Welcome to Omgili,
Omgili ( Oh My God I Love It ;) is a search engine for discussions. With Omgili you can find answers and solutions, debates, discussions, personal experiences, opinions and more... To learn more about Omgili click here.
This is a complete preview of the discussion as it was indexed by Omgili crawlers. Use this preview if the original discussion is unavailable.
Click here to view the original discussion.
 |
|
 |
|
bearshare says "encountered error , has to close" - TechNutopia
Hey guys...i really need sm help wit getting BS back working again...it keeps giving an error saying "windows has encountered an error , has to close"
i ran beardiag and this is what i got...
Code: BEARDIAG ISSUES - brief summary: (Extracted on 2009/03/05 20:52:02) System event log has 65 entries for TCPIP 4226 warnings.
Check for multiple programs possibly overloading the Internet connection and software settings.
Microsoft Office Toolbar found - redundant - not necessary.
Use the inbuilt Microsoft program MSCONFIG to disable from the startup list Microsoft Debug Manager found - not necessary.
Use the inbuilt Microsoft program MSCONFIG to disable from the background task list Sun Java update scheduler found - does not need to be running constantly.
Use the inbuilt Microsoft program MSCONFIG to disable from the startup list Java update scheduler version 1.6.0_02-b06 was found running.
Choice to check for updates was YES Adobe Reader Speed Launch entry present in startups - not necessary.
Use the inbuilt Microsoft program MSCONFIG to disable from the startup list BearShare version 5.2.5.3 found.
We recommend the 5.1.0.b25 beta version - see Recommended BearShare downloads BearShare currently shows port 6348 for TCP and port 6348 for UDP that need to match with your firewall/router configuration You are behind a NAT firewall and/or router.
They need to be correctly configured to allow BearShare to access the Internet.
This is a common cause of problems with BearShare - it can't communicate.
Check your firewall allows BearShare to communicate on TCP port 6348 and UDP port 6348 If your connection is via a router, make sure it can forward BearShare traffic to a static IP address on your computer Refer to the following guidelines to correctly configure your firewall and router for use: - http://www.cbiweb.com/portfolio/bear...alls/index.htm - the Firewall FAQ at the old archived official BearShare Help site, - http://www.portforward.com/english/a...BearSindex.htm - the definitive guide to port forwarding and setting up a static IP address.
(Hint: use static IP address 192.168.1.100, TCP Port 6348, and UDP port 6348).
FixLSP.BAT was generated on the desktop and may need to be run (subject to advice) to rectify LSP chain issues.
More technical diagnostic troubleshooting information follows:
Code: BEARDIAG: Bearcare for BearShare.
Details collected on 2009/03/05 20:45:33, BEARDIAG Version 01.99.23.0 beta, expires 2009/06/30 (117 days), running from C:\Documents and Settings\The Game\Desktop\BearDiag.exe System Hardware Information CPU Type is: Intel(R) Pentium(R) 4 CPU 2.40GHz, CPU speed is approx: 2394Mhz, System BIOS date is: 2004/06/22, CPUid is: BFEBFBFF F34 OS Version is: Microsoft Windows XP Professional, Service Pack 2, OS Build: 2600, Computer Name: SUBU Browser name: C:\Program Files\Internet Explorer\iexplore.exe, version: 6.0.2900.2180, Admin user?
YES, Locale: 0409-English System Memory Parameters: Memory in use: 38% Total Physical RAM: 1.5Gb Available Physical RAM: 948.4Mb Total Pagefile: 2.1Gb Available Pagefile: 1.7Gb Internet IP Address 59.96.xxx.xxx Local IP Address 192.168.1.100 Another device found at 192.168.1.1 You are behind a NAT firewall and/or router.
TCPIP: 65 entries for TCPIP concurrent half-open connection '4226' conflict warnings found in system event log over 50 days.
Total number of system event log entries is 2395 File Locations Program files are at: C:\Program Files, System Temporary files are at: C:\DOCUME~1\THEGAM~1\LOCALS~1\Temp, Common desktop is at: C:\Documents and Settings\All Users\Desktop BearShare version installed is: 5.2.5.3, Gnutella servent BearShare full path is: C:\Program Files\BearShare\ Temporary downloads at: D:\tempDL\, Completed downloads at: D:\DL\ Disk statistics Drive C: Total space: 19.53Gb Free: 1.17Gb Full: 94.0% Vol type: NTFS Drive No: 3156276791 Drive D: Total space: 19.53Gb Free: 2.68Gb Full: 86.3% Vol type: NTFS Folder Statistics Temporary downloads folder: Space used: 349.8Mb, File count: 4, Write access allowed?
