BearShare Forums  

Go Back   Gnutella Forums > Current Gnutella Client Forums > BearShare (Windows) > Open Discussion
Register FAQ The Twelve Commandments Members List Calendar Arcade Search Today's Posts Mark Forums Read

Open Discussion Open topic discussion for BearShare users

Preview this popular software (BearShare Beta v5 "Download")


Welcome To Gnutella Forums

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content, fun aspects such as the image caption contest and play in the arcade, and access many other special features after your registration and email confirmation. Registration is fast, simple and absolutely free so please, join our community today! (click here)

If you have any problems with the Gnutella Forum registration process or your Gnutella Forum account login, please contact us (this is not for program use questions.) Your email address must be legitimate and verified before becoming a full member of the forums. Please be sure to disable any spam filters you may have for our website, so that email messages can reach you.
Note: Any other issue with registration, etc., send a Personal Message (PM) to one of the active Administrators: Lord of the Rings or Birdy.

Once registered but before posting, members MUST READ the FORUM RULES (click here) and members should include System details - help us to help you (click on blue link) in their posts if their problem relates to using the program. Whilst forum helpers are happy to help where they can, without these system details your post might be ignored. And wise to read How to create a New Thread

Thank you

If you are a Spammer click here.
This is not a business advertising forum, all member profiles with business advertising will be banned, all their posts removed. Spamming is illegal in many countries of the world. Guests and search engines cannot view member profiles.



Deutsch? . . . . Español? . . . . Français? . . . . Nederlands? . .
Hilfe in Deutsch, . Ayuda en español, . Aide en français . et . LimeWire en français, . Hulp in het Nederlands

Forum Rules

Support Forums

Before you post to one of the specific Client Help and Support Conferences in Gnutella Client Forums please look through other threads and Stickies that may answer your questions. Most problems are not new. The Search function is most useful. Also the red Stickies have answers to the most commonly asked questions. (over 90 percent).
If your problem is not resolved by a search of the forums, please take the next step and post in the appropriate forum. There are many members who will be glad to help.
If you are new to the world of file sharing please do not be shy! Everyone was ‘new’ when they first started.

When posting, please include details for:
Your Operating System ....... Your version of your Gnutella Client (* this is important for helping solve problems) ....... Your Internet connection (56K, Cable, DSL) ....... The exact error message, if one pops up
Any other relevant information that you think may help ....... Try to make your post descriptive, specific, and clear so members can quickly and efficiently help you. To aid helpers in solving download/upload problems, LimeWire and Frostwire users must specify whether they are downloading a torrent file or a file from the Gnutella network.
Members need to supply these details >>> System details - help us to help you (click on blue link)


Moderators

There are senior members on the forums who serve as Moderators. These volunteers keep the board organized and moving.
Moderators are authorized to: (in order of increasing severity)
Move posts to the correct forums. Many times, members post in the wrong forum. These off-topic posts may impede the normal operation of the forum.
Edit posts. Moderators will edit posts that are offensive or break any of the House Rules.
Delete posts. Posts that cannot be edited to comply with the House Rules will be deleted.
Restrict members. This is one of the last punishments before a member is banned. Restrictions may include placing all new posts in a moderation queue or temporarily banning the offender.
Ban members. The most severe punishment. Three or more moderators or administrators must agree to the ban for this action to occur. Banning is reserved for very severe offenses and members who, after many warnings, fail to comply with the House Rules. Banning is permanent. Bans cannot be removed by the moderators and probably won't be removed by the administration.


The Rules

1. Warez, copyright violation, or any other illegal activity may NOT be linked or expressed in any form. Topics discussing techniques for violating these laws and messages containing locations of web sites or other servers hosting illegal content will be silently removed. Multiple offenses will result in consequences. File names are not required to discuss your issues. If filenames are copyright then do not belong on these forums & will be edited out or post removed. Picture sample attachments in posts must not include copyright infringement.

2. Spamming and excessive advertising will not be tolerated. Commercial advertising is not allowed in any form, including using in signatures.

3. There will be no excessive use of profanity in any forum.

4. There will be no racial, ethnic, or gender based insults, or any other personal attacks.

5. Pictures may be attached to posts and signatures if they are not sexually explicit or offensive. Picture sample attachments in posts must not include copyright infringement.

6. Remember to post in the correct forum. Take your time to look at other threads and see where your post will go. If your post is placed in the wrong forum it will be moved by a moderator. There are specific Gnutella Client sections for LimeWire, Phex, FrostWire, BearShare, Gnucleus, Morpheus, and many more. Please choose the correct section for your problem.

7. If you see a post in the wrong forum or in violation of the House Rules, please contact a moderator via Private Message or the "Report this post to a moderator" link at the bottom of every post. Please do not respond directly to the member - a moderator will do what is required.

