 |
|
|

04-21-2009, 08:41 AM
§
|
 |
New Member
|
|
Join Date: Apr 2009
Posts: 6
|
|
BS / Vista / Firewall issues
would like some help cant connect in Bearshare.
here beardiag. and i have ports forwarded with dlink gaming router.
Code:
BEARDIAG ISSUES - brief summary: (Extracted on 2009/04/21 03:29:55)
System event log has 16 entries for TCPIP 4226 warnings. Check for multiple programs possibly overloading the Internet connection and software settings.
BearShare currently shows port 6348 for TCP and port 0 for UDP that need to match with your firewall/router configuration
BearShare "UDP port" setting is 0 - this usually indicates firewall problems with UDP traffic, or that BearShare has not connected properly since installation.
You are behind a NAT firewall and/or router. They need to be correctly configured to allow BearShare to access the Internet.
This is a common cause of problems with BearShare - it can't communicate.
Check your firewall allows BearShare to communicate on TCP port 6348 and UDP port 6348
If your connection is via a router, make sure it can forward BearShare traffic to a static IP address on your computer
Refer to the following guidelines to correctly configure your firewall and router for use:
- http://www.cbiweb.com/portfolio/bear...alls/index.htm - the Firewall FAQ at the old archived official BearShare Help site,
- www.portforward.com/english/applications/port_forwarding/BearS/BearSindex.htm - the definitive guide to port forwarding and setting up a static IP address.
(Hint: use static IP address 192.168.0.100, TCP Port 6348, and UDP port 6348).
FixLSP.BAT was generated on the desktop and may need to be run (subject to advice) to rectify LSP chain issues.
More technical diagnostic troubleshooting information follows:
Code:
BEARDIAG: Bearcare for BearShare.
Details collected on 2009/04/21 03:22:41, BEARDIAG Version 01.99.23.0 beta, expires 2009/06/30 (70 days), running from C:\Program Files (x86)\BearShare Test\BearDiag.exe
System Hardware Information
CPU Type is: Intel(R) Core(TM)2 Duo CPU T5750 @ 2.00GHz, CPU speed is approx: 1995Mhz, System BIOS date is: 2008/05/21, CPUid is: BFEBFBFF000006FD
OS Version is: Microsoft® Windows Vista™ Home Premium , Service Pack 1, OS Build: 6001, Computer Name: SILVERBOX
Browser name: C:\Program Files (x86)\Internet Explorer\iexplore.exe, version: 7.0.6001.18000, Admin user? YES, Locale: 0409-English
System Memory Parameters: Memory in use: 22%
Total Physical RAM: 4.0Gb Available Physical RAM: 3.1Gb
Total Pagefile: 9.9Gb Available Pagefile: 9.0Gb
Internet IP Address 69.138.xxx.xxx Local IP Address 192.168.0.100 Another device found at 192.168.0.1 You are behind a NAT firewall and/or router.