YES, # of DAT files: 1, #BAK: 1, #TIGER: 1, #TMP: 0, Other: 1 Completed downloads folder: Space used: 7.6Gb, File count: 39, Write access allowed?
YES BearShare library file 'library.db' size is 2.4Mb, '/db' library folder size is 9.9Mb, console log size is 0 FreePeers.ini settings The freepeers.ini file is found at C:\Program Files\BearShare\FreePeers.ini.
The extracted settings are as follows: ProductLogic Yes : bAlwaysUpdate;
Always Download and announce latest signaled BearShare program updates from FreePeers.inc Network 1 : connectionType;
Network connection type (0=Modem/AOL/ISDN, 1=Broadband/Cable/DSL/Wireless, 2=Satellite, 3=T1/T3/LAN/OC3/Microwave, 4=Custom values) 6348 : listenPort;
TCP/IP port number to listen on Hosts No : bNeverBecomeUltrapeer;
Disable UltraPeer mode Authentication No : bAuthenticateHosts;
Authenticate host connections No : bAuthenticateDownloads;
Authenticate search results and downloads GBandwidthLogic Yes : bSymmetric;
Is Internet connection symmetric 1024 : totalKbps;
Maximum bandwidth for symmetric connections 256 : sendKbps;
Maximum outbound bandwidth for asymmetric connections 1024 : recvKbps;
Maximum inbound bandwidth for asymmetric connections No : bMaxHostsKbps;
Limit host bandwidth 0 : maxHostsKbps;
Kbps of send/receive bandwidth to limit hosts No : bMaxUploadsKbps;
Limit upload bandwidth 0 : maxUploadsKbps;
Kbps of send bandwidth to limit uploads No : bMaxDownloadsKbps;
Limit download bandwidth 0 : maxDownloadsKbps;
Kbps of receive bandwidth to limit downloads Server Yes : Is Globally Unique Identifier valid 0xA5EF *deleted for privacy* : 16 character Server Globally Unique Identifier HostLogic No : m_bEverUltrapeerCapable;
Has client ever been an UltraPeer?
FirewallLogic No : bTcpNFW;
Yes if TCP is not firewalled No : bUdpNFW;
Yes if UDP is not firewalled 6348 : UDP Port Downloads D:\DL : szDownloadsDir;
Directory where completed and hashed downloads are moved to D:\tempDL : szTempDir;
Directory where partial downloads are kept 1 : dlMaxFiles;
Maximum files to download at once 20 : dlMaxStreams;
Maximum connections total 8 : dlMaxStreamsFile;
Maximum connections per file Yes : bDelCompletedDownloads;
; Automatically remove completed downloads Yes : bEnableSparseFiles;
Enable Sparse files for temporary files No : bDisablePushSources;
Never send Push messages No : bDisablePushProxySources;
Never send Push Proxy requests Uploads 8 : maxTotUploads;
Maximum files to upload at once 59458 : lastSendBpsMaxAvg;
Last session average outgoing bandwidth Firewall testing Could not communicate with http://www3.limewire.com:6348/ - possible firewall configuration needed Anti-hostiles list The current Anti-Hostiles list available on the Internet is dated 05-Jan-2009 C:\Program Files\BearShare\db\BearShareHostiles.zip: 1502838 bytes transferred over 22.57 seconds.
Download speed is 533Kbps.
LSPFix.exe: 186880 bytes transferred over 3.22 seconds.
Download speed is 464Kbps.
can sm1 please tell me what should be done to correct this error?..thanks
|
|
 |
|
 |
 |
|
 |
|
It looks like half of the BearDiag report is missing.