8. Any impersonation of a forum member in any mode of communication is strictly prohibited and will result in banning.

9. Multiple copies of the same post will not be tolerated. Post your question, comment, or complaint only once. There is no need to express yourself more than once. Duplicate posts will be deleted with little or no warning. Keep in mind a forum censor may temporarily automatically hold up your post, if you do not see your post, do not post again, it will be dealt with by a moderator within a reasonable time. Authors of multiple copies of same post may be dealt with by moderators within their discrete judgment at the time which may result in warning or infraction points, depending on severity as adjudged by the moderators online.

10. Posts should have descriptive topics. Vague titles such as "Help!", "Why?", and the like may not get enough attention to the contents.

11. Do not divulge anyone's personal information in the forum, not even your own. This includes e-mail addresses, IP addresses, age, house address, and any other distinguishing information. Don´t use eMail addresses in your nick. Reiterating, do not post your email address in posts. This is for your own protection.

12. Signatures may be used as long as they are not offensive or sexually explicit or used for commercial advertising. Commercial weblinks cannot be used under any circumstances and will result in an immediate ban.

13. Failure to show that you have read the forum rules may result in forum rules breach infraction points or warnings awarded against you which may later total up to an automatic temporary or permanent ban. Supplying system details is a prerequisite in most cases, particularly with connection or installation issues.

Violation of any of these rules will bring consequences, determined on a case-by-case basis.


Thank You! Thanks for taking the time to read these forum guidelines. We hope your visit is helpful and mutually beneficial to the entire community.


Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old December 1st, 2006
Apprentice
 
Join Date: July 28th, 2006
Posts: 7
gonna is flying high
Default error report

i have a win xp pro service pack 2 and i installed bearshare 5.1 light but i after one or 2 mins it stop and an error report screen appears and when i choose dont send error or send error the program is closed so i cant download any thing so any one knows how to deal with this problem plz send me a reply
Reply With Quote
  #2 (permalink)  
Old December 1st, 2006
AaronWalkhouse's Avatar
***ּLegendary Axeman***ּ
 
Join Date: January 17th, 2005
Location: My igloos melt in June.
Posts: 1,974
AaronWalkhouse is a great assister to others; your light through the dark tunnel
Default

Download BearDiag from here, run it and post the report. You will probably have
to split it into two parts to fit it into a couple of posts.
Reply With Quote
  #3 (permalink)  
Old December 2nd, 2006
Apprentice
 
Join Date: July 28th, 2006
Posts: 7
gonna is flying high
Default report

Code:
BEARDIAG ISSUES - brief summary: (Extracted on 2006/12/02 14:01:30) 

Apple QuickTime taskbar player found - resource waster - not necessary. Use the inbuilt Microsoft program MSCONFIG to disable from the startup list
Sun Java update scheduler found - not necessary. Use the inbuilt Microsoft program MSCONFIG to disable from the startup list
Microsoft Office Toolbar found - redundant - not necessary. Use the inbuilt Microsoft program MSCONFIG to disable from the startup list
Apple QuickTime taskbar player found - resource waster - not necessary. Use the inbuilt Microsoft program MSCONFIG to disable from the startup list
Sun Java update scheduler found - not necessary. Use the inbuilt Microsoft program MSCONFIG to disable from the startup list
BearShare version 5.2.4.1 found. We recommend the 5.1.0.b25 beta version - see Recommended BearShare downloads
BearShare temporary downloads folder is configured to be a subset of the completed downloads folder.
BearShare currently shows port 6348 for TCP and port 6348 for UDP that need to match with your firewall/router configuration
You are behind a NAT firewall and/or router. They need to be correctly configured to allow BearShare to access the Internet.
 This is a common cause of problems with BearShare - it can't communicate.
 Check your firewall allows BearShare to communicate on TCP port 6348 and UDP port 6348
 If your connection is via a router, make sure it can forward BearShare traffic to a static IP address on your computer
 Refer to the following guidelines to correctly configure your firewall and router for use:
 - www.bearshare.com/help/firewalls/index.htm - the Firewall FAQ at the official BearShare Help site, 
 - http://www.portforward.com/english/a...BearSindex.htm - the definitive guide to port forwarding and setting up a static IP address.
   (Hint: use static IP address 192.168.1.2, TCP Port 6348, and UDP port 6348).
FixLSP.BAT was generated on the desktop and may need to be run (subject to advice) to rectify LSP chain issues.


