Farbar Service Scanner Version: 14-04-2013 Ran by Peter Pontypine (administrator) on 15-04-2013 at 17:55:37 Running from "C:\Documents and Settings\Peter Pontypine\My Documents\Downloads" Microsoft Windows XP Service Pack 2 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Attempt to access Yahoo IP returned error. Yahoo IP is offline Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=DWORD:0 System Restore: ============ System Restore Disabled Policy: ======================== Security Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys [2003-12-03 11:55] - [2004-08-04 00:14] - 0162816 ____A (Microsoft Corporation) 0C80E410CD2F47134407EE7DD19CC86B C:\WINDOWS\system32\Drivers\tcpip.sys [2003-12-03 11:55] - [2004-08-04 00:14] - 0359040 ____A (Microsoft Corporation) 9F4B36614A0FC234525BA224957DE55C C:\WINDOWS\system32\Drivers\ipsec.sys [2003-12-03 11:55] - [2004-08-04 00:14] - 0074752 ____A (Microsoft Corporation) 64537AA5C003A6AFEEE1DF819062D0D1 C:\WINDOWS\system32\dnsrslvr.dll [2003-12-03 11:54] - [2004-08-04 01:56] - 0045568 ____A (Microsoft Corporation) 7379DE06FD196E396A00AA97B990C00D C:\WINDOWS\system32\ipnathlp.dll [2003-12-03 11:55] - [2004-08-04 01:56] - 0331264 ____A (Microsoft Corporation) 36CC8C01B5E50163037BEF56CB96DEFF C:\WINDOWS\system32\netman.dll [2003-12-03 11:55] - [2004-08-04 01:56] - 0198144 ____A (Microsoft Corporation) DAB9E6C7105D2EF49876FE92C524F565 C:\WINDOWS\system32\wbem\WMIsvc.dll [2003-12-03 13:05] - [2004-08-04 01:56] - 0144896 ____A (Microsoft Corporation) F399242A80C4066FD155EFA4CF96658E C:\WINDOWS\system32\srsvc.dll [2003-12-03 13:07] - [2004-08-04 01:56] - 0170496 ____A (Microsoft Corporation) 92BDF74F12D6CBEC43C94D4B7F804838 C:\WINDOWS\system32\Drivers\sr.sys [2003-12-03 13:07] - [2004-08-04 00:06] - 0073472 ____A (Microsoft Corporation) E41B6D037D6CD08461470AF04500DC24 C:\WINDOWS\system32\wscsvc.dll [2000-11-04 04:26] - [2004-08-04 01:56] - 0081408 ____N (Microsoft Corporation) 4D59DAA66C60858CDF4F67A900F42D4A C:\WINDOWS\system32\wbem\WMIsvc.dll [2003-12-03 13:05] - [2004-08-04 01:56] - 0144896 ____A (Microsoft Corporation) F399242A80C4066FD155EFA4CF96658E C:\WINDOWS\system32\wuauserv.dll [2003-12-03 13:05] - [2004-08-04 01:56] - 0006656 ____A (Microsoft Corporation) 13D72740963CBA12D9FF76A7F218BCD8 C:\WINDOWS\system32\qmgr.dll [2003-12-03 13:07] - [2004-08-04 01:56] - 0382464 ____A (Microsoft Corporation) 2C69EC7E5A311334D10DD95F338FCCEA C:\WINDOWS\system32\es.dll [2003-12-03 11:55] - [2004-08-04 01:56] - 0243200 ____A (Microsoft Corporation) ACD36A2DD7D1E9D8A060AA651DC07E63 C:\WINDOWS\system32\cryptsvc.dll [2003-12-03 13:36] - [2004-08-04 01:56] - 0060416 ____A (Microsoft Corporation) 10654F9DDCEA9C46CFB77554231BE73B C:\WINDOWS\system32\svchost.exe [2003-12-03 11:55] - [2004-08-04 01:56] - 0014336 ____A (Microsoft Corporation) 8F078AE4ED187AAABC0A305146DE6716 C:\WINDOWS\system32\rpcss.dll [2003-12-03 13:11] - [2004-08-04 01:56] - 0395776 ____A (Microsoft Corporation) 5C83A4408604F737717AB96371201680 C:\WINDOWS\system32\services.exe [2002-12-17 19:20] - [2004-08-04 01:56] - 0108032 ____A (Microsoft Corporation) C6CE6EEC82F187615D1002BB3BB50ED4 Extra List: ======= Gpc(6) IPSec(4) NetBT(5) PSched(7) SYMTDI(8) Tcpip(3) 0x080000000400000001000000020000000300000008000000050000000600000007000000 IpSec Tag value is correct. **** End of log ****