Code:
BEARDIAG: Bearcare for BearShare.
Details collected on 2006/07/01 02:18:04, BEARDIAG Version 01.99.3.0 beta, expires 2006/11/15 (137 days), running from C:\Documents and Settings\Robert\Local Settings\Temporary Internet Files\Content.IE5\ZGL84USA\
System Hardware Information
CPU Type is: Intel(R) Celeron(R) CPU 2.60GHz, CPU speed is approx: 2605Mhz, System BIOS date is: 2003/05/30
OS Version is: WIN_XP, Service pack: Service Pack 2, OS Build: 2600, Computer Name: ROBERT-765621DB
Browser name: C:\Program Files\Internet Explorer\iexplore.exe, version: 6.0.2900.2180, Admin user? YES
System Memory Parameters: Memory in use: 79%
Total Physical RAM: 511.5Mb Available Physical RAM: 105.1Mb
Total Pagefile: 1.2Gb Available Pagefile: 728.7Mb
Internet IP Address 206.75.xxx.xxx
File Locations
Program files are at: C:\Program Files, System Temporary files are at: C:\DOCUME~1\Robert\LOCALS~1\Temp, Common desktop is at:C:\Documents and Settings\All Users\Desktop
BearShare version installed is: 5.2.1.2, Gnutella servent BearShare full path is: C:\Program Files\BearShare\
Temporary downloads at: D:\Bearshare Temp Files\, Completed downloads at: D:\My Downloads\
Disk statistics
Drive C: Total space: 18.62Gb Free: 6.85Gb Full: 63.2% Vol type: NTFS
Drive D: Total space: 18.61Gb Free: 6.86Gb Full: 63.1% Vol type: FAT32
Folder Statistics
Temporary downloads folder: Space used: 130.9Mb, File count: 45, Write access allowed? YES
Completed downloads folder: Space used: 4.8Gb, File count: 1145, Write access allowed? YES
BearShare library file 'library.db' size is 2.7Mb, '/db' library folder size is 10.8Mb, console log size is 0
FreePeers.ini settings
The freepeers.ini file is found at C:\Program Files\BearShare\FreePeers.ini. The extracted settings are as follows:
ProductLogic
Yes : bAlwaysUpdate; Always Download and announce latest signaled BearShare program updates from FreePeers.inc
Network
1 : connectionType; Network connection type
(0=Modem/AOL/ISDN, 1=Broadband/Cable/DSL/Wireless, 2=Satellite, 3=T1/T3/LAN/OC3/Microwave, 4=Custom values)
6346 : listenPort; TCP/IP port number to listen on
Hosts
No : bNeverBecomeUltrapeer; Disable UltraPeer mode
Authentication
No bAuthenticateHosts; Authenticate host connections
No bAuthenticateDownloads; Authenticate search results and downloads
GBandwidthLogic
Yes : bSymmetric; Is Internet connection symmetric
1024 : totalKbps; Maximum bandwidth for symmetric connections
256 : sendKbps; Maximum outbound bandwidth for asymmetric connections
1024 : recvKbps; Maximum inbound bandwidth for asymmetric connections
No : bMaxHostsKbps; Limit host bandwidth
0 : maxHostsKbps; Kbps of send/receive bandwidth to limit hosts
No : bMaxUploadsKbps; Limit upload bandwidth
0 : maxUploadsKbps; Kbps of send bandwidth to limit uploads
No : bMaxDownloadsKbps; Limit download bandwidth
0 : maxDownloadsKbps; Kbps of receive bandwidth to limit downloads
HostLogic
No : m_bEverUltrapeerCapable; Has client ever been an UltraPeer?
FirewallLogic
Yes : bTcpNFW; yes if TCP is not firewalled
Yes : bUdpNFW; yes if UDP is not firewalled
6346 : UDP Port; UDP port
Downloads
D:\My Downloads : szDownloadsDir; Directory where completed and hashed downloads are moved to
D:\Bearshare Temp Files : szTempDir; Directory where partial downloads are kept
8 : dlMaxFiles; Maximum files to download at once
20 : dlMaxStreams; Maximum connections total
8 : dlMaxStreamsFile; Maximum connections per file
No : bDelCompletedDownloads; ; Automatically remove completed downloads
Yes : bEnableSparseFiles; Enable Sparse files for temporary files
No : bDisablePushSources; Never send Push messages
No : bDisablePushProxySources; Never send Push Proxy requests
Uploads
8 : maxTotUploads; Maximum files to upload at once
6000 : lastSendBpsMaxAvg; last session average outgoing bandwidth
Firewall testing
Testing on TCP port: 6346 worked - http://www3.limewire.com:6346/ is accessible.
Testing on UDP port: 6346 worked - http://www3.limewire.com:6346/ is accessible.
