
Windows 98SE Machine
[CODE]
BEARDIAG ISSUES - brief summary: (Extracted on 2007/02/21 11:33:20) 

ZoneAlarm firewall found - unsuitable for use with BearShare - too slow and unstable!
 Refer to http://nh2.nohold.net/noHoldCust25/Prod_1/Articles55646/CompleteUninstallNonNT.html for un-installation instructions
ZoneAlarm firewall found - unsuitable for use with BearShare - too slow and unstable!
 Refer to http://nh2.nohold.net/noHoldCust25/Prod_1/Articles55646/CompleteUninstallNonNT.html for un-installation instructions
BearShare version 4.5.0.63 found. We recommend the 5.1.0.b25 beta version - see [URL=http://www.technutopia.com/forum/showthread.php?t=2002]Recommended BearShare downloads[/URL]

More technical diagnostic troubleshooting information follows:[/CODE][CODE]
BEARDIAG: Bearcare for BearShare.
Details collected on 2007/02/21 11:31:54, BEARDIAG Version 01.99.16.0 beta, expires 2007/07/30 (159 days), running from C:\zTemp\New Folder\BearDiag.exe

System Resource Information
OS Version is: 		WIN_98,
Free System Resources: 	62%,
Free GDI Resources: 	83%,
Free User Resources: 	62%

OS Version is: WIN_98, Service pack: A, OS Build: 2222, Computer Name: User ID
Browser name: C:\PROGRA~1\INTERN~1\iexplore.exe, version: 6.0.2800.1106, Admin user? YES

System Memory Parameters: 	Memory in use: 	45%
Total Physical RAM: 	383.5Mb	Available Physical RAM: 	117.1Mb
Total Pagefile:   		1000.0Mb	Available Pagefile: 		855.2Mb

Internet IP Address 67.58.xxx.xxx  Local IP Address 192.168.0.100  You are behind a NAT firewall and/or router.

File Locations
Program files are at: C:\Program Files, System Temporary files are at: C:\WINDOWS\TEMP, Common desktop is at:C:\WINDOWS\All Users\Desktop
BearShare version installed is: 4.5.0.63, Gnutella servent BearShare full path is: C:\Program Files\BearShare\
Temporary downloads at: C:\PROGRAM FILES\BEARSHARE\Temp\, Completed downloads at: C:\My Documents\My Music\

Disk statistics
Drive C:	Total space: 17.20Gb	Free: 11.23Gb	Full: 34.7%	Vol type: FAT32

Folder Statistics
Temporary downloads folder:  Space used: 0, 	File count: 0, 	Write access allowed? YES,  # of DAT files: 0, #BAK: 0, #TIGER: 0, #TMP: 0, Other: 0
Completed downloads folder:  Space used: 339.3Mb, 	File count: 78, 	Write access allowed? YES
BearShare library file 'library.db' size is 0, '/db' library folder size is 163.4Kb, console log size is 0

FreePeers.ini settings
The freepeers.ini file is found at C:\Program Files\BearShare\FreePeers.ini. The extracted settings are as follows:

ProductLogic
NOT AVAILABLE	: bAlwaysUpdate; Always Download and announce latest signaled BearShare program updates from FreePeers.inc

Network
1	: connectionType; Network connection type
(0=Modem/AOL/ISDN, 1=Broadband/Cable/DSL/Wireless, 2=Satellite, 3=T1/T3/LAN/OC3/Microwave, 4=Custom values)
6346	: listenPort; TCP/IP port number to listen on

Hosts
No	: bNeverBecomeUltrapeer; Disable UltraPeer mode

Authentication
No	bAuthenticateHosts; Authenticate host connections
No	bAuthenticateDownloads; Authenticate search results and downloads

GBandwidthLogic
No	: bSymmetric; Is Internet connection symmetric
1024	: totalKbps; Maximum bandwidth for symmetric connections
256	: sendKbps; Maximum outbound bandwidth for asymmetric connections
1024	: recvKbps; Maximum inbound bandwidth for asymmetric connections
No	: bMaxHostsKbps; Limit host bandwidth
0	: maxHostsKbps; Kbps of send/receive bandwidth to limit hosts
No	: bMaxUploadsKbps; Limit upload bandwidth
0	: maxUploadsKbps; Kbps of send bandwidth to limit uploads
No	: bMaxDownloadsKbps; Limit download bandwidth
0	: maxDownloadsKbps; Kbps of receive bandwidth to limit downloads

HostLogic
No	: m_bEverUltrapeerCapable; Has client ever been an UltraPeer?