Try again.
|
|
 |
|
 |
 |
|
 |
|
Code: StartupList report, 3/5/2009, 8:47:56 PM StartupList version: 1.52 Started from : C:\Documents and Settings\The Game\Desktop\StartupList.EXE Detected: Windows XP SP2 (WinNT 5.01.2600) Detected: Internet Explorer v6.00 SP2 (6.00.2900.2180) * Using default options Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\iPod Access for Windows\iPAHelper.exe C:\Program Files\Analog Devices\SoundMAX\Smax4.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\PROGRA~1\AVG\AVG8\avgrsx.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\PROGRA~1\AVG\AVG8\avgtray.exe C:\PROGRA~1\AVG\AVG8\avgnsx.exe C:\WINDOWS\System32\svchost.exe C:\PROGRA~1\AVG\AVG8\avgemc.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\AVG\AVG8\avgcsrvx.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Java\jre1.6.0_02\bin\jucheck.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\notepad.exe C:\Documents and Settings\The Game\Desktop\BearDiag.exe C:\Documents and Settings\The Game\Desktop\StartupList.exe Listing of startup folders: Shell folders Common Startup: [C:\Documents and Settings\All Users\Start Menu\Programs\Startup] Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE Checking Windows NT UserInit: [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] UserInit = C:\WINDOWS\system32\userinit.exe, Autorun entries from Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run SoundMAX = "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray NvCplDaemon = RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup nwiz = nwiz.exe /install NvMediaCenter = RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit iTunesHelper = "C:\Program Files\iTunes\iTunesHelper.exe" Adobe Reader Speed Launcher = "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" Sony Ericsson PC Suite = "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions SunJavaUpdateSched = "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" TkBellExe = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot SoundMAXPnP = C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe AVG8_TRAY = C:\PROGRA~1\AVG\AVG8\avgtray.exe Autorun entries from Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run MSMSGS = "C:\Program Files\Messenger\msmsgs.exe" /background cdloader = "C:\Documents and Settings\The Game\Application Data\mjusbsp\cdloader2.exe" MAGICJACK ctfmon.exe = C:\WINDOWS\system32\ctfmon.exe Yahoo!
Pager = "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet DLD.EXE = C:\Program Files\Download Direct\DLD.exe Autorun entries in Registry subkeys of: HKLM\Software\Microsoft\Windows\CurrentVersion\Run [OptionalComponents] = Autorun entries in Registry subkeys of: HKCU\Software\Microsoft\Windows\CurrentVersion\Run [AdobeUpdater] = Shell & screensaver key from C:\WINDOWS\SYSTEM.INI: Shell=*INI section not found* SCRNSAVE.EXE=*INI section not found* drivers=*INI section not found* Shell & screensaver key from Registry: Shell=Explorer.exe SCRNSAVE.EXE=C:\WINDOWS\System32\logon.scr drivers=*Registry value not found* Policies Shell key: HKCU\..\Policies: Shell=*Registry value not found* HKLM\..\Policies: Shell=*Registry value not found* Enumerating Browser Helper Objects: (no name) - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (no name) - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll - {3049C3E9-B461-4BC5-8870-4C09146192CA} WormRadar.com IESiteBlocker.NavFilter - C:\Program Files\AVG\AVG8\avgssie.dll - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} (no name) - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} Enumerating Task Scheduler jobs: Symantec NetDetect.job Enumerating Winsock LSP files: NameSpace #4: C:\Program Files\Bonjour\mdnsNSP.dll Enumerating ShellServiceObjectDelayLoad items: PostBootReminder: C:\WINDOWS\system32\SHELL32.dll CDBurn: C:\WINDOWS\system32\SHELL32.dll WebCheck: C:\WINDOWS\System32\webcheck.dll SysTray: C:\WINDOWS\System32\stobject.dll WPDShServiceObj: C:\WINDOWS\system32\WPDShServiceObj.dll End of report, 6,473 bytes Report generated in 0.062 seconds Command line options: /verbose - to add additional info on each section /complete - to include empty sections and unsuspicious data /full - to include several rarely-important sections /force9x - to include Win9x-only startups even if running on WinNT /forcent - to include WinNT-only startups even if running on Win9x /forceall - to include all Win9x and WinNT startups, regardless of platform /history - to list version history only
Code: Current task list information for SUBU, running WIN_XP, Service Pack 2, build 2600 Details collected on 2009/03/05 20:45:41 PID Process Name File Version Pk Mem Usg.
