Farbar Service Scanner Version: 01-03-2012
Ran by Katia (administrator) on 16-03-2012 at 12:19:49
Running from "C:\Documents and Settings\Katia\Bureau"
Microsoft Windows XP Professionnel Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Yahoo IP is accessible.
Windows Firewall:
=============
Firewall Disabled Policy:
==================
System Restore:
============
System Restore Disabled Policy:
========================
Security Center:
============
Windows Update:
============
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll
[2001-08-28 13:00] - [2004-08-19 17:09] - 0111616 ____A (Microsoft Corporation) A44C9220F460E38FC7EC0B4BE4716077
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys
[2001-08-28 14:00] - [2004-08-03 23:14] - 0162816 ____A (Microsoft Corporation) 0C80E410CD2F47134407EE7DD19CC86B
C:\WINDOWS\system32\Drivers\tcpip.sys
[2001-08-28 14:00] - [2007-10-30 19:20] - 0360064 ____A (Microsoft Corporation) 90CAFF4B094573449A0872A0F919B178
C:\WINDOWS\system32\Drivers\ipsec.sys
[2001-08-28 14:00] - [2004-08-04 00:14] - 0074752 ____A (Microsoft Corporation) 64537AA5C003A6AFEEE1DF819062D0D1
C:\WINDOWS\system32\dnsrslvr.dll
[2001-08-28 13:00] - [2008-02-20 07:35] - 0045568 ____A (Microsoft Corporation) 8F59E8F3F98C5E6A8F760A3DD529D1EC
C:\WINDOWS\system32\ipnathlp.dll
[2001-08-28 13:00] - [2004-08-19 17:09] - 0332800 ____A (Microsoft Corporation) BC919495F27AEEDAC71C123E859413D0
C:\WINDOWS\system32\netman.dll
[2001-08-28 13:00] - [2005-08-22 20:35] - 0197632 ____A (Microsoft Corporation) 0D55724D88488BBFC53BC2EA219240F3
C:\WINDOWS\system32\wbem\WMIsvc.dll
[2005-02-01 19:12] - [2004-08-19 17:09] - 0145408 ____A (Microsoft Corporation) D62DD45D691350A7029A554831B42BBA
C:\WINDOWS\system32\srsvc.dll
[2005-02-01 19:13] - [2004-08-19 17:09] - 0171008 ____A (Microsoft Corporation) CE978404558CE2D82896AC2032F06DBF
C:\WINDOWS\system32\Drivers\sr.sys
[2005-02-01 20:13] - [2004-08-19 17:04] - 0073600 ____A (Microsoft Corporation) B52181023B827ACDA36C1B76751EBFFD
C:\WINDOWS\system32\wscsvc.dll
[2005-02-01 19:59] - [2004-08-19 17:09] - 0081408 ____A (Microsoft Corporation) 53760D195988739A9945E5F738B85723
C:\WINDOWS\system32\wbem\WMIsvc.dll
[2005-02-01 19:12] - [2004-08-19 17:09] - 0145408 ____A (Microsoft Corporation) D62DD45D691350A7029A554831B42BBA
C:\WINDOWS\system32\wuauserv.dll
[2005-02-01 19:12] - [2004-08-19 17:09] - 0006656 ____A (Microsoft Corporation) A01A65BEA57E71DE6AFB80940D3E1F77
C:\WINDOWS\system32\qmgr.dll
[2005-02-01 20:14] - [2004-08-19 17:09] - 0382464 ____A (Microsoft Corporation) 659F7B6C502051BFA37910614B225548
C:\WINDOWS\system32\es.dll
[2001-08-28 13:00] - [2005-07-26 06:39] - 0243200 ____A (Microsoft Corporation) D9CDB9380E0EFC9E97CC589B5F484B94
C:\WINDOWS\system32\cryptsvc.dll
[2001-08-28 13:00] - [2004-08-19 17:09] - 0060416 ____A (Microsoft Corporation) CD73133EB24C572019944001FAD1B8D9
C:\WINDOWS\system32\svchost.exe
[2001-08-28 13:00] - [2004-08-19 17:10] - 0014336 ____A (Microsoft Corporation) 2979B03D5382A602623C0535B16AB9C0
C:\WINDOWS\system32\rpcss.dll
[2001-08-28 13:00] - [2005-07-26 06:40] - 0397824 ____A (Microsoft Corporation) CB7D37602638369A516757E994CBB31D
C:\WINDOWS\system32\services.exe
[2001-08-28 13:00] - [2004-08-19 17:10] - 0108544 ____A (Microsoft Corporation) 63DCDE1A0D86EEB8924D6738FF616EAD
Extra List:
=======
AegisP(14) Avgtdix(17) Gpc(3) IPSec(5) irda(8) NetBT(6) NwlnkIpx(9) NwlnkNb(10) PSched(7) Tcpip(4) Tcpip6(11)
0x1200000005000000010000000200000003000000040000000B0000000F000000100000001100000006000000560000000700000008000000090000000A0000000C0000000D0000000E000000
IpSec Tag value is correct.