More technical diagnostic troubleshooting information follows:
Code:
BEARDIAG: Bearcare for BearShare.
Details collected on 2006/12/02 13:43:02, BEARDIAG Version 01.99.14.0 beta, expires 2007/01/30 (59 days), running from C:\Documents and Settings\Gonna\Desktop\BearDiagNew.exe

System Hardware Information
CPU Type is: Mobile Intel(R) Pentium(R) 4     CPU 2.80GHz, CPU speed is approx: 2791Mhz, System BIOS date is: 2004/06/03
OS Version is: WIN_XP, Service pack: Service Pack 2, OS Build: 2600, Computer Name: LIFE
Browser name: C:\Program Files\Internet Explorer\iexplore.exe, version: 6.0.2900.2180, Admin user? YES

System Memory Parameters: 	Memory in use: 	80%
Total Physical RAM: 	447.0Mb	Available Physical RAM: 	86.1Mb
Total Pagefile:   		1.0Gb	Available Pagefile: 		594.5Mb

Internet IP Address 196.202.xxx.xxx  Local IP Address 192.168.1.2  You are behind a NAT firewall and/or router.

File Locations
Program files are at: C:\Program Files, System Temporary files are at: C:\DOCUME~1\Gonna\LOCALS~1\Temp, Common desktop is at:C:\Documents and Settings\All Users\Desktop
BearShare version installed is: 5.2.4.1, Gnutella servent BearShare full path is: E:\basics\bearshare\
Temporary downloads at: D:\, Completed downloads at: D:\new\

Disk statistics
Drive C:	Total space: 3.98Gb	Free: 237.27Mb	Full: 94.2%	Vol type: NTFS
Drive E:	Total space: 9.76Gb	Free: 2.24Gb	Full: 77.0%	Vol type: FAT32
Drive D:	Total space: 13.75Gb	Free: 402.68Mb	Full: 97.1%	Vol type: NTFS
Drive D:	Total space: 13.75Gb	Free: 402.68Mb	Full: 97.1%	Vol type: NTFS

Folder Statistics
Temporary downloads folder:  Space used: 13.9Gb, 	File count: 306, 	Write access allowed? YES,  # of DAT files: 7, #BAK: 2, #TIGER: 1, #TMP: 0, Other: 296
Completed downloads folder:  Space used: 8.2Gb, 	File count: 10, 	Write access allowed? YES
BearShare library file 'library.db' size is 250.0Kb, '/db' library folder size is 1.2Mb, console log size is 0

FreePeers.ini settings
The freepeers.ini file is found at E:\basics\bearshare\FreePeers.ini. The extracted settings are as follows:

ProductLogic
Yes	: bAlwaysUpdate; Always Download and announce latest signaled BearShare program updates from FreePeers.inc

Network
1	: connectionType; Network connection type
(0=Modem/AOL/ISDN, 1=Broadband/Cable/DSL/Wireless, 2=Satellite, 3=T1/T3/LAN/OC3/Microwave, 4=Custom values)
6348	: listenPort; TCP/IP port number to listen on

Hosts
No	: bNeverBecomeUltrapeer; Disable UltraPeer mode

Authentication
No	bAuthenticateHosts; Authenticate host connections
No	bAuthenticateDownloads; Authenticate search results and downloads

GBandwidthLogic
No	: bSymmetric; Is Internet connection symmetric
1024	: totalKbps; Maximum bandwidth for symmetric connections
256	: sendKbps; Maximum outbound bandwidth for asymmetric connections
512	: recvKbps; Maximum inbound bandwidth for asymmetric connections
No	: bMaxHostsKbps; Limit host bandwidth
0	: maxHostsKbps; Kbps of send/receive bandwidth to limit hosts
No	: bMaxUploadsKbps; Limit upload bandwidth
0	: maxUploadsKbps; Kbps of send bandwidth to limit uploads
No	: bMaxDownloadsKbps; Limit download bandwidth
0	: maxDownloadsKbps; Kbps of receive bandwidth to limit downloads

HostLogic
No	: m_bEverUltrapeerCapable; Has client ever been an UltraPeer?

FirewallLogic
No	: bTcpNFW; yes if TCP is not firewalled
No	: bUdpNFW; yes if UDP is not firewalled
6348	: UDP Port; UDP port

Downloads
D:\new	: szDownloadsDir; Directory where completed and hashed downloads are moved to
D:	: szTempDir; Directory where partial downloads are kept
50	: dlMaxFiles; Maximum files to download at once
200	: dlMaxStreams; Maximum connections total
50	: dlMaxStreamsFile; Maximum connections per file
No	: bDelCompletedDownloads;  ; Automatically remove completed downloads
Yes	: bEnableSparseFiles; Enable Sparse files for temporary files
No	: bDisablePushSources; Never send Push messages
No	: bDisablePushProxySources; Never send Push Proxy requests

Uploads
8	: maxTotUploads; Maximum files to upload at once
22556	: lastSendBpsMaxAvg; last session average outgoing bandwidth

Firewall testing
Could not communicate with http://www3.limewire.com:6348/ - possible firewall configuration needed