TCPIP: 16 entries for TCPIP concurrent half-open connection '4226' conflict warnings found in system event log over 0 days. Total number of system event log entries is 56610
File Locations
Program files are at: C:\Program Files (x86), System Temporary files are at: C:\Users\CHEMLI~1\AppData\Local\Temp, Common desktop is at: C:\Users\Public\Desktop
BearShare version installed is: 5.1.0.25, Gnutella servent BearShare full path is: C:\Program Files (x86)\BearShare Test\
Temporary downloads at: C:\Program Files (x86)\BearShare Test\Temp\, Completed downloads at: C:\My Downloads\
Disk statistics
Drive C: Total space: 285.13Gb Free: 6.59Gb Full: 97.7% Vol type: NTFS Drive No: 536919638
Folder Statistics
Temporary downloads folder: Space used: 0, File count: 0, Write access allowed? YES, # of DAT files: 0, #BAK: 0, #TIGER: 0, #TMP: 0, Other: 0
Completed downloads folder: Space used: 44.3Mb, File count: 14, Write access allowed? YES
BearShare library file 'library.db' size is 74.0Kb, '/db' library folder size is 456.4Kb, console log size is 0
FreePeers.ini settings
The freepeers.ini file is found at C:\Program Files (x86)\BearShare Test\FreePeers.ini. The extracted settings are as follows:
ProductLogic
Yes : bAlwaysUpdate; Always Download and announce latest signaled BearShare program updates from FreePeers.inc
Network
1 : connectionType; Network connection type
(0=Modem/AOL/ISDN, 1=Broadband/Cable/DSL/Wireless, 2=Satellite, 3=T1/T3/LAN/OC3/Microwave, 4=Custom values)
6348 : listenPort; TCP/IP port number to listen on
Hosts
No : bNeverBecomeUltrapeer; Disable UltraPeer mode
Authentication
No : bAuthenticateHosts; Authenticate host connections
No : bAuthenticateDownloads; Authenticate search results and downloads
GBandwidthLogic
Yes : bSymmetric; Is Internet connection symmetric
1024 : totalKbps; Maximum bandwidth for symmetric connections
256 : sendKbps; Maximum outbound bandwidth for asymmetric connections
1024 : recvKbps; Maximum inbound bandwidth for asymmetric connections
No : bMaxHostsKbps; Limit host bandwidth
0 : maxHostsKbps; Kbps of send/receive bandwidth to limit hosts
No : bMaxUploadsKbps; Limit upload bandwidth
0 : maxUploadsKbps; Kbps of send bandwidth to limit uploads
No : bMaxDownloadsKbps; Limit download bandwidth
0 : maxDownloadsKbps; Kbps of receive bandwidth to limit downloads
Server
Yes : Is Globally Unique Identifier valid
0x3819 *deleted for privacy* : 16 character Server Globally Unique Identifier
HostLogic
No : m_bEverUltrapeerCapable; Has client ever been an UltraPeer?
FirewallLogic
No : bTcpNFW; yes if TCP is not firewalled
No : bUdpNFW; yes if UDP is not firewalled
0 : UDP Port
Downloads
C:\My Downloads : szDownloadsDir; Directory where completed and hashed downloads are moved to
C:\Program Files (x86)\BearShare Test\Temp : szTempDir; Directory where partial downloads are kept
8 : dlMaxFiles; Maximum files to download at once
20 : dlMaxStreams; Maximum connections total
8 : dlMaxStreamsFile; Maximum connections per file
No : bDelCompletedDownloads; ; Automatically remove completed downloads
Yes : bEnableSparseFiles; Enable Sparse files for temporary files
No : bDisablePushSources; Never send Push messages
No : bDisablePushProxySources; Never send Push Proxy requests
Uploads
8 : maxTotUploads; Maximum files to upload at once
0 : lastSendBpsMaxAvg; last session average outgoing bandwidth
Firewall testing
Could not communicate with http://www3.limewire.com:6348/ - possible firewall configuration needed
Anti-hostiles list
The current Anti-Hostiles list available on the Internet is dated 23-Mar-2009
C:\Program Files (x86)\BearShare Test\db\BearShareHostiles.zip: 1270354 bytes transferred over 5.48 seconds. Download speed is 1854Kbps.
LSPFix.exe: 186880 bytes transferred over 0.92 seconds. Download speed is 1631Kbps.