**** End of log ****
Ran by Katia (administrator) on 16-03-2012 at 12:19:49
Running from "C:\Documents and Settings\Katia\Bureau"
Microsoft Windows XP Professionnel Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Yahoo IP is accessible.
Windows Firewall:
=============
Firewall Disabled Policy:
==================
System Restore:
============
System Restore Disabled Policy:
========================
Security Center:
============
Windows Update:
============
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll
[2001-08-28 13:00] - [2004-08-19 17:09] - 0111616 ____A (Microsoft Corporation) A44C9220F460E38FC7EC0B4BE4716077
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys
[2001-08-28 14:00] - [2004-08-03 23:14] - 0162816 ____A (Microsoft Corporation) 0C80E410CD2F47134407EE7DD19CC86B
C:\WINDOWS\system32\Drivers\tcpip.sys
[2001-08-28 14:00] - [2007-10-30 19:20] - 0360064 ____A (Microsoft Corporation) 90CAFF4B094573449A0872A0F919B178
C:\WINDOWS\system32\Drivers\ipsec.sys
[2001-08-28 14:00] - [2004-08-04 00:14] - 0074752 ____A (Microsoft Corporation) 64537AA5C003A6AFEEE1DF819062D0D1
C:\WINDOWS\system32\dnsrslvr.dll
[2001-08-28 13:00] - [2008-02-20 07:35] - 0045568 ____A (Microsoft Corporation) 8F59E8F3F98C5E6A8F760A3DD529D1EC
C:\WINDOWS\system32\ipnathlp.dll
[2001-08-28 13:00] - [2004-08-19 17:09] - 0332800 ____A (Microsoft Corporation) BC919495F27AEEDAC71C123E859413D0
C:\WINDOWS\system32\netman.dll
[2001-08-28 13:00] - [2005-08-22 20:35] - 0197632 ____A (Microsoft Corporation) 0D55724D88488BBFC53BC2EA219240F3
C:\WINDOWS\system32\wbem\WMIsvc.dll
[2005-02-01 19:12] - [2004-08-19 17:09] - 0145408 ____A (Microsoft Corporation) D62DD45D691350A7029A554831B42BBA
C:\WINDOWS\system32\srsvc.dll
[2005-02-01 19:13] - [2004-08-19 17:09] - 0171008 ____A (Microsoft Corporation) CE978404558CE2D82896AC2032F06DBF
C:\WINDOWS\system32\Drivers\sr.sys
[2005-02-01 20:13] - [2004-08-19 17:04] - 0073600 ____A (Microsoft Corporation) B52181023B827ACDA36C1B76751EBFFD
C:\WINDOWS\system32\wscsvc.dll
[2005-02-01 19:59] - [2004-08-19 17:09] - 0081408 ____A (Microsoft Corporation) 53760D195988739A9945E5F738B85723
C:\WINDOWS\system32\wbem\WMIsvc.dll
[2005-02-01 19:12] - [2004-08-19 17:09] - 0145408 ____A (Microsoft Corporation) D62DD45D691350A7029A554831B42BBA
C:\WINDOWS\system32\wuauserv.dll
[2005-02-01 19:12] - [2004-08-19 17:09] - 0006656 ____A (Microsoft Corporation) A01A65BEA57E71DE6AFB80940D3E1F77
C:\WINDOWS\system32\qmgr.dll
[2005-02-01 20:14] - [2004-08-19 17:09] - 0382464 ____A (Microsoft Corporation) 659F7B6C502051BFA37910614B225548
C:\WINDOWS\system32\es.dll
[2001-08-28 13:00] - [2005-07-26 06:39] - 0243200 ____A (Microsoft Corporation) D9CDB9380E0EFC9E97CC589B5F484B94
C:\WINDOWS\system32\cryptsvc.dll
[2001-08-28 13:00] - [2004-08-19 17:09] - 0060416 ____A (Microsoft Corporation) CD73133EB24C572019944001FAD1B8D9
C:\WINDOWS\system32\svchost.exe
[2001-08-28 13:00] - [2004-08-19 17:10] - 0014336 ____A (Microsoft Corporation) 2979B03D5382A602623C0535B16AB9C0
C:\WINDOWS\system32\rpcss.dll
[2001-08-28 13:00] - [2005-07-26 06:40] - 0397824 ____A (Microsoft Corporation) CB7D37602638369A516757E994CBB31D
C:\WINDOWS\system32\services.exe
[2001-08-28 13:00] - [2004-08-19 17:10] - 0108544 ____A (Microsoft Corporation) 63DCDE1A0D86EEB8924D6738FF616EAD
Extra List:
=======
AegisP(14) Avgtdix(17) Gpc(3) IPSec(5) irda(8) NetBT(6) NwlnkIpx(9) NwlnkNb(10) PSched(7) Tcpip(4) Tcpip6(11)
0x1200000005000000010000000200000003000000040000000B0000000F000000100000001100000006000000560000000700000008000000090000000A0000000C0000000D0000000E000000
IpSec Tag value is correct.
**** End of log ****