E:\basics\bearshare\db\BearShareHostiles.zip: 1361560 bytes transferred over 175.71 seconds. Download speed is 62Kbps.
LSPFix.exe: 186880 bytes transferred over 19.91 seconds. Download speed is 75Kbps.
Code:
StartupList report, 12/2/2006, 1:43:21 PM
StartupList version: 1.52
Started from : C:\Documents and Settings\Gonna\Desktop\StartupList.EXE
Detected: Windows XP SP2 (WinNT 5.01.2600)
Detected: Internet Explorer v6.00 SP2 (6.00.2900.2180)
* Using default options
==================================================

Running processes:

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\Cpqdiag\Cpqdfwag.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\WINDOWS\system32\carpserv.exe
E:\basics\nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Internet Download Manager\IDMan.exe
E:\basics\nokia\Nokia PC Suite 6\PcSync2.exe
E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\1-Click Answers\answers.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\PROGRA~1\1-CLIC~1\agtserv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iTunes\iTunes.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCSVR.EXE
C:\Documents and Settings\Gonna\Desktop\BearDiagNew.exe
C:\Documents and Settings\Gonna\Desktop\StartupList.exe

--------------------------------------------------

Listing of startup folders:

Shell folders Common Startup:
[C:\Documents and Settings\All Users\Start Menu\Programs\Startup]
1-Click Answers.lnk = C:\Program Files\1-Click Answers\answers.exe
Microsoft Office.lnk = E:\basics\micro\Office10\OSA.EXE

--------------------------------------------------

Checking Windows NT UserInit:

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\WINDOWS\system32\userinit.exe,

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

IMJPMIG8.1 = "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
PHIME2002ASync = C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
PHIME2002A = C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
ATIPTA = C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
QT4HPOT = C:\Program Files\HPQ\One-Touch\OneTouch.EXE
CARPService = carpserv.exe
Display Settings = C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
PCSuiteTrayApplication = E:\basics\nokia\NOKIAP~1\LAUNCH~1.EXE -startup
QuickTime Task = "C:\Program Files\QuickTime\qttask.exe" -atboottime
iTunesHelper = "C:\Program Files\iTunes\iTunesHelper.exe"
AVG7_CC = C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
AVG7_EMC = C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
AVG7_RegCleaner = C:\PROGRA~1\Grisoft\AVG7\avgregcl.exe /BOOT
DAEMON Tools = "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
SunJavaUpdateSched = C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
SsAAD.exe = C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
TkBellExe = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices

CPQDFWAG = C:\WINDOWS\Cpqdiag\CpqDfwAg.exe

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run

CTFMON.EXE = C:\WINDOWS\system32\ctfmon.exe
MsnMsgr = "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
IDMan = C:\Program Files\Internet Download Manager\IDMan.exe /onboot
PcSync = E:\basics\nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
E06AXLRD_2970070 = "E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE" -m
MSMSGS = "C:\Program Files\Messenger\msmsgs.exe" /background
Yahoo! Pager = "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet

--------------------------------------------------

Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:

Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*

Shell & screensaver key from Registry:

Shell=Explorer.exe
SCRNSAVE.EXE=*Registry value not found*
drivers=*Registry value not found*

Policies Shell key:

HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*

--------------------------------------------------


Enumerating Browser Helper Objects:

(no name) - C:\Program Files\Internet Download Manager\IDMIECC.dll - {0055C089-8582-441B-A0BF-17B458C2A3A8}
(no name) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll - {02478D38-C3F9-4EFB-9B51-7695ECA05670}
(no name) - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
(no name) - C:\Program Files\Yahoo!\Common\yiesrvc.dll - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}
(no name) - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL - {955BE0B8-BC85-4CAF-856E-8E0D8B610560}

--------------------------------------------------

Enumerating Task Scheduler jobs:

AppleSoftwareUpdate.job

--------------------------------------------------

Enumerating Download Program Files:

[YInstStarter Class]
InProcServer32 = C:\Program Files\Yahoo!\Common\yinsthelper.dll
CODEBASE = C:\Program Files\Yahoo!\Common\yinsthelper.dll

[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx
CODEBASE = http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

--------------------------------------------------

Enumerating Winsock LSP files:

Protocol #1: C:\WINDOWS\system32\idmmbc.dll
Protocol #2: C:\WINDOWS\system32\idmmbc.dll
Protocol #3: C:\WINDOWS\system32\idmmbc.dll
Protocol #4: C:\WINDOWS\system32\idmmbc.dll
Protocol #19: C:\WINDOWS\system32\idmmbc.dll

--------------------------------------------------

Enumerating ShellServiceObjectDelayLoad items:

PostBootReminder: C:\WINDOWS\system32\SHELL32.dll
CDBurn: C:\WINDOWS\system32\SHELL32.dll
WebCheck: C:\WINDOWS\system32\webcheck.dll
SysTray: C:\WINDOWS\system32\stobject.dll

--------------------------------------------------
End of report, 8,025 bytes
Report generated in 0.431 seconds

Command line options:
   /verbose  - to add additional info on each section
   /complete - to include empty sections and unsuspicious data
   /full     - to include several rarely-important sections
   /force9x  - to include Win9x-only startups even if running on WinNT
   /forcent  - to include WinNT-only startups even if running on Win9x
   /forceall - to include all Win9x and WinNT startups, regardless of platform
   /history  - to list version history only
Code:
Current task list information for LIFE, running WIN_XP, Service Pack 2, build 2600
Details collected on 2006/12/02 13:43:13

 PID  Process Name            File Version  Pk Mem Usg. Command line that invoked task
    0 System Idle Process          0.0.0.0         0Mb  ><
    4 System                       0.0.0.0      1.97Mb  ><
  656 smss.exe               5.1.2600.2180      0.48Mb  >\SystemRoot\System32\smss.exe<
  720 csrss.exe                    0.0.0.0      4.42Mb  ><
  752 winlogon.exe           5.1.2600.2180     12.95Mb  >winlogon.exe<
  800 services.exe           5.1.2600.2180       4.3Mb  >C:\WINDOWS\system32\services.exe<
  812 lsass.exe              5.1.2600.2180      7.02Mb  >C:\WINDOWS\system32\lsass.exe<
  968 svchost.exe            5.1.2600.2180      5.63Mb  >C:\WINDOWS\system32\svchost -k DcomLaunch<
 1044 svchost.exe                  0.0.0.0      5.33Mb  ><
 1144 svchost.exe            5.1.2600.2180     30.57Mb  >C:\WINDOWS\System32\svchost.exe -k netsvcs<
 1208 svchost.exe                  0.0.0.0      3.59Mb  ><
 1292 svchost.exe                  0.0.0.0      6.63Mb  ><
 1640 spoolsv.exe            5.1.2600.2696      4.66Mb  >C:\WINDOWS\system32\spoolsv.exe<
 1836 avgamsvr.exe               7.0.0.142      5.77Mb  >C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe<
 1848 avgupsvc.exe               7.0.0.132      2.14Mb  >C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe<
 1864 CPQDFWAG.EXE              3.1.0.2005       2.3Mb  >C:\WINDOWS\Cpqdiag\Cpqdfwag.exe<
 1916 HPConfig.exe                 3.0.1.8      3.34Mb  >C:\WINDOWS\system32\HPConfig.exe<
 1940 HPWirelessMgr.exe            1.0.0.9      2.66Mb  >"C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe"<
 2044 svchost.exe            5.1.2600.2180      4.26Mb  >C:\WINDOWS\system32\svchost.exe -k imgsvc<
  476 WLTRYSVC.EXE                 0.0.0.0      1.63Mb  >C:\WINDOWS\System32\wltrysvc.exe C:\WINDOWS\System32\bcmwltry.exe<
 1104 explorer.exe           6.0.2900.2180     27.23Mb  >C:\WINDOWS\Explorer.EXE<
 1124 wscntfy.exe            5.1.2600.2180       2.3Mb  >C:\WINDOWS\system32\wscntfy.exe<
 1416 atiptaxx.exe            6.14.10.5102      4.33Mb  >"C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" <
 1396 ONETOUCH.EXE                 1.6.8.0      4.07Mb  >"C:\Program Files\HPQ\One-Touch\OneTouch.EXE" <
 1500 carpserv.exe                 1.0.0.1      0.66Mb  >"C:\WINDOWS\system32\carpserv.exe" <
 1560 LAUNCH~1.EXE               6.81.61.4     14.16Mb  >"E:\basics\nokia\NOKIAP~1\LAUNCH~1.EXE" -startup<
 1576 qttask.exe                 7.1.3.130      2.46Mb  >"C:\Program Files\QuickTime\qttask.exe" -atboottime<
 1588 iTunesHelper.exe             7.0.1.8       3.6Mb  >"C:\Program Files\iTunes\iTunesHelper.exe" <
 1408 avgcc.exe                  7.0.0.142     17.34Mb  >"C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" /STARTUP<
 1692 avgemc.exe                 7.0.0.136     16.13Mb  >"C:\PROGRA~1\Grisoft\AVG7\avgemc.exe" <
 1708 daemon.exe                   4.3.0.0      3.35Mb  >"C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033<
  272 jusched.exe                 1.5.0.10      2.05Mb  >"C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe" <
 1732 SSAAD.exe                3.0.0.13241      6.54Mb  >"C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe" <
  364 BCMWLTRY.EXE               3.40.25.6      4.04Mb  >C:\WINDOWS\System32\bcmwltry.exe<
 2040 realsched.exe             0.1.0.3292      3.15Mb  >"C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot<
 1528 ctfmon.exe             5.1.2600.2180      3.32Mb  >"C:\WINDOWS\system32\ctfmon.exe" <
  516 alg.exe                      0.0.0.0      3.95Mb  ><
  696 msnmsgr.exe                8.0.812.0     49.06Mb  >"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background<
  876 IDMan.exe                    4.0.7.1      9.13Mb  >"C:\Program Files\Internet Download Manager\IDMan.exe" /onboot<
 1744 PcSync2.exe                2.0.0.506     19.85Mb  >"E:\basics\nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog<
 2012 EDICT.EXE              15.0.3400.603     25.87Mb  >"E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE" -m<
 2052 msmsgs.exe                4.7.0.3001      5.36Mb  >"C:\Program Files\Messenger\msmsgs.exe" /background<
 2160 iPodService.exe              7.0.1.8      3.54Mb  >"C:\Program Files\iPod\bin\iPodService.exe"<
 2168 answers.exe                2.0.1.458     14.88Mb  >"C:\Program Files\1-Click Answers\answers.exe" <
 2220 ServiceLayer.exe           6.81.60.0      6.08Mb  >"C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe"<
 2360 SSScsiSV.exe             3.0.0.13241      2.54Mb  >"C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe"<
 2804 MPAPI3s.exe               6.81.161.1      3.57Mb  >C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe -Embedding<
 2956 agtserv.exe                8.0.1.458      3.13Mb  >C:\PROGRA~1\1-CLIC~1\agtserv.exe 66238 <
 3264 svchost.exe            5.1.2600.2180       3.5Mb  >C:\WINDOWS\System32\svchost.exe -k HTTPFilter<
 3424 wuauclt.exe               5.8.0.2469      5.52Mb  >"C:\WINDOWS\system32\wuauclt.exe"<
 4008 svchost.exe            5.1.2600.2180      3.91Mb  >C:\WINDOWS\system32\svchost.exe -k usnsvc<
 1112 iTunes.exe                   7.0.1.8     57.61Mb  >"C:\Program Files\iTunes\iTunes.exe" <
  776 YAHOOM~1.EXE               8.1.0.195     48.19Mb  >"C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE"<
 3452 IEXPLORE.EXE           6.0.2900.2180      32.6Mb  >"C:\Program Files\Internet Explorer\iexplore.exe" http://msg.edit.yahoo.com/config/reset_cookies?&.y=Y=v=1%26n=8nb8ec8u54uoc%26l=4b_64d_tqqq/o%26p=m2qvveg1132e0500%26jb=24%7c69%7c%26iz=21035%26r=cb%26lg=us%26intl=us%26np=1;+path=/;+domain=.yahoo.com&.t=T=z=qZWcFBqfrcFBb0C.6HlcTZGMjEzBjU2TzcwMzdPNzU-%26a=AAE%26sk=DAACCtjo8qfGrm%26d=c2wBTlRZMEFUSXhPREEzTkRBNE1ESS0BYQFBQUUBenoBcVpXY0ZCZ1dBAXRpcAFFcnNTQ0M-;+path=/;+domain=.yahoo.com&.ver=2&.done=http%3a//us.rd.yahoo.com/messenger/client/%3fhttp%3a//mail.yahoo.com/<
 1132 ENCWCSVR.EXE           15.0.3400.603     41.41Mb  >"C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCSVR.EXE" -Embedding<
 3176 BearDiagNew.exe            1.99.14.0     12.35Mb  >BearDiagNew.exe<
  328 wmiprvse.exe                 0.0.0.0      5.71Mb  ><