FirewallLogic
NOT AVAILABLE	: bTcpNFW; yes if TCP is not firewalled
NOT AVAILABLE	: bUdpNFW; yes if UDP is not firewalled
NOT AVAILABLE	: UDP Port; UDP port

Downloads
C:\My Documents\My Music	: szDownloadsDir; Directory where completed and hashed downloads are moved to
C:\PROGRAM FILES\BEARSHARE\Temp	: szTempDir; Directory where partial downloads are kept
8	: dlMaxFiles; Maximum files to download at once
20	: dlMaxStreams; Maximum connections total
8	: dlMaxStreamsFile; Maximum connections per file
No	: bDelCompletedDownloads;  ; Automatically remove completed downloads
NOT AVAILABLE	: bEnableSparseFiles; Enable Sparse files for temporary files
NOT AVAILABLE	: bDisablePushSources; Never send Push messages
NOT AVAILABLE	: bDisablePushProxySources; Never send Push Proxy requests

Uploads
8	: maxTotUploads; Maximum files to upload at once
0	: lastSendBpsMaxAvg; last session average outgoing bandwidth


C:\Program Files\BearShare\db\BearShareHostiles.zip: 1246215 bytes transferred over 14.31 seconds. Download speed is 697Kbps.
LSPFix.exe: 186880 bytes transferred over 2.06 seconds. Download speed is 727Kbps.

[/CODE]
[CODE]
StartupList report, 02/21/07, 11:32:06 AM
StartupList version: 1.52
Started from : C:\ZTEMP\NEW FOLDER\STARTUPLIST.EXE
Detected: Windows 98 SE (Win9x 4.10.2222A)
Detected: Internet Explorer v6.00 SP1 (6.00.2800.1106)
* Using default options
==================================================

Running processes:

C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\SYSTEM\ATICWD32.EXE
C:\WINDOWS\SYSTEM\ATITASK.EXE
C:\PROGRAM FILES\WINPORTRAIT\WPCTRL.EXE
C:\WINDOWS\SYSTEM\HPSJVXD.EXE
C:\PROGRAM FILES\HP\HPCORETECH\HPCMPMGR.EXE
C:\PROGRAM FILES\HEWLETT-PACKARD\HP PRECISIONSCAN\PRECISIONSCAN PRO\HPLAMP.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
C:\PROGRAM FILES\WINPORTRAIT\FLOATER.EXE
C:\PROGRAM FILES\AHEAD\INCD\INCD.EXE
C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE
C:\PW TRACKER\PWTRKR.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\ZTEMP\NEW FOLDER\BEARDIAG.EXE
C:\ZTEMP\NEW FOLDER\STARTUPLIST.EXE

--------------------------------------------------

Listing of startup folders:

Shell folders Startup:
[C:\WINDOWS\Start Menu\Programs\StartUp]
Password Tracker.lnk = C:\PW Tracker\PwTrkr.exe

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

SystemTray = SysTray.Exe
TaskMonitor = C:\WINDOWS\taskmon.exe
LoadPowerProfile = Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
StillImageMonitor = C:\WINDOWS\SYSTEM\STIMON.EXE
AtiCwd32 = Aticwd32.exe
AtiKey = Atitask.exe
PivotSoftware = C:\Program Files\WinPortrait\wpctrl.exe
HPSCANMonitor = C:\WINDOWS\SYSTEM\hpsjvxd.exe
HPHUPD06 = C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
HP Component Manager = "C:\PROGRAM FILES\HP\HPCORETECH\HPCMPMGR.EXE"
HPDJ Taskbar Utility = C:\WINDOWS\SYSTEM\hpztsb11.exe
HP Lamp = "C:\Program Files\Hewlett-Packard\HP PrecisionScan\PrecisionScan Pro\hplamp.exe"
AVG7_CC = C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
AVG7_EMC = C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
AVG7_AMSVR = C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
Tweak UI = RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
InCD = C:\Program Files\Ahead\InCD\InCD.exe
Zone Labs Client = C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices

KB891711 = C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
TrueVector = C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service

--------------------------------------------------

Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:

Shell=explorer.exe
SCRNSAVE.EXE=
drivers=mmsystem.dll power.drv

--------------------------------------------------

C:\WINDOWS\WININIT.BAK listing:
(Created 9/2/2007, 9:1:46)