Code:
StartupList report, 4/21/2009, 3:25:29 AM
StartupList version: 1.52
Started from : C:\Program Files (x86)\BearShare Test\StartupList.EXE
Detected: Unknown Windows (WinNT 6.00.1905 SP1)
Detected: Internet Explorer v7.00 (7.00.6001.18000)
* Using default options
==================================================
Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Windows\wt\updater\wcmdmgr.exe
C:\Program Files (x86)\BearShare Test\BearDiag.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Trillian\trillian.exe
C:\Program Files (x86)\Xfire\xfire.exe
C:\Program Files (x86)\BearShare Test\StartupList.exe
--------------------------------------------------
Checking Windows NT UserInit:
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = userinit.exe
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
(Default) =
QlbCtrl.exe = "C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" /Start
Adobe Acrobat Speed Launcher = "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
Acrobat Assistant 8.0 = "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
iTunesHelper = "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
wcmdmgr = C:\Windows\wt\updater\wcmdmgrl.exe -launch
Ad-Watch = "C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe"
--------------------------------------------------
Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
AdobeUpdater6 = "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe"
--------------------------------------------------
Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
[OptionalComponents]
=
--------------------------------------------------
Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce
[Setup]
Aspi Update = C:\Temp\aspi32.exe
--------------------------------------------------
File association entry for .HTA:
HKEY_CLASSES_ROOT\htafile\shell\open\command
(Default) = C:\Windows\SysWOW64\mshta.exe "%1" %*
--------------------------------------------------
Load/Run keys from C:\Windows\WIN.INI:
load=*INI section not found*
run=*INI section not found*
Load/Run keys from Registry:
HKLM\..\Windows NT\CurrentVersion\WinLogon: load=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\WinLogon: run=*Registry value not found*
HKLM\..\Windows\CurrentVersion\WinLogon: load=*Registry key not found*
HKLM\..\Windows\CurrentVersion\WinLogon: run=*Registry key not found*
HKCU\..\Windows NT\CurrentVersion\WinLogon: load=*Registry value not found*
HKCU\..\Windows NT\CurrentVersion\WinLogon: run=*Registry value not found*
HKCU\..\Windows\CurrentVersion\WinLogon: load=*Registry key not found*
HKCU\..\Windows\CurrentVersion\WinLogon: run=*Registry key not found*
HKCU\..\Windows NT\CurrentVersion\Windows: load=*Registry value not found*
HKCU\..\Windows NT\CurrentVersion\Windows: run=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\Windows: load=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\Windows: run=*Registry value not found*
HKLM\..\Windows NT\CurrentVersion\Windows: AppInit_DLLs=acaptuser32.dll
--------------------------------------------------
Shell & screensaver key from C:\Windows\SYSTEM.INI:
Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*
Shell & screensaver key from Registry:
Shell=explorer.exe
SCRNSAVE.EXE=*Registry value not found*
drivers=*Registry value not found*
Policies Shell key:
HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*
--------------------------------------------------
Enumerating Browser Helper Objects:
(no name) - (no file) - {02478D38-C3F9-4efb-9B51-7695ECA05670}
(no name) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
(no name) - C:\Program Files (x86)\BearShare MP3\RazaWebHook.dll - {0EEDB912-C5FA-486F-8334-57288578C627}
AcroIEHelperStub - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll - {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