Command line that invoked task 0 System Idle Process 0.0.0.0 0Mb ><
4 System 0.0.0.0 121.71Mb ><
672 smss.exe 5.1.2600.2180 0.45Mb >\SystemRoot\System32\smss.exe<
736 csrss.exe 0.0.0.0 5.65Mb ><
776 winlogon.exe 5.1.2600.2180 11.73Mb >winlogon.exe<
820 services.exe 5.1.2600.2180 3.88Mb >C:\WINDOWS\system32\services.exe<
832 lsass.exe 5.1.2600.2180 5.66Mb >C:\WINDOWS\system32\lsass.exe<
988 svchost.exe 5.1.2600.2180 4.5Mb >C:\WINDOWS\system32\svchost -k DcomLaunch<
1056 svchost.exe 0.0.0.0 3.97Mb ><
1156 svchost.exe 5.1.2600.2180 38.32Mb >C:\WINDOWS\System32\svchost.exe -k netsvcs<
1216 svchost.exe 0.0.0.0 3.04Mb ><
1316 svchost.exe 0.0.0.0 4.76Mb ><
1412 spoolsv.exe 5.1.2600.2180 4.42Mb >C:\WINDOWS\system32\spoolsv.exe<
1768 explorer.exe 6.0.2900.2180 43.88Mb >C:\WINDOWS\Explorer.EXE<
1948 AppleMobileDeviceSer 1.12.0.0 1.87Mb >"C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"<
1964 avgwdsvc.exe 8.0.0.223 7.99Mb >C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<
1988 mDNSResponder.exe 1.0.3.1 3.79Mb >"C:\Program Files\Bonjour\mDNSResponder.exe"<
228 iPAHelper.exe 1.2.0.0 3.2Mb >"C:\Program Files\iPod Access for Windows\iPAHelper.exe"<
336 SMax4.exe 4.0.4.25 3.51Mb >"C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray<
432 iTunesHelper.exe 7.3.1.3 11.86Mb >"C:\Program Files\iTunes\iTunesHelper.exe" <
448 mdm.exe 7.0.9064.9150 2.88Mb >"C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"<
536 jusched.exe 6.0.20.6 3.16Mb >"C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" <
580 realsched.exe 0.1.0.4076 2.32Mb >"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot<
620 nvsvc32.exe 6.14.10.9131 10.66Mb >C:\WINDOWS\system32\nvsvc32.exe<
384 SMax4PNP.exe 4.0.4.11 4.46Mb >"C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe" <
712 SMAgent.exe 3.2.6.0 1.42Mb >"C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe"<
740 avgrsx.exe 8.0.0.223 58.03Mb >avgrsx.exe<
900 StarWindService.exe 2.6.0.1025 2.01Mb >"C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe"<
980 avgtray.exe 8.0.0.223 5.61Mb >"C:\PROGRA~1\AVG\AVG8\avgtray.exe" <
944 avgnsx.exe 8.0.0.232 4.7Mb >avgnsx.exe<
1008 svchost.exe 5.1.2600.2180 4.2Mb >C:\WINDOWS\System32\svchost.exe -k imgsvc<
1608 avgemc.exe 8.0.0.223 8.55Mb >C:\PROGRA~1\AVG\AVG8\avgemc.exe<
1736 ctfmon.exe 5.1.2600.2180 3.4Mb >"C:\WINDOWS\system32\ctfmon.exe" <
1604 avgcsrvx.exe 8.0.0.223 8.45Mb >
/pipeName=889f42cf-3a73-4589-8083-3697748b30b8 /coreSdkOptions=0 /binaryPath="C:\Program Files\AVG\AVG8\"<
2544 alg.exe 0.0.0.0 3.1Mb ><
2776 iPodService.exe 7.3.1.3 3.6Mb >"C:\Program Files\iPod\bin\iPodService.exe"<
3984 wuauclt.exe 7.2.6001.788 3.57Mb >"C:\WINDOWS\system32\wuauclt.exe"<
3724 jucheck.exe 6.0.20.6 4.25Mb >"C:\Program Files\Java\jre1.6.0_02\bin\jucheck.exe" -auto<
3924 firefox.exe 1.9.0.3306 133.01Mb >"C:\Program Files\Mozilla Firefox\firefox.exe" <
1368 notepad.exe 5.1.2600.2180 2.94Mb >"C:\WINDOWS\system32\notepad.exe" <
3992 BearDiag.exe 1.99.23.0 12.28Mb >"C:\Documents and Settings\The Game\Desktop\BearDiag.exe" <
3160 wmiprvse.exe 0.0.0.0 6.05Mb ><
BearShare library folder information for SUBU, running WIN_XP, Service Pack 2, build 2600 Details collected on 2009/03/05 20:52:02 Volume in drive C has no label.