[rename]
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGSET.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGSET.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\SETUPUS.LNS=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\SETUPUS.LNS
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVG.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVG.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVG7CORE.VXD=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVG7CORE.VXD
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVG7US.LNG=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVG7US.LNG
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGABOUT.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGABOUT.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMINT.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGAMINT.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGAMSVR.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGCC.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCCKRN.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGCCKRN.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCFG.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGCFG.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCORE.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGCORE.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGEMC.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMSUI.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGEMSUI.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGINET.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGINET.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGINET.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGINET.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGKLIB.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGKLIB.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGSCAN.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGSCAN.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGSCAN.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGSCAN.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGTEST.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGTEST.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGTRES.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGTRES.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGUNARC.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGUNARC.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGUSS.HLP=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGUSS.HLP
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGVAULT.DLL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGVAULT.DLL
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGW.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGW.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGWB.DAT=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\AVGWB.DAT
C:\PROGRA~1\GRISOFT\AVGFRE~1\DFNCFG.DAT=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\DFNCFG.DAT
C:\PROGRA~1\GRISOFT\AVGFRE~1\DFNCFGFR.DAT=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\DFNCFGFR.DAT
C:\PROGRA~1\GRISOFT\AVGFRE~1\MICROAVI.AVG=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\MICROAVI.AVG
C:\PROGRA~1\GRISOFT\AVGFRE~1\ORDER_US.PDF=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\ORDER_US.PDF
C:\PROGRA~1\GRISOFT\AVGFRE~1\ORDER_US.TXT=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\ORDER_US.TXT
C:\PROGRA~1\GRISOFT\AVGFRE~1\SETUP.DAT=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\SETUP.DAT
C:\PROGRA~1\GRISOFT\AVGFRE~1\SETUP.EXE=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\SETUP.EXE
C:\PROGRA~1\GRISOFT\AVGFRE~1\UPD_VERS.CFG=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\UPD_VERS.CFG
C:\PROGRA~1\GRISOFT\AVGFRE~1\INCAVI.AVM=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\INCAVI.AVM
NUL=C:\PROGRA~1\GRISOFT\AVGFRE~1\WAIT4SD
NUL=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\U-FWD.IDX
C:\PROGRA~1\GRISOFT\AVGFRE~1\REGAPP.UPD=C:\WINDOWS\ALLUSE~1\APPLIC~1\GRISOFT\AVG7DATA\AVG7UPD\INSTALL.1\REGAPP.UPD

--------------------------------------------------

C:\AUTOEXEC.BAT listing:

SET BLASTER=A220 I5 D1 T4
C:\PROGRA~1\GRISOFT\AVGFRE~1\BOOTUP.EXE
C:\CFG801
C:\DOS801
PATH C:\PROGRA~1\WIN98RK;%PATH%
SET CLASSPATH=C:\PROGRA~1\PHOTOD~1.0\ADOBEC~1;C:\PROGRA~1\PHOTOD~1.1\ADOBEC~1;C:\EasyPhoto\PhotoDeluxe 2.0\AdobeConnectables

--------------------------------------------------


Enumerating Browser Helper Objects:

(no name) - C:\WINDOWS\SPEECH\DRAGON\WEB_IE.DLL - {2843DAC1-05EF-11D2-95BA-0060083493D6}
(no name) - C:\PROGRAM FILES\POPUP MANAGER\POPUPMGR_1.0.1.5.DLL - {08E74C67-99A6-45C7-94DA-A397A8FD8082}
(no name) - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}

--------------------------------------------------

Enumerating Download Program Files:

[CV3 Class]
InProcServer32 = C:\WINDOWS\SYSTEM\WUV3IS.DLL
CODEBASE = http://windowsupdate.microsoft.com/R836/V31Controls/x86/w98/en/actsetup.cab

[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\SYSTEM\MACROMED\FLASH\FLASH.OCX
CODEBASE = http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

[PCPDiskHealth Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\DISKHEALTH.DLL
CODEBASE = http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB

[Symantec RuFSI Registry Information Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\RUFSI.DLL
CODEBASE = http://security1.norton.com/sa/common/common/bin/cabsa.cab

[ConfigChkr Class]
InProcServer32 = C:\WINDOWS\DOWNLO~1\VSCNFCHK.DLL
CODEBASE = https://www.applyforproducts.cibc.com/certenroll/vscnfchk.cab

