Farbar Service Scanner Version: 16-01-2013 Ran by Agata (administrator) on 30-01-2013 at 14:26:16 Running from "C:\Documents and Settings\Agata\Ustawienia lokalne\Temporary Internet Files\Content.IE5\3SIGAKJX" Microsoft Windows XP Dodatek Service Pack 3 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Attempt to access Google IP returned error. Google IP is offline Google.com is accessible. Yahoo IP is accessible. Yahoo.com is accessible. Windows Firewall: ============= sharedaccess Service is not running. Checking service configuration: The start type of sharedaccess service is set to Disabled. The default start type is Auto. The ImagePath of sharedaccess service is OK. The ServiceDll of sharedaccess service is OK. Firewall Disabled Policy: ================== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=DWORD:0 System Restore: ============ Srservice Service is not running. Checking service configuration: The start type of Srservice service is OK. The ImagePath of Srservice service is OK. The ServiceDll of Srservice: "C:\WINDOWS\system32\srsvc.dll". sr Service is not running. Checking service configuration: The start type of sr service is set to Disabled. The default start type is Boot. The ImagePath of sr: "\SystemRoot\system32\DRIVERS\sr.sys". System Restore Disabled Policy: ======================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR"=DWORD:1 Security Center: ============ wscsvc Service is not running. Checking service configuration: The start type of wscsvc service is set to Disabled. The default start type is Auto. The ImagePath of wscsvc service is OK. The ServiceDll of wscsvc service is OK. Windows Update: ============ wuauserv Service is not running. Checking service configuration: Checking Start type: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist. Checking ImagePath: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist. Checking ServiceDll: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist. Checking LEGACY_wuauserv: ATTENTION!=====> Unable to open LEGACY_wuauserv\0000 registry key. The key does not exist. Windows Autoupdate Disabled Policy: ============================ File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll [2006-03-02 12:00] - [2008-04-14 17:20] - 0126464 ____A (Microsoft Corporation) 6B4AFE7C676CFF3EFF2DC06A4EE945F7 C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit C:\WINDOWS\system32\dnsrslvr.dll [2006-03-02 12:00] - [2009-04-20 17:19] - 0045568 ____A (Microsoft Corporation) 082BE13166A3354F25F78E0B2601012B C:\WINDOWS\system32\ipnathlp.dll [2006-03-02 12:00] - [2008-04-14 17:20] - 0330752 ____A (Microsoft Corporation) DA5C015911F68F22ED821E9EE49AB233 C:\WINDOWS\system32\netman.dll [2006-03-02 12:00] - [2008-04-14 17:20] - 0198144 ____A (Microsoft Corporation) 4FE97D0B1B182DF2A9BDD4C02155EF5E C:\WINDOWS\system32\wbem\WMIsvc.dll [2008-10-02 22:00] - [2008-04-14 17:20] - 0145408 ____A (Microsoft Corporation) 70C22297534A88B0AD0568900AB5A6D9 C:\WINDOWS\system32\srsvc.dll [2008-10-02 22:02] - [2008-04-14 17:20] - 0171520 ____A (Microsoft Corporation) 316D0E66074AE4CDE641C50D3A1C5148 C:\WINDOWS\system32\Drivers\sr.sys [2008-10-02 22:02] - [2008-04-14 16:34] - 0073472 ____A (Microsoft Corporation) EB032822BE406EF220D546DDFFCF0002 C:\WINDOWS\system32\wscsvc.dll [2006-03-02 12:00] - [2008-04-14 17:20] - 0080896 ____A (Microsoft Corporation) B6669F49D42E09BC0F9889FAA0F3336D C:\WINDOWS\system32\wbem\WMIsvc.dll [2008-10-02 22:00] - [2008-04-14 17:20] - 0145408 ____A (Microsoft Corporation) 70C22297534A88B0AD0568900AB5A6D9 C:\WINDOWS\system32\wuauserv.dll [2008-10-02 22:02] - [2008-04-14 17:21] - 0006656 ____A (Microsoft Corporation) 04550D5EB7EE82C115DB547C01DF09FD C:\WINDOWS\system32\qmgr.dll [2008-10-02 22:02] - [2008-04-14 17:20] - 0409088 ____A (Microsoft Corporation) 78200FAA6FD9C69394134C238C87FB7F C:\WINDOWS\system32\es.dll [2006-03-02 12:00] - [2008-07-07 20:29] - 0253952 ____A (Microsoft Corporation) 6AFF804839C85859E0247164FBE5F5BB C:\WINDOWS\system32\cryptsvc.dll [2006-03-02 12:00] - [2008-04-14 17:20] - 0062464 ____A (Microsoft Corporation) 6B105FE95F2E9F0B6346044BA59D41C9 C:\WINDOWS\system32\svchost.exe [2006-03-02 12:00] - [2008-04-14 17:21] - 0014336 ____A (Microsoft Corporation) 8607D35D92528E2DF386F19A960D23CE C:\WINDOWS\system32\rpcss.dll [2006-03-02 12:00] - [2009-02-09 10:53] - 0401408 ____A (Microsoft Corporation) A37311D9D628C1042A2836731787F0F3 C:\WINDOWS\system32\services.exe [2006-03-02 12:00] - [2009-02-09 11:25] - 0111104 ____A (Microsoft Corporation) 02A467E27AF55F7064C5B251E587315F Extra List: ======= fssfltr(10) Gpc(3) IPSec(5) NetBT(6) PSched(7) SYMTDI(9) Tcpip(4) 0x0A0000000500000001000000020000000300000004000000090000000800000006000000070000000A000000 IpSec Tag value is correct. **** End of log ****