Volume Serial Number is BC20-F637 Directory of C:\Program Files\BearShare\db 03/05/2009 08:51 PM <DIR>
. 03/05/2009 08:51 PM <DIR>
.. 03/05/2009 08:51 PM 1,502,838 BearShareHostiles.zip 08/01/2007 09:21 AM 3,103 config.bin 03/05/2009 08:30 PM 111,119 connect.txt 03/01/2009 11:53 PM 1,174 gwebcache.dat 08/01/2007 09:19 AM 3,768 Hostiles.old 01/05/2009 01:42 AM 13,923,775 hostiles.txt 03/01/2009 11:53 PM 0 Hostiles-Chat.txt 02/15/2009 01:52 AM 2,566,144 library.2.db 02/15/2009 01:52 AM 2,566,144 library.2.db.lastgoodload.bak 02/15/2009 01:52 AM 2,566,144 library.db 02/15/2009 01:52 AM 2,566,144 library.db.lastgoodload.bak 03/01/2009 11:53 PM 19 searches.ini 12 File(s) 25,810,372 bytes 2 Dir(s) 1,126,285,312 bytes free
Code: Firewall information for SUBU, running WIN_XP, Service Pack 2, build 2600 Details collected on 2009/03/05 20:52:02 Default gateway is uPnP devices 0 devices found
Code: Logfile of HijackThis v1.99.1 Scan saved at 8:48:03 PM, on 3/5/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\iPod Access for Windows\iPAHelper.exe C:\Program Files\Analog Devices\SoundMAX\Smax4.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\PROGRA~1\AVG\AVG8\avgrsx.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\PROGRA~1\AVG\AVG8\avgtray.exe C:\PROGRA~1\AVG\AVG8\avgnsx.exe C:\WINDOWS\System32\svchost.exe C:\PROGRA~1\AVG\AVG8\avgemc.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\AVG\AVG8\avgcsrvx.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Java\jre1.6.0_02\bin\jucheck.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\notepad.exe C:\Documents and Settings\The Game\Desktop\BearDiag.exe C:\Documents and Settings\The Game\Desktop\HijackThis2.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.in/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [cdloader] "C:\Documents and Settings\The Game\Application Data\mjusbsp\cdloader2.exe" MAGICJACK O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Yahoo!
Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet O4 - HKCU\..\Run: [DLD.EXE] C:\Program Files\Download Direct\DLD.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll O17 - HKLM\System\CCS\Services\Tcpip\..\{782593DB-3C55-4CD4-B5B3-59CB508587A2}: NameServer = 192.168.1.1,218.248.240.180 O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Apple Mobile Device - Apple, Inc.
- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o.
- C:\PROGRA~1\AVG\AVG8\avgemc.exe O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o.
- C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc.
- C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd.
- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: iPAHelper.exe - Unknown owner - C:\Program Files\iPod Access for Windows\iPAHelper.exe O23 - Service: iPod Service - Apple Inc.
- C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: OracleClientCache80 - Unknown owner - E:\ORANT\BIN\ONRSD80.EXE (file missing) O23 - Service: OracleServiceORCL - Unknown owner - e:\orant\bin\oracle80.exe (file missing) O23 - Service: OracleStartORCL - Unknown owner - e:\orant\bin\strtdb80.exe (file missing) O23 - Service: OracleTNSListener80 - Unknown owner - E:\ORANT\BIN\TNSLSNR80.EXE (file missing) O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc.
- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe .
|
|
 |
|
 |
 |
|
 |
|
I'm drawing a blank.
That looks pretty normal.
Let's try lightening the workload a bit and see if that helps.
Run HijackThis again and use it to "fix" these.
None of the software will be deleted, it will just not
start up with Windows.
Quote: : O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [cdloader] "C:\Documents and Settings\The Game\Application Data\mjusbsp\cdloader2.exe" MAGICJACK
O4 - HKCU\..\Run: [Yahoo!
Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [DLD.EXE] C:\Program Files\Download Direct\DLD.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O23 - Service: OracleClientCache80 - Unknown owner - E:\ORANT\BIN\ONRSD80.EXE (file missing)
O23 - Service: OracleServiceORCL - Unknown owner - e:\orant\bin\oracle80.exe (file missing)
O23 - Service: OracleStartORCL - Unknown owner - e:\orant\bin\strtdb80.exe (file missing)
O23 - Service: OracleTNSListener80 - Unknown owner - E:\ORANT\BIN\TNSLSNR80.EXE (file missing) Take a look in the Event Viewer for any error messages at the exact same time too.
