie może załadować biblioteki DLL rozszerzalnego licznika „C:\WINDOWS\system32\sysmain.dll” (kod błędu systemu Win32: 126). Error: (11/08/2025 04:47:34 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: ZARZĄDZANIE NT) Description: System Windows nie może załadować biblioteki DLL rozszerzalnego licznika „C:\WINDOWS\system32\sysmain.dll” (kod błędu systemu Win32: 126). Error: (11/07/2025 02:23:39 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: ZARZĄDZANIE NT) Description: System Windows nie może załadować biblioteki DLL rozszerzalnego licznika „C:\WINDOWS\system32\sysmain.dll” (kod błędu systemu Win32: 126). Error: (11/07/2025 01:21:31 AM) (Source: Remotely_Agent) (EventID: 0) (User: ) Description: Category: Remotely.Agent.Services.AgentHubConnection EventId: 0 Error while connecting to server. Exception: System.Net.Http.HttpRequestException: Próba przeprowadzenia operacji, wykonywanej przez gniazdo, na nieosiągalnej sieci. (77.246.111.241:5000) ---> System.Net.Sockets.SocketException (10051): Próba przeprowadzenia operacji, wykonywanej przez gniazdo, na nieosiągalnej sieci. at System.Net.Sockets.Socket.AwaitableSocketAsyncEventArgs.CreateException(SocketError error, Boolean forAsyncThrow) at System.Net.Sockets.Socket.AwaitableSocketAsyncEventArgs.ConnectAsync(Socket socket) at System.Net.Sockets.Socket.ConnectAsync(EndPoint remoteEP, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[TStateMachine](TStateMachine& stateMachine) at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[TStateMachine](TStateMachine& stateMachine) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[TStateMachine](TStateMachine& stateMachine) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.AddHttp11ConnectionAsync(QueueItem queueItem) at System.Runtime.CompilerServices.AsyncTaskMethodBuilder`1.AsyncStateMachineBox`1.ExecutionContextCallback(Object s) at System.Threading.ExecutionContext.RunFromThreadPoolDispatchLoop(Thread threadPoolThread, ExecutionContext executionContext, ContextCallback callback, Object state) at System.Runtime.CompilerServices.AsyncTaskMethodBuilder`1.AsyncStateMachineBox`1.MoveNext(Thread threadPoolThread) at System.Runtime.CompilerServices.AsyncTaskMethodBuilder`1.AsyncStateMachineBox`1.ExecuteFromThreadPool(Thread threadPoolThread) at System.Threading.ThreadPoolWorkQueue.Dispatch() at System.Threading.PortableThreadPool.WorkerThread.WorkerThreadStart() --- End of stack trace from previous location --- at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) --- End of inner exception stack trace --- at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.AddHttp11ConnectionAsync(QueueItem queueItem) at System.Threading.Tasks.TaskCompletionSourceWithCancellation`1.WaitWithCancellationAsync(CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.SendWithVersionDetectionAndRetryAsync(HttpRequestMessage request, Boolean async, Boolean doRequestAuth, CancellationToken cancellationToken) at System.Net.Http.RedirectHandler.SendAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.Internal.AccessTokenHttpMessageHandler.SendAsync(HttpRequestMessage request, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.Internal.LoggingHttpMessageHandler.SendAsync(HttpRequestMessage request, CancellationToken cancellationToken) at