[VSPTA Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\PTAV3.DLL
CODEBASE = https://www.applyforproducts.cibc.com/certenroll/VSApps/vspta3.cab

[sys Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\PCPITSTOP.DLL
CODEBASE = http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB

[TP_live Control]
InProcServer32 = C:\WINDOWS\SYSTEM\TP_LIVE.OCX
CODEBASE = http://professional.homestead.com/TP_live.cab

[Web Browser Pop-up Window Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\WEBPOPUP.OCX
CODEBASE = http://activex.microsoft.com/activex/controls/iptdweb/webpopup.ocx

[{6318E0AB-2E93-11D1-B8ED-00608CC9A71F}]
CODEBASE = http://www.belarc.com/Programs/advisor.exe

[QuickTime Object]
InProcServer32 = C:\WINDOWS\SYSTEM\QTPLUGIN.OCX
CODEBASE = http://www.apple.com/qtactivex/qtplugin.cab

[InstallShield International Setup Player]
InProcServer32 = c:\WINDOWS\DOWNLO~1\ISETUP.DLL
CODEBASE = http://www.installengine.com/engine/isetup.cab

[Microsoft Office Tools on the Web Control]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\OUTC.DLL
CODEBASE = http://dgl.microsoft.com/downloads/outc.cab

[SurferNETWORK Plugin]
InProcServer32 = C:\WINDOWS\DOWNLO~1\SURFER~1.OCX
CODEBASE = http://XX.XX.XXX.XX/surferplugin.ocx

[ActiveDataObj Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\ACTIVEDATA.DLL
CODEBASE = https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab

[{33564D57-9980-0010-8000-00AA00389B71}]
CODEBASE = http://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab

[Update Class]
InProcServer32 = C:\WINDOWS\SYSTEM\IUCTL.DLL
CODEBASE = http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?38757.5379976852

--------------------------------------------------

Enumerating ShellServiceObjectDelayLoad items:

WebCheck: C:\WINDOWS\SYSTEM\WEBCHECK.DLL

--------------------------------------------------
End of report, 11,845 bytes
Report generated in 0.188 seconds

Command line options:
   /verbose  - to add additional info on each section
   /complete - to include empty sections and unsuspicious data
   /full     - to include several rarely-important sections
   /force9x  - to include Win9x-only startups even if running on WinNT
   /forcent  - to include WinNT-only startups even if running on Win9x
   /forceall - to include all Win9x and WinNT startups, regardless of platform
   /history  - to list version history only

[/CODE][CODE]

BearShare library folder information for User ID, running WIN_98, A, build 2222
Details collected on 2007/02/21 11:33:20


 Volume in drive C has no label
 Volume Serial Number is 370E-18CF
 Directory of C:\Program Files\BearShare\db

.              <DIR>        01-28-06 12:20p .
..             <DIR>        01-28-06 12:20p ..
BEARSH~1 ZIP     1,246,215  02-21-07 11:33a BearShareHostiles.zip
CONFIG   BIN         3,103  08-16-06 10:11a config.bin
CONNECT  TXT        90,227  01-27-07  9:28p connect.txt
GNUCACHE DAT        16,463  06-01-04  5:52p gnucache.dat
GWEBCA~1 DAT         2,131  01-27-07  9:28p gwebcache.dat
HBCACHE  DAT        16,342  06-01-04  5:52p hbcache.dat
HOSTILES TXT     9,295,723  02-16-07  2:18a Hostiles.txt
HOSTILES OLD         1,952  01-28-06 12:21p Hostiles.old
LIBRARY  DAT        37,096  01-27-07  9:28p library.dat
         9 file(s)     10,709,252 bytes
         2 dir(s)       11,484.17 MB free
[/CODE]
[CODE]
Firewall information for User ID, running WIN_98, A, build 2222
Details collected on 2007/02/21 11:33:22