(no name) - C:\Windows\winxml2a.dll (file missing) - {314A5833-8490-4a3b-904A-110444F25E50}
(no name) - (no file) - {5C255C8A-E604-49b4-9D64-90988571CECB}
NCO 2.0 IE BHO - (no file) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B}
(no name) - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll - {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
(no name) - C:\Program Files (x86)\Java\jre6\bin\ssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
(no name) - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6}
(no name) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll - {AE7CD045-E861-484f-8273-0445EE161910}
(no name) - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll - {DBC80044-A445-435b-BC74-9C25C1C588A9}
(no name) - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}
SmartSelect - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll - {F4971EE7-DAA0-4053-9964-665D8EE6A077}
(no name) - c:\Program Files (x86)\HP\Smart Web Printing\hpswp_framework.dll - {FFFFFFFF-FF12-44C5-91EC-068E3AA1B2D7}
--------------------------------------------------
Enumerating Task Scheduler jobs:
Ad-Aware Update (Weekly).job
--------------------------------------------------
Enumerating Download Program Files:
[Symantec AntiVirus scanner]
InProcServer32 = C:\Windows\Downloaded Program Files\avsniff.dll
CODEBASE = http://security.symantec.com/sscv6/S...in/AvSniff.cab
[Symantec RuFSI Utility Class]
InProcServer32 = C:\Windows\Downloaded Program Files\rufsi.dll
CODEBASE = http://security.symantec.com/sscv6/S.../bin/cabsa.cab
[Shockwave Flash Object]
InProcServer32 = C:\Windows\SysWow64\Macromed\Flash\Flash10b.ocx
CODEBASE = http://fpdownload2.macromedia.com/ge...sh/swflash.cab
--------------------------------------------------
Enumerating Winsock LSP files:
NameSpace #1: C:\Windows\system32\NLAapi.dll
NameSpace #2: C:\Windows\system32\napinsp.dll
NameSpace #3: C:\Windows\system32\pnrpnsp.dll
NameSpace #4: C:\Windows\system32\pnrpnsp.dll
--------------------------------------------------
Enumerating ShellServiceObjectDelayLoad items:
WebCheck: C:\Windows\SysWOW64\webcheck.dll
--------------------------------------------------
End of report, 7,958 bytes
Report generated in 0.031 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only
Code:
Current task list information for SILVERBOX, running WIN_VISTA, Service Pack 1, build 6001
Details collected on 2009/04/21 03:22:47
PID Process Name File Version Pk Mem Usg. Command line that invoked task
0 System Idle Process 0.0.0.0 0Mb ><
4 System 0.0.0.0 0.01Mb ><
528 smss.exe 0.0.0.0 0Mb >\SystemRoot\System32\smss.exe<
604 csrss.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16<
648 wininit.exe 6.0.6001.18000 0.01Mb >wininit.exe<
668 csrss.exe 6.0.6001.18000 0.02Mb >C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16<
708 services.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\services.exe<
720 lsass.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\lsass.exe<
728 lsm.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\lsm.exe<
884 svchost.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\svchost.exe -k DcomLaunch<
964 winlogon.exe 6.0.6001.18000 0.01Mb >winlogon.exe<
980 svchost.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\svchost.exe -k rpcss<
284 svchost.exe 6.0.6001.18000 0.01Mb >C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted<
416 svchost.exe 6.0.6001.18000 0.08Mb >C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted<
544 svchost.exe 6.0.6001.18000 0.03Mb >C:\Windows\system32\svchost.exe -k netsvcs<
12 audiodg.exe 0.0.0.0 0.02Mb ><
872 SLsvc.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\SLsvc.exe<
324 svchost.exe 6.0.6001.18000 0.02Mb >C:\Windows\system32\svchost.exe -k LocalService<