System.Net.Http.HttpClient.g__Core|83_0(HttpRequestMessage request, HttpCompletionOption completionOption, CancellationTokenSource cts, Boolean disposeCts, CancellationTokenSource pendingRequestsCts, CancellationToken originalCancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.NegotiateAsync(Uri url, HttpClient httpClient, ILogger logger, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.GetNegotiationResponseAsync(Uri uri, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.SelectAndStartTransport(TransferFormat transferFormat, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.StartAsyncCore(TransferFormat transferFormat, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.StartAsync(TransferFormat transferFormat, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnectionFactory.ConnectAsync(EndPoint endPoint, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnectionFactory.ConnectAsync(EndPoint endPoint, CancellationToken cancellationToken) at Microsoft.AspNetCore.SignalR.Client.HubConnection.StartAsyncCore(CancellationToken cancellationToken) at Microsoft.AspNetCore.SignalR.Client.HubConnection.StartAsyncInner(CancellationToken cancellationToken) at Microsoft.AspNetCore.SignalR.Client.HubConnection.StartAsync(CancellationToken cancellationToken) at Remotely.Agent.Services.AgentHubConnection.Connect() in D:\a\1\s\Agent\Services\AgentHubConnection.cs:line 149 Error: (11/07/2025 01:21:27 AM) (Source: Remotely_Agent) (EventID: 0) (User: ) Description: Category: Remotely.Agent.Services.AgentHubConnection EventId: 0 Error while connecting to server. Exception: System.Net.Http.HttpRequestException: Próba przeprowadzenia operacji, wykonywanej przez gniazdo, na nieosiągalnej sieci. (77.246.111.241:5000) ---> System.Net.Sockets.SocketException (10051): Próba przeprowadzenia operacji, wykonywanej przez gniazdo, na nieosiągalnej sieci. at System.Net.Sockets.Socket.AwaitableSocketAsyncEventArgs.ThrowException(SocketError error, CancellationToken cancellationToken) at System.Net.Sockets.Socket.AwaitableSocketAsyncEventArgs.System.Threading.Tasks.Sources.IValueTaskSource.GetResult(Int16 token) at System.Net.Sockets.Socket.g__WaitForConnectWithCancellation|285_0(AwaitableSocketAsyncEventArgs saea, ValueTask connectTask, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) --- End of inner exception stack trace --- at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.AddHttp11ConnectionAsync(QueueItem queueItem) at System.Threading.Tasks.TaskCompletionSourceWithCancellation`1.WaitWithCancellationAsync(CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.SendWithVersionDetectionAndRetryAsync(HttpRequestMessage request, Boolean async, Boolean doRequestAuth, CancellationToken cancellationToken) at System.Net.Http.RedirectHandler.SendAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.Internal.AccessTokenHttpMessageHandler.SendAsync(HttpRequestMessage request, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.Internal.LoggingHttpMessageHandler.SendAsync(HttpRequestMessage request, CancellationToken cancellationToken) at System.Net.Http.HttpClient.g__Core|83_0(HttpRequestMessage request, HttpCompletionOption completionOption, CancellationTokenSource cts, Boolean disposeCts, CancellationTokenSource pendingRequestsCts, CancellationToken originalCancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.NegotiateAsync(Uri url, HttpClient httpClient, ILogger logger, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.GetNegotiationResponseAsync(Uri uri, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.SelectAndStartTransport(TransferFormat transferFormat, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.StartAsyncCore(TransferFormat transferFormat, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnection.StartAsync(TransferFormat transferFormat, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnectionFactory.ConnectAsync(EndPoint endPoint, CancellationToken cancellationToken) at Microsoft.AspNetCore.Http.Connections.Client.HttpConnectionFactory.ConnectAsync(EndPoint endPoint, CancellationToken cancellationToken) at Microsoft.AspNetCore.SignalR.Client.HubConnection.StartAsyncCore(CancellationToken cancellationToken) at Microsoft.AspNetCore.SignalR.Client.HubConnection.StartAsyncInner(CancellationToken cancellationToken) at Microsoft.AspNetCore.SignalR.Client.HubConnection.StartAsync(CancellationToken cancellationToken) at Remotely.Agent.Services.AgentHubConnection.Connect() in D:\a\1\s\Agent\Services\AgentHubConnection.cs:line 149 Error: (11/07/2025 01:21:27 AM) (Source: Remotely_Agent) (EventID: 0) (User: ) Description: Category: Remotely.Agent.Services.Windows.UpdaterWin EventId: 0 Error while checking for updates. Exception: System.Net.Http.HttpRequestException: Próba przeprowadzenia operacji, wykonywanej przez gniazdo, na nieosiągalnej sieci. (77.246.111.241:5000) ---> System.Net.Sockets.SocketException (10051): Próba przeprowadzenia operacji, wykonywanej przez gniazdo, na nieosiągalnej sieci. at System.Net.Sockets.Socket.AwaitableSocketAsyncEventArgs.CreateException(SocketError error, Boolean forAsyncThrow) at System.Net.Sockets.Socket.AwaitableSocketAsyncEventArgs.ConnectAsync(Socket socket) at System.Net.Sockets.Socket.ConnectAsync(EndPoint remoteEP, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[TStateMachine](TStateMachine& stateMachine) at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[TStateMachine](TStateMachine& stateMachine) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[TStateMachine](TStateMachine& stateMachine) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.AddHttp11ConnectionAsync(QueueItem queueItem) at System.Runtime.CompilerServices.AsyncTaskMethodBuilder`1.AsyncStateMachineBox`1.ExecutionContextCallback(Object s) at System.Threading.ExecutionContext.RunFromThreadPoolDispatchLoop(Thread threadPoolThread, ExecutionContext executionContext, ContextCallback callback, Object state) at System.Runtime.CompilerServices.AsyncTaskMethodBuilder`1.AsyncStateMachineBox`1.MoveNext(Thread threadPoolThread) at System.Runtime.CompilerServices.AsyncTaskMethodBuilder`1.AsyncStateMachineBox`1.ExecuteFromThreadPool(Thread threadPoolThread) at System.Threading.ThreadPoolWorkQueue.Dispatch() at System.Threading.PortableThreadPool.WorkerThread.WorkerThreadStart() --- End of stack trace from previous location --- at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) --- End of inner exception stack trace --- at System.Net.Http.HttpConnectionPool.ConnectToTcpHostAsync(String host, Int32 port, HttpRequestMessage