Default gateway is 192.168.0.1

 
[/CODE]
[CODE]
Logfile of HijackThis v1.99.1
Scan saved at 11:32 AM, on 02/21/07
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\SYSTEM\ATICWD32.EXE
C:\WINDOWS\SYSTEM\ATITASK.EXE
C:\PROGRAM FILES\WINPORTRAIT\WPCTRL.EXE
C:\WINDOWS\SYSTEM\HPSJVXD.EXE
C:\PROGRAM FILES\HP\HPCORETECH\HPCMPMGR.EXE
C:\PROGRAM FILES\HEWLETT-PACKARD\HP PRECISIONSCAN\PRECISIONSCAN PRO\HPLAMP.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
C:\PROGRAM FILES\WINPORTRAIT\FLOATER.EXE
C:\PROGRAM FILES\AHEAD\INCD\INCD.EXE
C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE
C:\PW TRACKER\PWTRKR.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\ZTEMP\NEW FOLDER\BEARDIAG.EXE
C:\WINDOWS\NOTEPAD.EXE
C:\ZTEMP\NEW FOLDER\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.audioseek.net/iesearch/%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.audioseek.net/iesearch/
O2 - BHO: DgnWebIE - {2843DAC1-05EF-11D2-95BA-0060083493D6} - C:\WINDOWS\SPEECH\DRAGON\WEB_IE.DLL
O2 - BHO: PopupManager Class - {08E74C67-99A6-45C7-94DA-A397A8FD8082} - C:\PROGRAM FILES\POPUP MANAGER\POPUPMGR_1.0.1.5.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YT.DLL
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
O4 - HKLM\..\Run: [AtiKey] Atitask.exe
O4 - HKLM\..\Run: [PivotSoftware] C:\Program Files\WinPortrait\wpctrl.exe
O4 - HKLM\..\Run: [HPSCANMonitor] C:\WINDOWS\SYSTEM\hpsjvxd.exe
O4 - HKLM\..\Run: [HPHUPD06] C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\PROGRAM FILES\HP\HPCORETECH\HPCMPMGR.EXE"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb11.exe
O4 - HKLM\..\Run: [HP Lamp] "C:\Program Files\Hewlett-Packard\HP PrecisionScan\PrecisionScan Pro\hplamp.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
O4 - HKLM\..\RunServices: [KB891711] C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
O4 - HKLM\..\RunServices: [TrueVector] C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service
O4 - Startup: Password Tracker.lnk = C:\PW Tracker\PwTrkr.exe
O8 - Extra context menu item: Add to filterlist (WebWasher) - http://-Web.Washer-/ie_add
O9 - Extra button: Net2Phone - {4B30061A-5B39-11D3-80F8-0090276F843F} - C:\Program Files\Net2Phone\Net2fone.exe (file missing)
O9 - Extra 'Tools' menuitem: Net2Phone - {4B30061A-5B39-11D3-80F8-0090276F843F} - C:\Program Files\Net2Phone\Net2fone.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: MSN Messenger Service - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .aif: C:\PROGRAM FILES\NETSCAPE\COMMUNICATOR\PROGRAM\PLUGINS\npaudio.dll
O16 - DPF: Serome Web2Phone - http://dialpad.com/applet/vscp.cab
O16 - DPF: {57BBF06E-D997-11D3-8997-00104BD12D94} (PCPDiskHealth Class) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security1.norton.com/sa/common/common/bin/cabsa.cab
O16 - DPF: {08F04139-8DFC-11D2-80E9-006008B066EE} (ConfigChkr Class) - https://www.applyforproducts.cibc.com/certenroll/vscnfchk.cab
O16 - DPF: {6F7864F9-DB33-11D3-8166-0060B0F885E6} (VSPTA Class) - https://www.applyforproducts.cibc.com/certenroll/VSApps/vspta3.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (sys Class) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {DA04CC86-07A5-11D5-A700-0001031AD955} (TP_live Control) - http://professional.homestead.com/TP_live.cab
O16 - DPF: {853C1A83-1639-11D0-8BBF-0080C7A01083} (Web Browser Pop-up Window Control) - http://activex.microsoft.com/activex/controls/iptdweb/webpopup.ocx
O16 - DPF: {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - http://www.belarc.com/Programs/advisor.exe
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.installengine.com/engine/isetup.cab
O16 - DPF: {DF6A0F17-0B1E-11D4-829D-00C04F6843FE} (Microsoft Office Tools on the Web Control) - http://dgl.microsoft.com/downloads/outc.cab
O16 - DPF: {4620BC29-8B8E-4F4E-9D92-1DB6633D6793} (SurferNETWORK Plugin) - http://64.89.104.83/surferplugin.ocx
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab
O17 - HKLM\System\CCS\Services\VxD\MSTCP: Domain = direcpc.ca
O17 - HKLM\System\CCS\Services\VxD\MSTCP: NameServer = 209.226.175.223,198.235.216.134,216.208.100.2


.[/CODE]