BearShare library folder information for LIFE, running WIN_XP, Service Pack 2, build 2600
Details collected on 2006/12/02 14:01:31

 Volume in drive E has no label.
 Volume Serial Number is F480-A54D

 Directory of E:\basics\bearshare\db

11/25/2006  10:21 AM    <DIR>          .
11/25/2006  10:21 AM    <DIR>          ..
12/02/2006  02:00 PM         1,361,560 BearShareHostiles.zip
11/25/2006  10:23 AM             3,103 config.bin
12/02/2006  01:58 PM           154,567 connect.txt
06/01/2004  05:52 PM            16,463 gnucache.dat
12/02/2006  01:07 PM             2,670 gwebcache.dat
06/01/2004  05:52 PM            16,342 hbcache.dat
11/25/2006  12:32 PM             3,768 Hostiles.old
04/30/2006  08:37 PM        10,384,336 Hostiles.txt
12/02/2006  01:07 PM                 0 Hostiles-Chat.txt
12/02/2006  02:01 PM           266,240 library.2.db
12/02/2006  01:39 PM           256,000 library.2.db.lastgoodload.bak
12/02/2006  05:58 AM               744 library.dat
12/02/2006  02:01 PM           266,240 library.db
12/02/2006  01:39 PM           256,000 library.db.lastgoodload.bak
12/02/2006  01:07 PM                19 searches.ini
              15 File(s)     12,988,052 bytes
               2 Dir(s)   2,395,348,992 bytes free
[CODE]
Firewall information for LIFE, running WIN_XP, Service Pack 2, build 2600
Details collected on 2006/12/02 14:01:38