You'll find it in the "Administrative Tools" Control Panel applet.
|
|
 |
|
 |
 |
|
 |
|
Hey...i ran hijack and fixed those entries....no errors were reported in the events window....it asked me to restart after fixing..but it still gives the same error message!
|
|
 |
|
 |
 |
|
 |
|
If that's the usual error message generated by Windows you can get details.
Click on the link to get more details, then the "Technical Info" link on the next screen.
Copy the information here.
Did anything show up in the Event Viewer?
|
|
 |
|
 |
 |
|
 |
|
Hey..yes i did check ....no errors were reported when hijacktis was running...
below is the error report
Code: appname :bearshare.exe appver 5.2.5.3 ModName:bearshare.exe ModVer:5.2.5.3 Offset : 00297e80 <?xml version="1.0" encoding="UTF-16"?>
<DATABASE> <EXE NAME="BearShare.exe" FILTER="GRABMI_FILTER_PRIVACY">
<MATCHING_FILE NAME="ArmAccess.dll" SIZE="24576" CHECKSUM="0x50819698" BIN_FILE_VERSION="2.8.0.0" BIN_PRODUCT_VERSION="2.8.0.0" PRODUCT_VERSION="" FILE_DESCRIPTION="" COMPANY_NAME="" PRODUCT_NAME="" FILE_VERSION="2.08" ORIGINAL_FILENAME="" INTERNAL_NAME="" LEGAL_COPYRIGHT="" VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x40004" VERFILETYPE="0x2" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="2.8.0.0" UPTO_BIN_PRODUCT_VERSION="2.8.0.0" LINK_DATE="03/16/2004 01:35:15" UPTO_LINK_DATE="03/16/2004 01:35:15" VER_LANGUAGE="English (United States) [0x409]" />
<MATCHING_FILE NAME="BearShare.exe" SIZE="9887744" CHECKSUM="0x9FB9A953" BIN_FILE_VERSION="5.2.5.3" BIN_PRODUCT_VERSION="5.2.5.3" PRODUCT_VERSION="5.2.5" FILE_DESCRIPTION="BearShare" COMPANY_NAME="Free Peers, Inc." PRODUCT_NAME="BearShare (Pro)" FILE_VERSION="5.2.5.3" ORIGINAL_FILENAME="BearShare.exe" INTERNAL_NAME="BearShare Pro 5.2.5.3" LEGAL_COPYRIGHT="Copyright © 2003 Free Peers, Inc.
All Rights Reserved Worldwide." VERFILEDATEHI="0x1C6B23F" VERFILEDATELO="0x5A1289D0" VERFILEOS="0x4" VERFILETYPE="0x1" MODULE_TYPE="WIN32" PE_CHECKSUM="0x332FC5" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="5.2.5.3" UPTO_BIN_PRODUCT_VERSION="5.2.5.3" LINK_DATE="07/28/2006 16:14:14" UPTO_LINK_DATE="07/28/2006 16:14:14" VER_LANGUAGE="English (United States) [0x409]" />
<MATCHING_FILE NAME="BSidle.dll" SIZE="24576" CHECKSUM="0x546C5F8E" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="01/09/2004 18:38:12" UPTO_LINK_DATE="01/09/2004 18:38:12" />
<MATCHING_FILE NAME="uninstallstub.exe" SIZE="219464" CHECKSUM="0x269E3549" BIN_FILE_VERSION="5.2.3.5" BIN_PRODUCT_VERSION="5.2.3.5" FILE_DESCRIPTION="BearShare Installer" COMPANY_NAME="Free Peers, Inc." FILE_VERSION="5.2.3.5" LEGAL_COPYRIGHT="Copyright (C) 2001 Free Peers, Inc." VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x10001" VERFILETYPE="0x1" MODULE_TYPE="WIN32" PE_CHECKSUM="0x36280" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="5.2.3.5" UPTO_BIN_PRODUCT_VERSION="5.2.3.5" LINK_DATE="04/08/1999 20:24:47" UPTO_LINK_DATE="04/08/1999 20:24:47" />
<MATCHING_FILE NAME="UNWISE.EXE" SIZE="153088" CHECKSUM="0x64313F64" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="07/03/2002 15:14:30" UPTO_LINK_DATE="07/03/2002 15:14:30" />