initialRequest, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.ConnectAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.CreateHttp11ConnectionAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.AddHttp11ConnectionAsync(QueueItem queueItem) at System.Threading.Tasks.TaskCompletionSourceWithCancellation`1.WaitWithCancellationAsync(CancellationToken cancellationToken) at System.Net.Http.HttpConnectionPool.SendWithVersionDetectionAndRetryAsync(HttpRequestMessage request, Boolean async, Boolean doRequestAuth, CancellationToken cancellationToken) at System.Net.Http.RedirectHandler.SendAsync(HttpRequestMessage request, Boolean async, CancellationToken cancellationToken) at Microsoft.Extensions.Http.Logging.LoggingHttpMessageHandler.g__Core|5_0(HttpRequestMessage request, Boolean useAsync, CancellationToken cancellationToken) at Microsoft.Extensions.Http.Logging.LoggingScopeHttpMessageHandler.g__Core|5_0(HttpRequestMessage request, Boolean useAsync, CancellationToken cancellationToken) at System.Net.Http.HttpClient.g__Core|83_0(HttpRequestMessage request, HttpCompletionOption completionOption, CancellationTokenSource cts, Boolean disposeCts, CancellationTokenSource pendingRequestsCts, CancellationToken originalCancellationToken) at Remotely.Agent.Services.Windows.UpdaterWin.CheckForUpdates() in D:\a\1\s\Agent\Services\Windows\UpdaterWin.cs:line 92 Error: (11/07/2025 01:17:54 AM) (Source: CertEnroll) (EventID: 86) (User: ZARZĄDZANIE NT) Description: Inicjowanie rejestracji certyfikatu SCEP dla elementu WORKGROUP\GIENIO$ za pośrednictwem elementu https://AMD-KeyId-acdaf6c383336da0104a8f0da691c9667c71a49c.microsoftaik.azure.net/templates/Aik/scep nie powiodło się: GetCACaps Metoda: GET(766ms) Etap: GetCACaps Nie można określić nazwy serwera lub adresu. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED) Dziennik System: ============= Error: (11/10/2025 05:57:24 PM) (Source: Microsoft-Windows-HAL) (EventID: 21) (User: ZARZĄDZANIE NT) Description: Nie ustawiono zegara sprzętowego w czasie rzeczywistym, ponieważ obliczanie metody ACPI Time i Alarm Device nie powiodło się. Stan: 3221225659. Error: (11/10/2025 05:57:24 PM) (Source: Microsoft-Windows-HAL) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Nie odnaleziono sprzętowego zegara czasu rzeczywistego, ponieważ ocena metody ACPI Time i Alarm Device nie powiodła się. Stan: 3221225659. Error: (11/10/2025 02:05:47 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd (0x80073d02 = Nie można zainstalować pakietu, ponieważ zasoby, które on modyfikuje, są obecnie w użyciu.): 9P4W8RFN9M2T-AD2F1837.HPSystemEventUtility. Error: (11/10/2025 02:05:44 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd (0x80073d02 = Nie można zainstalować pakietu, ponieważ zasoby, które on modyfikuje, są obecnie w użyciu.): 9NTXGKQ8P7N0-MicrosoftWindows.CrossDevice. Error: (11/10/2025 01:26:23 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (11/10/2025 08:16:20 AM) (Source: Microsoft-Windows-HAL) (EventID: 21) (User: ZARZĄDZANIE NT) Description: Nie ustawiono zegara sprzętowego w czasie rzeczywistym, ponieważ obliczanie metody ACPI Time i Alarm Device nie powiodło się. Stan: 3221225659. Error: (11/10/2025 08:16:20 AM) (Source: Microsoft-Windows-HAL) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Nie