Default gateway is 192.168.1.1
Valid Firewall exception for program E:\basics\bearshare\BearShare.exe found
Valid Firewall exception for TCP port 6348 found
Reply With Quote
  #4 (permalink)  
Old December 2nd, 2006
Apprentice
 
Join Date: July 28th, 2006
Posts: 7
gonna is flying high
Default

Domain profile configuration:
-------------------------------------------------------------------
Operational mode = Enable
Exception mode = Enable
Multicast/broadcast response mode = Enable
Notification mode = Enable

Allowed programs configuration for Domain profile:
Mode Name / Program
-------------------------------------------------------------------
Enable Remote Assistance / C:\WINDOWS\system32\sessmgr.exe
Enable Windows Live Messenger 8.0 / C:\Program Files\MSN Messenger\msnmsgr.exe
Enable Windows Live Messenger 8.0 (Phone) / C:\Program Files\MSN Messenger\msncall.exe

Standard profile configuration (current):
-------------------------------------------------------------------
Operational mode = Enable
Exception mode = Enable
Multicast/broadcast response mode = Enable
Notification mode = Enable

Allowed programs configuration for Standard profile:
Mode Name / Program
-------------------------------------------------------------------
Enable Remote Assistance / C:\WINDOWS\system32\sessmgr.exe
Enable Windows Live Messenger 8.0 / C:\Program Files\MSN Messenger\msnmsgr.exe
Enable Windows Live Messenger 8.0 (Phone) / C:\Program Files\MSN Messenger\msncall.exe
Enable BearShare / C:\Program Files\BearShare\BearShare.exe
Enable iTunes / C:\Program Files\iTunes\iTunes.exe
Enable Windows Messenger / C:\Program Files\Messenger\msmsgs.exe
Enable Yahoo! Messenger / C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
Enable Yahoo! FT Server / C:\Program Files\Yahoo!\Messenger\YServer.exe
Enable LimeWire PRO 4.10.0 / C:\Program Files\LimeWire\LimeWire.exe
Enable BearShare / E:\basics\bearshare\BearShare.exe

Port configuration for Standard profile:
Port Protocol Mode Name
-------------------------------------------------------------------
6348 TCP Enable 6348

Log configuration:
-------------------------------------------------------------------
File location = C:\WINDOWS\pfirewall.log
Max file size = 4096 KB
Dropped packets = Disable
Connections = Disable

Local Area Connection firewall configuration:
-------------------------------------------------------------------
Operational mode = Enable

1394 Connection firewall configuration:
-------------------------------------------------------------------
Operational mode = Enable

[/CODE]
Code:
Logfile of HijackThis v1.99.1
Scan saved at 1:46:46 PM, on 12/2/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\Cpqdiag\Cpqdfwag.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\WINDOWS\system32\carpserv.exe
E:\basics\nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Internet Download Manager\IDMan.exe
E:\basics\nokia\Nokia PC Suite 6\PcSync2.exe
E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\1-Click Answers\answers.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\PROGRA~1\1-CLIC~1\agtserv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iTunes\iTunes.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCSVR.EXE
C:\Documents and Settings\Gonna\Desktop\BearDiagNew.exe
C:\Documents and Settings\Gonna\Desktop\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Encarta Web Companion Helper Object - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: 1-Click Answers - {7754C418-F62E-44aa-B169-E719E718BCFD} - C:\PROGRA~1\1-CLIC~1\IEToolbar\AnswersToolbarU.dll
O3 - Toolbar: Encarta Web Companion - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [PCSuiteTrayApplication] E:\basics\nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [AVG7_RegCleaner] C:\PROGRA~1\Grisoft\AVG7\avgregcl.exe /BOOT
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\RunServices: [CPQDFWAG] C:\WINDOWS\Cpqdiag\CpqDfwAg.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [PcSync] E:\basics\nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [E06AXLRD_2970070] "E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE" -m
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - Global Startup: 1-Click Answers.lnk = C:\Program Files\1-Click Answers\answers.exe
O4 - Global Startup: Microsoft Office.lnk = E:\basics\micro\Office10\OSA.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Answers... - file:C:\Program Files\1-Click Answers\Html\atiemenu.htm
O8 - Extra context menu item: Download All Links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\basics\micro\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Remote Diagnostics Enabling Agent (DfwWebAgent) - Hewlett-Packard - C:\WINDOWS\Cpqdiag\Cpqdfwag.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: WLTRYSVC - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Encarta Web Companion Helper Object - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: 1-Click Answers - {7754C418-F62E-44aa-B169-E719E718BCFD} - C:\PROGRA~1\1-CLIC~1\IEToolbar\AnswersToolbarU.dll
O3 - Toolbar: Encarta Web Companion - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [PCSuiteTrayApplication] E:\basics\nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [AVG7_RegCleaner] C:\PROGRA~1\Grisoft\AVG7\avgregcl.exe /BOOT
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\RunServices: [CPQDFWAG] C:\WINDOWS\Cpqdiag\CpqDfwAg.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [PcSync] E:\basics\nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [E06AXLRD_2970070] "E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE" -m
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - Global Startup: 1-Click Answers.lnk = C:\Program Files\1-Click Answers\answers.exe
O4 - Global Startup: Microsoft Office.lnk = E:\basics\micro\Office10\OSA.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Answers... - file:C:\Program Files\1-Click Answers\Html\atiemenu.htm
O8 - Extra context menu item: Download All Links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\basics\micro\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Remote Diagnostics Enabling Agent (DfwWebAgent) - Hewlett-Packard - C:\WINDOWS\Cpqdiag\Cpqdfwag.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: WLTRYSVC - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe


