Farbar Service Scanner Version: 01-03-2012 Ran by wojtron (administrator) on 04-04-2012 at 00:51:20 Running from "E:\avlast" Microsoft Windows XP Home Edition Dodatek Service Pack 2 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Yahoo IP is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=DWORD:0 System Restore: ============ Srservice Service is not running. Checking service configuration: The start type of Srservice service is OK. The ImagePath of Srservice service is OK. The ServiceDll of Srservice service is OK. sr Service is not running. Checking service configuration: The start type of sr service is set to Disabled. The default start type is Boot. The ImagePath of sr: "\SystemRoot\system32\DRIVERS\sr.sys". System Restore Disabled Policy: ======================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR"=DWORD:1 Security Center: ============ wscsvc Service is not running. Checking service configuration: Checking Start type: Attention! Unable to open wscsvc registry key. The service key does not exist. Checking ImagePath: Attention! Unable to open wscsvc registry key. The service key does not exist. Checking ServiceDll: Attention! Unable to open wscsvc registry key. The service key does not exist. Checking LEGACY_wscsvc: Attention! Unable to open LEGACY_wscsvc\0000 registry key. The key does not exist. Windows Update: ============ File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll [2004-08-04 14:00] - [2004-08-04 14:00] - 0110592 ____A (Microsoft Corporation) 94B49F2D487A7D4A79B3E96B6D5685B0 C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys [2004-08-04 14:00] - [2004-08-04 14:00] - 0162816 ____A (Microsoft Corporation) 0C80E410CD2F47134407EE7DD19CC86B C:\WINDOWS\system32\Drivers\tcpip.sys [2004-08-04 14:00] - [2008-06-20 12:45] - 0360320 ____A (Microsoft Corporation) 2A5554FC5B1E04E131230E3CE035C3F9 C:\WINDOWS\system32\Drivers\ipsec.sys [2004-08-04 14:00] - [2004-08-04 14:00] - 0074752 ____A (Microsoft Corporation) 64537AA5C003A6AFEEE1DF819062D0D1 C:\WINDOWS\system32\dnsrslvr.dll [2004-08-04 14:00] - [2004-08-04 14:00] - 0045568 ____A (Microsoft Corporation) F61C204EBCAA1D6B5FB5DFE7034741F3 C:\WINDOWS\system32\ipnathlp.dll [2004-08-04 14:00] - [2004-08-04 14:00] - 0331264 ____A (Microsoft Corporation) DDC87ADF808D192A5212CC8A1E7F8E87 C:\WINDOWS\system32\netman.dll [2004-08-04 14:00] - [2004-08-04 14:00] - 0198144 ____A (Microsoft Corporation) 3E7B6583269BC118720D0020B03CC71E C:\WINDOWS\system32\wbem\WMIsvc.dll [2010-03-12 10:49] - [2004-08-04 14:00] - 0145408 ____A (Microsoft Corporation) 482435B2A2DE8E06C83C3B1EB3237C2C C:\WINDOWS\system32\srsvc.dll [2010-03-12 10:51] - [2004-08-04 14:00] - 0171008 ____A (Microsoft Corporation) F309D9894FCA821E3C2F557A8032D47A C:\WINDOWS\system32\Drivers\sr.sys [2010-03-12 10:51] - [2004-08-04 14:00] - 0073472 ____A (Microsoft Corporation) 6145CA23BCCDA679A772EC0AF42D6EB5 C:\WINDOWS\system32\wscsvc.dll [2004-08-04 14:00] - [2004-08-04 14:00] - 0081408 ____A (Microsoft Corporation) 390D0951271908C46EECF89893876424 C:\WINDOWS\system32\wbem\WMIsvc.dll [2010-03-12 10:49] - [2004-08-04 14:00] - 0145408 ____A (Microsoft Corporation) 482435B2A2DE8E06C83C3B1EB3237C2C C:\WINDOWS\system32\wuauserv.dll [2010-03-12 10:51] - [2004-08-04 14:00] - 0006656 ____A (Microsoft Corporation) 40C600488FF127953AA2F1835E5FD433 C:\WINDOWS\system32\qmgr.dll [2010-03-12 10:51] - [2004-08-04 14:00] - 0382464 ____A (Microsoft Corporation) A6BFD910074B02C8794FC65F39CC6B28 C:\WINDOWS\system32\es.dll [2004-08-04 14:00] - [2008-07-07 22:33] - 0253952 ____A (Microsoft Corporation) 878FA7B8FFBCFFDAEB05F0484A99562D C:\WINDOWS\system32\cryptsvc.dll [2004-08-04 14:00] - [2004-08-04 14:00] - 0060416 ____A (Microsoft Corporation) 91723CD7C96C5854149F9CAE820A90DD C:\WINDOWS\system32\svchost.exe [2004-08-04 14:00] - [2004-08-04 14:00] - 0014336 ____A (Microsoft Corporation) BA98327E90022DBD6EE76490E0622E2E C:\WINDOWS\system32\rpcss.dll [2004-08-04 14:00] - [2009-02-09 12:22] - 0399360 ____A (Microsoft Corporation) B5D78596EFFBEB82F3B86D9A002538E1 C:\WINDOWS\system32\services.exe [2004-08-04 14:00] - [2009-02-09 12:10] - 0111104 ____A (Microsoft Corporation) ED4E5391100287B9EABF8F2CF4B42235 Extra List: ======= Bridge(11) BridgeMP(10) cmdHlp(16) Gpc(7) IPSec(5) irda(3) NetBT(6) PSched(8) Tcpip(4) Tcpip6(14) VBoxNetFlt(9) 0x0F000000050000000100000002000000030000000400000010000000070000000800000009000000060000000A0000000B0000000C0000000D0000000E000000 IpSec Tag value is correct. **** End of log ****