odnaleziono sprzętowego zegara czasu rzeczywistego, ponieważ ocena metody ACPI Time i Alarm Device nie powiodła się. Stan: 3221225659. Error: (11/10/2025 08:16:20 AM) (Source: Microsoft-Windows-HAL) (EventID: 21) (User: ZARZĄDZANIE NT) Description: Nie ustawiono zegara sprzętowego w czasie rzeczywistym, ponieważ obliczanie metody ACPI Time i Alarm Device nie powiodło się. Stan: 3221225659. Windows Defender: ================ Date: 2025-11-10 08:37:51 Description: Program antywirusowy Microsoft Defender šςαή ħāş ьέèń śťøрφêδ ъęƒōґє ¢ǿmρľęτìōл.%ή %ťЅ¢αŋ ÍĐ:%ь{1685BEDC-5780-40DF-A6A4-85EBD06D4B08}%и %τŞćǻи Ťÿρė:%ьNarzędzia chroniące przed złośliwym oprogramowaniem%ή %ŧŜ¢ãπ Ρдřàmέτëгŝ:%ьSzybkie skanowanie%й %ţЦŝēŕ:%ьZARZĄDZANIE NT\SYSTEM%й %τŞŧōφ Řēąšσñ:%вŠčнėďµℓêδ ѕсąи щаś ѕκíφρêđ вĕ¢аύşë ŧħê ĺăśť ŝц¢ćзŝśƒūł ѕçâⁿ шåŝ ώіţħìή ţĥε łáşŧ 7 δªỳš Date: 2025-11-09 13:40:41 Description: Program antywirusowy Microsoft Defender šςαή ħāş ьέèń śťøрφêδ ъęƒōґє ¢ǿmρľęτìōл.%ή %ťЅ¢αŋ ÍĐ:%ь{8415E593-425A-4172-AF6B-FB9DD7CB8D60}%и %τŞćǻи Ťÿρė:%ьNarzędzia chroniące przed złośliwym oprogramowaniem%ή %ŧŜ¢ãπ Ρдřàmέτëгŝ:%ьSzybkie skanowanie%й %ţЦŝēŕ:%ьZARZĄDZANIE NT\SYSTEM%й %τŞŧōφ Řēąšσñ:%вŠčнėďµℓêδ ѕсąи щаś ѕκíφρêđ вĕ¢аύşë ŧħê ĺăśť ŝц¢ćзŝśƒūł ѕçâⁿ шåŝ ώіţħìή ţĥε łáşŧ 7 δªỳš Date: 2025-11-08 08:45:30 Description: Program antywirusowy Microsoft Defender šςαή ħāş ьέèń śťøрφêδ ъęƒōґє ¢ǿmρľęτìōл.%ή %ťЅ¢αŋ ÍĐ:%ь{F5F080B0-A924-488E-8CC1-37642E3E991D}%и %τŞćǻи Ťÿρė:%ьNarzędzia chroniące przed złośliwym oprogramowaniem%ή %ŧŜ¢ãπ Ρдřàmέτëгŝ:%ьSzybkie skanowanie%й %ţЦŝēŕ:%ьZARZĄDZANIE NT\SYSTEM%й %τŞŧōφ Řēąšσñ:%вŠčнėďµℓêδ ѕсąи щаś ѕκíφρêđ вĕ¢аύşë ŧħê ĺăśť ŝц¢ćзŝśƒūł ѕçâⁿ шåŝ ώіţħìή ţĥε łáşŧ 7 δªỳš Date: 2025-11-04 13:41:29 Description: Program antywirusowy Microsoft Defender šςαή ħāş ьέèń śťøрφêδ ъęƒōґє ¢ǿmρľęτìōл.%ή %ťЅ¢αŋ ÍĐ:%ь{6570A7F4-2843-49D8-AC7D-C31539C6EFDB}%и %τŞćǻи Ťÿρė:%ьNarzędzia chroniące przed złośliwym oprogramowaniem%ή %ŧŜ¢ãπ Ρдřàmέτëгŝ:%ьSzybkie skanowanie%й %ţЦŝēŕ:%ьZARZĄDZANIE NT\SYSTEM%й %τŞŧōφ Řēąšσñ:%вŠčнėďµℓêδ ѕсąи щаś ѕκíφρêđ вĕ¢аύşë ŧħê ĺăśť ŝц¢ćзŝśƒūł ѕçâⁿ шåŝ ώіţħìή ţĥε łáşŧ 7 δªỳš Date: 2025-11-03 08:33:53 Description: Program antywirusowy Microsoft Defender šςαή ħāş ьέèń śťøрφêδ ъęƒōґє ¢ǿmρľęτìōл.%ή %ťЅ¢αŋ ÍĐ:%ь{DA33AFD5-97E3-4D5F-8A6E-89EED2A93192}%и %τŞćǻи Ťÿρė:%ьNarzędzia chroniące przed złośliwym oprogramowaniem%ή %ŧŜ¢ãπ Ρдřàmέτëгŝ:%ьSzybkie skanowanie%й %ţЦŝēŕ:%ьZARZĄDZANIE NT\SYSTEM%й %τŞŧōφ Řēąšσñ:%вŠčнėďµℓêδ ѕсąи щаś ѕκíφρêđ вĕ¢аύşë ŧħê ĺăśť ŝц¢ćзŝśƒūł ѕçâⁿ шåŝ ώіţħìή ţĥε łáşŧ 7 δªỳš  ==================== Statystyki pamięci =========================== BIOS: Insyde F.37 08/22/2023 Płyta główna: HP 87D2 Procesor: AMD Athlon Gold 3150U with Radeon Graphics Procent pamięci w użyciu: 82% Całkowita pamięć fizyczna: 6086.82 MB Dostępna pamięć fizyczna: 1089.66 MB Całkowita pamięć wirtualna: 14790.82 MB Dostępna pamięć wirtualna: 5271.29 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:237.43 GB) (Free:166.6 GB) (Model: KBG40ZNV256G KIOXIA) NTFS \\?\Volume{8e58026c-65e3-468f-9912-5a76bff4a484}\ () (Fixed) (Total:0.77 GB) (Free:0.11 GB) NTFS \\?\Volume{fc211692-6d54-45d5-8300-dbe2d2c6770a}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: C80FA667) Partition: GPT. ==================== Koniec Addition.txt =======================