<MATCHING_FILE NAME="Webstats.exe" SIZE="294912" CHECKSUM="0xEE382529" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="12/18/2001 20:24:52" UPTO_LINK_DATE="12/18/2001 20:24:52" />
<MATCHING_FILE NAME="Installer\BSPROINSTALL.exe" SIZE="3657544" CHECKSUM="0x4FD81A7F" BIN_FILE_VERSION="5.2.5.3" BIN_PRODUCT_VERSION="5.2.5.3" FILE_DESCRIPTION="BearShare Installer" COMPANY_NAME="Free Peers, Inc." FILE_VERSION="5.2.5.3" LEGAL_COPYRIGHT="Copyright (C) 2001 Free Peers, Inc." VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x10001" VERFILETYPE="0x1" MODULE_TYPE="WIN32" PE_CHECKSUM="0x386A0C" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="5.2.5.3" UPTO_BIN_PRODUCT_VERSION="5.2.5.3" LINK_DATE="04/08/1999 20:24:47" UPTO_LINK_DATE="04/08/1999 20:24:47" />
</EXE> <EXE NAME="kernel32.dll" FILTER="GRABMI_FILTER_THISFILEONLY">
<MATCHING_FILE NAME="kernel32.dll" SIZE="983552" CHECKSUM="0x4CE79457" BIN_FILE_VERSION="5.1.2600.2180" BIN_PRODUCT_VERSION="5.1.2600.2180" PRODUCT_VERSION="5.1.2600.2180" FILE_DESCRIPTION="Windows NT BASE API Client DLL" COMPANY_NAME="Microsoft Corporation" PRODUCT_NAME="Microsoft® Windows® Operating System" FILE_VERSION="5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME="kernel32" INTERNAL_NAME="kernel32" LEGAL_COPYRIGHT="© Microsoft Corporation.
All rights reserved." VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x40004" VERFILETYPE="0x2" MODULE_TYPE="WIN32" PE_CHECKSUM="0xFF848" LINKER_VERSION="0x50001" UPTO_BIN_FILE_VERSION="5.1.2600.2180" UPTO_BIN_PRODUCT_VERSION="5.1.2600.2180" LINK_DATE="08/04/2004 07:56:36" UPTO_LINK_DATE="08/04/2004 07:56:36" VER_LANGUAGE="English (United States) [0x409]" />
</EXE> </DATABASE>
|
|
 |
|
 |
 |
|
 |
|
Looks like the adware in BearShare 5.2.5.3 is at fault here.
Uninstall BearShare and install the recommended version instead.
|
|
 |
|
 |
 |
|
 |
|
Will the dloads in progress be deleted if i reinstall the other version ?
|
|
 |
|
 |
 |
|
 |
|
Save "C:\Program Files\BearShare\Temp" somewhere and make sure the new version goes to
"C:\Program Files\BearShare" instead of "C:\Program Files\BearShare Test" when you get the
opportunbity doring the install.
Then, move your temp folder back in.
In most cases the temp folder is preserved but I don't trust the versions that ended up belonging
to the anti-P2P company that took over.
|
|
 |
|
 |
 |
|
 |
|
Hey...after i installed that recommended version...my whole comp has gone weird....the windows theme is all gone...my lan connection is gone...windows keeps giving a msg saying it has recovered from a serious error!!...what i do??
|
|
 |
|
 |
 |
|
 |
|
Error reprt contents
c:docume"1\THEGAM""1\LOCALS"1\Temp\WERfab4b.dir00\Mini031409-01.dmp
c:docume"1\THEGAM""1\LOCALS"1\Temp\WERfab4b.dir00\sysdata.xml
BCCode : 1 a BCPI:5F0C7BD9 BCP2: 2 BCP3:
BCP4:8050D2BD OSvER:5_1_2600 SP:2_0 pRODUCT :256_1
|
|
 |
|
 |
 |
|
 |
|
That's probably a side effect of removing the 5.2 version.
It had some serious spyware in it.
Post another BearDiag report.
|
|
 |
|
 |
 |
|
 |
|
As well as checking for malware, check your drive for errors.
Details on how to do this can be found in these forums.
|
|
 |
|
 |
|
|
|