1092 svchost.exe 6.0.6001.18000 0.02Mb >C:\Windows\system32\svchost.exe -k NetworkService<
1244 svchost.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork<
1500 PnkBstrA.exe 0.0.0.0 0Mb >C:\Windows\SysWOW64\PnkBstrA.exe<
1636 svchost.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted<
1652 RichVideo.exe 2.0.0.1120 0Mb >"C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe"<
1672 SeaPort.exe 1.2.123.0 0.01Mb >"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"<
1728 svchost.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\svchost.exe -k imgsvc<
1764 svchost.exe 6.0.6001.18000 0Mb >C:\Windows\System32\svchost.exe -k WerSvcGroup<
1792 SearchIndexer.exe 6.0.6001.18000 0.02Mb >C:\Windows\system32\SearchIndexer.exe /Embedding<
1872 hpqwmiex.exe 2.0.2.5 0.01Mb >"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"<
2172 taskeng.exe 6.0.6001.18000 0.01Mb >taskeng.exe {424637FA-60FF-4E77-9698-27FCAA729EAF}<
2524 userinit.exe 6.0.6001.18000 0Mb >C:\Windows\system32\userinit.exe<
2552 dwm.exe 6.0.6001.18000 0.06Mb >"C:\Windows\system32\Dwm.exe"<
2580 taskeng.exe 6.0.6001.18000 0.01Mb >taskeng.exe {DE00D7FB-FF92-4911-9E6E-DD348AE2A001}<
2608 explorer.exe 6.0.6001.18164 0.05Mb >C:\Windows\Explorer.EXE<
2704 Adobe_Updater.exe 6.2.0.1474 0.01Mb >"C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe" <
2748 QLBCTRL.exe 6.4.8.2 0.01Mb >"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe" /Start<
2760 acrobat_sl.exe 9.1.0.163 0Mb >"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe" <
2788 acrotray.exe 9.1.0.163 0.01Mb >"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe" <
2808 iTunesHelper.exe 6.0.0.18 0.01Mb >"C:\Program Files (x86)\iTunes\iTunesHelper.exe" <
2872 wcmdmgr.exe 1.5.3.18 0.01Mb >C:\Windows\wt\updater\wcmdmgr.exe -launch<
2896 iPodService.exe 6.0.0.18 0.01Mb >"C:\Program Files (x86)\iPod\bin\iPodService.exe"<
2928 AAWTray.exe 8.0.0.0 0.01Mb >"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe" <
468 WmiPrvSE.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\wbem\wmiprvse.exe<
1712 Com4QLBEx.exe 6.4.4.2 0Mb >"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"<
2292 BearDiag.exe 1.99.23.0 0.02Mb >"C:\Program Files (x86)\BearShare Test\BearDiag.exe" <
2916 WmiPrvSE.exe 6.0.6001.18000 0.01Mb >C:\Windows\system32\wbem\wmiprvse.exe<
2320 SearchProtocolHost.e 6.0.6001.18000 0.01Mb >"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot) " "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" <
1980 SearchFilterHost.exe 6.0.6001.18000 0.01Mb >"C:\Windows\system32\SearchFilterHost.exe" 0 724 728 736 65536 732 <
BearShare library folder information for SILVERBOX, running WIN_VISTA, Service Pack 1, build 6001
Details collected on 2009/04/21 03:29:55
Volume in drive C is HARD DRIVE SATA 320G
Volume Serial Number is 2000-BE56
Directory of C:\Program Files (x86)\BearShare Test\db
04/21/2009 03:28 AM <DIR> .
04/21/2009 03:28 AM <DIR> ..
04/21/2009 03:28 AM 1,270,354 BearShareHostiles.zip
04/21/2009 03:16 AM 158,148 connect.txt
04/21/2009 03:16 AM 2,339 gwebcache.dat
07/01/2005 02:49 AM 3,768 Hostiles.old
03/23/2009 12:43 PM 11,529,408 hostiles.txt
04/21/2009 03:16 AM 0 Hostiles-Chat.txt
04/21/2009 02:41 AM 75,776 library.2.db
04/21/2009 02:41 AM 75,776 library.2.db.lastgoodload.bak
04/21/2009 02:41 AM 75,776 library.db
04/21/2009 02:41 AM 75,776 library.db.lastgoodload.bak
04/21/2009 03:16 AM 19 searches.ini
11 File(s) 13,267,140 bytes
2 Dir(s) 7,051,915,264 bytes free
Code:
Firewall information for SILVERBOX, running WIN_VISTA, Service Pack 1, build 6001
Details collected on 2009/04/21 03:29:55
Default gateway is 192.168.0.1
The service has not been started.
uPnP devices
1 devices found
Manufacturer: D-Link Systems, Inc.