.
Reply With Quote
  #5 (permalink)  
Old December 2nd, 2006
AaronWalkhouse's Avatar
***ּLegendary Axeman***ּ
 
Join Date: January 17th, 2005
Location: My igloos melt in June.
Posts: 1,974
AaronWalkhouse is a great assister to others; your light through the dark tunnel
Default

Your installation of BearShare is pretty badly messed up.

BearDiag sees version 5.2.4.1 instead of the Lite version. Get rid of it
completely so you get no conflict with the version you actually are using.

The downloads folder (D:\new) is actually inside the temp folder (D:\),
which is a disastrous problem. Create a new temp folder as D:\bearsharetemp
and make the change in BearShare's setup. They must be separated from
each other because BearShare constantly watches the completed
downloads folder for changed or new files. If the temp folder is on the same
branch the constantly changing temp files cause BearShare to constantly scan
them over and over again until it crashes.

If your BearShare Lite is actually using other folders instead of these ones,
make sure they are separate. BearDiag is looking at the wrong BearShare right
now and the settings may be different.

You have Internet Download Manager installed too. Because of the way it
inserts a driver in Windows' networking system, BearShare will tend to cause
crashes as that extra driver (idmmbc.dll) cannot keep up with the traffic.
Uninstall that program for now, until you get BearShare working again, and if
you still want it you can test it later.

Since you are very low in memory, it's time to offload a bunch of nonessential
bits of code you don't really need. Run HijackThis.exe again and put
checkmarks on all of these:

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe
O4 - HKCU\..\Run: [E06AXLRD_2970070] "E:\basics\encarta\Encarta Premium DVD 2006\EDICT.EXE" -m
O4 - Global Startup: Microsoft Office.lnk = E:\basics\micro\Office10\OSA.EXE
O8 - Extra context menu item: Download All Links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll

Then hit the Fix Checked button and reboot. This alone will give you back so
much RAM you computer will speed up noticeably. Don't worry about the
programs involved. This does not delete or uninstall them, but just stops them
from loading up when Windows boots. The items for Internet Download
Manager may be gone already if you uninstalled it but I included them here
anyway just in case you forgot.

Once you finish all that, reinstall the version Of BearShare you really want to
use right on top of the existing one so that all the registry keys point to the
right one. Reinstalling won't damage BearShare or lose any of your settings
and downloads.

It should work much better now. Later on, if you want full power,
I'll show you how to use the turbocharged beta version, 5.1.0b25, which
actually expired last year but can be resurrected easily. ;]

If you have any more problems use BearDiag again. Next time it will be seeing
the right version because you reinstalled it.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Every time I start limewire I get a windows error (send error report) message! brain_tuel General Windows Support 3 February 18th, 2009 04:29 AM
Decifer This Install Error Report, PLEASE?? oneblackhorse Windows 22 July 12th, 2007 06:10 AM
Error report! siobhansmyth Open Discussion topics 1 November 22nd, 2006 03:06 PM
I don't know how to do something... Popup error ... how to send report Souri_Aruna Windows 0 November 25th, 2005 05:50 PM
Annoying Error report MaxMan General Windows Support 3 October 18th, 2005 08:10 PM


All times are GMT -7. The time now is 07:08 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 ©2011, Crawlability, Inc.

Copyright © 2013 Gnutella Forums.
All Rights Reserved.