Farbar Service Scanner Version: 09-06-2012 Ran by Trudie Zuurhout (administrator) on 09-06-2012 at 20:37:00 Running from "C:\Documents and Settings\Trudie Zuurhout\Bureaublad" Microsoft Windows XP Home Edition Service Pack 3 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo IP is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Security Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0126976 ____A (Microsoft Corporation) 146AB038F5DBB366122D28444999AB2C C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit C:\WINDOWS\system32\dnsrslvr.dll [2004-08-04 05:00] - [2009-04-20 19:22] - 0045568 ____A (Microsoft Corporation) DE6CDB6CBC5C27B9085CFA6DFE8E5025 C:\WINDOWS\system32\ipnathlp.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0332288 ____A (Microsoft Corporation) 7579C4BE909D47F10F3D8D801CB13ED9 C:\WINDOWS\system32\netman.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0198144 ____A (Microsoft Corporation) 5431FB616ECAE0D587C5B97D0B86CBD8 C:\WINDOWS\system32\wbem\WMIsvc.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0145408 ____A (Microsoft Corporation) F9E105F369C18E4001E0C05AAF600D73 C:\WINDOWS\system32\srsvc.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0171008 ____A (Microsoft Corporation) 81CBF363C414620CAA61BD6843D8FDB9 C:\WINDOWS\system32\Drivers\sr.sys [2004-08-04 05:00] - [2008-04-14 18:43] - 0073472 ____A (Microsoft Corporation) 64D2A7640E0767ECD3BCB38D3200E7CE C:\WINDOWS\system32\wscsvc.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0080896 ____A (Microsoft Corporation) 843F7FA8EA38E6A4262976DCC994C81A C:\WINDOWS\system32\wbem\WMIsvc.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0145408 ____A (Microsoft Corporation) F9E105F369C18E4001E0C05AAF600D73 C:\WINDOWS\system32\wuauserv.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0006656 ____A (Microsoft Corporation) 1E8FDDDEF3FE260BADAB06DAE10D753A C:\WINDOWS\system32\qmgr.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0409088 ____A (Microsoft Corporation) 5C0073A51C4873430FA8B262E92183FF C:\WINDOWS\system32\es.dll [2004-08-04 05:00] - [2008-07-07 22:30] - 0253952 ____A (Microsoft Corporation) 97912DC0679D2DA60CCE589BBC196D72 C:\WINDOWS\system32\cryptsvc.dll [2004-08-04 05:00] - [2008-04-14 19:02] - 0062464 ____A (Microsoft Corporation) 0A9CF5D3CF63A8699F28C814EF821C7E C:\WINDOWS\system32\svchost.exe [2004-08-04 05:00] - [2008-04-14 19:03] - 0014336 ____A (Microsoft Corporation) E410EC73E2BE2A41D923B006F51C8427 C:\WINDOWS\system32\rpcss.dll [2004-08-04 05:00] - [2009-02-09 12:56] - 0401408 ____A (Microsoft Corporation) D9883335CC1C17AFC3A09C8AC3E4DBE4 C:\WINDOWS\system32\services.exe [2004-08-04 05:00] - [2009-02-09 13:27] - 0111104 ____A (Microsoft Corporation) 657B69389B893F440B07590C9E963F23 **** End of log ****