Model: Wireless 108G Gaming Router, Model Number: DGL-4300
Model URL: 0
Manufacturer URL: http://www.dlink.com/
Presentation URL: http://192.168.0.1/
Code:
Logfile of HijackThis v1.99.1
Scan saved at 3:25:33 AM, on 4/21/2009
Platform: Unknown Windows (WinNT 6.00.1905 SP1)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Windows\wt\updater\wcmdmgr.exe
C:\Program Files (x86)\BearShare Test\BearDiag.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Trillian\trillian.exe
C:\Program Files (x86)\Xfire\xfire.exe
C:\Program Files (x86)\BearShare Test\HijackThis2.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.bearshare.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O1 - Hosts: 70.86.23.235 www.bearshare.net #Technutopia.com forums for BearShare
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Shareaza Web Download Hook - {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files (x86)\BearShare MP3\RazaWebHook.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WINXML2 Class - {314A5833-8490-4a3b-904A-110444F25E50} - C:\Windows\winxml2a.dll (file missing)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: HP Print Clips - {FFFFFFFF-FF12-44C5-91EC-068E3AA1B2D7} - c:\Program Files (x86)\HP\Smart Web Printing\hpswp_framework.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [QlbCtrl.exe] "C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" /Start
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [wcmdmgr] C:\Windows\wt\updater\wcmdmgrl.exe -launch
O4 - HKLM\..\Run: [Ad-Watch] "C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe"
O4 - HKCU\..\Run: [AdobeUpdater6] "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe"
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Download with &Shareaza - res://C:\Program Files (x86)\BearShare MP3\RazaWebHook.dll/3000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: HP Smart Select - {58ECB495-38F0-49cb-A538-10282ABF65E7} - c:\Program Files (x86)\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/S...in/AvSniff.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/S.../bin/cabsa.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - AppInit_DLLs: acaptuser32.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Print Spooler (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Unknown owner - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)
.
any help would be appreciated/.
|

04-21-2009, 01:00 PM
§
|
 |
Site Administrator Legendary Axeman
Captain
|
|
Join Date: Jun 2005
Location: My igloos melt in June
Posts: 3,886
|
|
Here's a fresh host cache for you. Unzip it to the /db/ folder of BearShare while it is off.
Since you have b25 you can put in ultrapeer mode at will like this:
I find it helps when it's having a hard time finding ultrapeers.
If the fourth light stays yellow once it hooks up to some peers, double-check that your
internal IP address (192.168.x.x) in your port forwarding rules still points to the right
computer.
|

04-22-2009, 03:09 AM
§
|
 |
New Member
|
|
Join Date: Apr 2009
Posts: 6
|
|
thanks!
 sure do appreciate your help. Dont know why i needed to do all of that but hey it worked. one more for ya if you could please. my nav bar in bearshare is all jumbled, (icons on it.) its like there all blurred together any suggestions?
|

04-22-2009, 04:05 AM
§
|
 |
Site Administrator
Lieutenant Ensign
|
|
Join Date: Jul 2005
Location: Houghton, Michigan
Posts: 1,862
|
|
Quote:
Originally Posted by CHEMLIGHT
 sure do appreciate your help. Dont know why i needed to do all of that but hey it worked. one more for ya if you could please. my nav bar in bearshare is all jumbled, (icons on it.) its like there all blurred together any suggestions?
|
Could you post a screenshot of what you mean?
|

04-22-2009, 03:07 PM
§
|
 |
New Member
|
|
Join Date: Apr 2009
Posts: 6
|
|
IMAGE!
 Here is a image of bearshare when its running and when all the vav buttons are blurred. good luck in figuring thsi out i been lost. ( seem to think its a vista issue possibly)
thanks for your help.
|

04-22-2009, 03:15 PM
§
|
 |
Site Administrator
Lieutenant Ensign
|
|
Join Date: Jul 2005
Location: Houghton, Michigan
Posts: 1,862
|
|
Quote:
Originally Posted by CHEMLIGHT
 Here is a image of bearshare when its running and when all the vav buttons are blurred. good luck in figuring thsi out i been lost. ( seem to think its a vista issue possibly)
thanks for your help. 
|
Try enabling compatibility mode to either XP SP2 or Windows 2000 on the BearShare.exe executable.
|

04-23-2009, 02:19 AM
§
|
 |
New Member
|
|
Join Date: Apr 2009
Posts: 6
|
|
tried both compatibilities xp sp2 and win2k neither one seem to have an effect on the blurred and jumble icon/text.
any other ideas.
|

04-23-2009, 07:29 AM
§
|
 |
Site Administrator Legendary Axeman
Captain
|
|
Join Date: Jun 2005
Location: My igloos melt in June
Posts: 3,886
|
|
|
I think there's an option to turn off visual themes for a program, right? Try that.
Keep it in XP compatibility mode, though, That's a must.
|
| Thread Tools |
|
|
| Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT. The time now is 08:44 AM.
|