Hello, 23red;
I followed the instructions running the OTL fix and got a message asking to reboot, which I allowed. On rebooting, as usual, it tried to run a Disc Check which I cancelled. Also, as usual lately, Tweak.com, its Uninstall and its Registry Backup windows all opened and were closed by me. Then the SVCHOST went off-scale, earlier than recently, and I didn't catch it as soon as normal (in order to 'end [the] process') so left it running a minute or so to see if it would end on its own, before shutting down the whole system and rebooting again. I didn't get the message telling me the fix was complete and asking about opening the log; I copied it from the location in your post.
When I ran the FARBAR scan, I had the same boxes checked as before.
Below are the two logs you requested.
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
C:\Documents and Settings\All Users\Application Data\arclib.dll moved successfully.
C:\WINDOWS\avgui.INI moved successfully.
========== FILES ==========
< net start sharedaccess /c >The Windows Firewall/Internet Connection Sharing (ICS) service is starting.
C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
< net start Dhcp Service /c >The DHCP Client service is starting.
The DHCP Client service was started successfully.
C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
< net start sharedaccess Service /c >The Windows Firewall/Internet Connection Sharing (ICS) service is starting.
C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
< net start Srservice Service /c >C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
< net start wscsvc Service /c >The Security Center service is starting.
The Security Center service was started successfully.
C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
< net start wuauserv Service /c >The Automatic Updates service is starting.
The Automatic Updates service was started successfully.
C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
< ipconfig /flushdns /c >Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Documents and Settings\Tom\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\Tom\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
OTL by OldTimer - Version 3.2.69.0 log created on 11082013_170520
Farbar Service Scanner Version: 24-10-2013
Ran by Tom (administrator) on 08-11-2013 at 17:21:47
Running from "C:\Documents and Settings\Tom\Desktop"
Microsoft Windows XP Home Edition Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Dhcp Service is not running. Checking service configuration:
The start type of Dhcp service is OK.
The ImagePath of Dhcp service is OK.
The ServiceDll of Dhcp service is OK.
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
Windows Firewall:
=============
sharedaccess Service is not running. Checking service configuration:
The start type of sharedaccess service is OK.
The ImagePath of sharedaccess service is OK.
The ServiceDll of sharedaccess service is OK.
Firewall Disabled Policy:
==================
System Restore:
============
Srservice Service is not running. Checking service configuration:
The start type of Srservice service is OK.
The ImagePath of Srservice service is OK.
The ServiceDll of Srservice: "C:\WINDOWS\system32\srsvc.dll".
System Restore Disabled Policy:
========================
Security Center:
============
wscsvc Service is not running. Checking service configuration:
The start type of wscsvc service is OK.
The ImagePath of wscsvc service is OK.
The ServiceDll of wscsvc service is OK.
Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is OK.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv service is OK.
Windows Autoupdate Disabled Policy:
============================
Other Services:
==============
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
Extra List:
=======
Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3)
0x080000000400000001000000020000000300000008000000050000000600000007000000
IpSec Tag value is correct.
**** End of log ****
Edited by TooNew2, 08 November 2013 - 07:53 PM.