C:\Program Files\BearShare\db\BearShareHostiles.zip: 1361560 bytes transferred over 15.00 seconds. Download speed is 726Kbps. Unzip and install in C:\Program Files\BearShare\db\ folder
BearShare anti-Hostiles List, last updated 2006/06/25 00:07:23 on the local computer is 3768 bytes long, and 10384336 bytes on the internet - check if needs updating
LSPFix: 186368 bytes transferred over 3.32 seconds. Download speed is 449Kbps.
Important listing 'Startuplist.txt' could not be found - details not available. Please re-run to generate.
Code:
Current task list information for ROBERT-765621DB, running WIN_XP, Service Pack 2, build 2600
Details collected on 2006/07/01 02:18:14
Process Name PID File Version Command line Peak Memory Usage (Kb) PageFaults VM Page File Usage (Kb) Handles Threads ReadOperations WriteOperations ReadTransferCount WriteTransferCount
System Idle Process 0 0.0.0.0 >0< 0Kb 0 0Kb 0 1 0 0 0 0
System 4 0.0.0.0 >0< 2620Kb 693935 0Kb 1343 66 6792 5866 6686629 21049591
smss.exe 880 5.1.2600.2180 >\SystemRoot\System32\smss.exe< 688Kb 302 176Kb 25 3 10 4 62614 4
csrss.exe 944 5.1.2600.2180 >C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16< 5144Kb 10797 2000Kb 701 13 192053 6 6122181 432
winlogon.exe 972 5.1.2600.2180 >winlogon.exe< 14432Kb 8241 9484Kb 605 25 309 145 4418430 76857
services.exe 1016 5.1.2600.2180 >C:\WINDOWS\system32\services.exe< 18124Kb 9530 6408Kb 434 17 162 243 360428 570073
lsass.exe 1028 5.1.2600.2180 >C:\WINDOWS\system32\lsass.exe< 8624Kb 2677 6360Kb 396 22 14282 12772 1512620 1109694
ati2evxx.exe 1180 6.14.10.4119 >C:\WINDOWS\system32\Ati2evxx.exe< 2852Kb 830 732Kb 68 4 21 20 34232 892
svchost.exe 1196 5.1.2600.2180 >C:\WINDOWS\system32\svchost -k DcomLaunch< 7204Kb 2205 5188Kb 225 18 114 34 383208 2352
svchost.exe 1268 5.1.2600.2180 >C:\WINDOWS\system32\svchost -k rpcss< 6496Kb 1847 3916Kb 354 11 88 8 381284 444
MsMpEng.exe 1364 1.1.1347.0 >"C:\Program Files\Windows Defender\MsMpEng.exe"< 17140Kb 27138 8700Kb 265 16 836 73 19221831 5578
svchost.exe 1448 5.1.2600.2180 >C:\WINDOWS\System32\svchost.exe -k netsvcs< 45608Kb 54788 18216Kb 1537 76 29238 34561 79598945 80333939
Smc.exe 1560 5.6.0.2808 >"C:\Program Files\Sygate\SPF\smc.exe"< 28612Kb 185825 19624Kb 503 25 449473 21350 525007542 9085071
svchost.exe 1620 5.1.2600.2180 >C:\WINDOWS\system32\svchost.exe -k NetworkService< 5528Kb 1710 3520Kb 99 6 14 11 54186 468
svchost.exe 1664 5.1.2600.2180 >C:\WINDOWS\system32\svchost.exe -k LocalService< 6524Kb 1768 3744Kb 203 14 40 28 77692 1652
LEXBCES.EXE 1920 8.19.0.0 >C:\WINDOWS\system32\LEXBCES.EXE< 3960Kb 1138 2600Kb 181 10 11 10 7559 317
LEXPPS.EXE 1956 8.19.0.0 >LEXPPS.EXE< 3708Kb 1034 1172Kb 100 11 3 2 11430 144
spoolsv.exe 1964 5.1.2600.2696 >C:\WINDOWS\system32\spoolsv.exe< 7580Kb 2202 5628Kb 139 14 13 11 41046 660
avp.exe 276 6.0.0.299 >"C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" -r< 34948Kb 1365491 26092Kb 747 0 769475 279361 1164791138 424621212
guard.exe 320 4.0.0.172 >"C:\Program Files\ewido anti-spyware 4.0\guard.exe"< 68532Kb 36439 32824Kb 67 8 2555 55 7098905 491
sdhelp.exe 396 3.6.0.2023 >"C:\Program Files\Spyware Doctor\sdhelp.exe"< 3636Kb 1393 1100Kb 77 6 23 11 16072 3148
svchost.exe 556 5.1.2600.2180 >C:\WINDOWS\system32\svchost.exe -k imgsvc< 6548Kb 2130 4792Kb 151 6 27 31 75932 1753
tlntsvr.exe 700 5.1.2600.2180 >C:\WINDOWS\system32\tlntsvr.exe< 5916Kb 1620 3268Kb 110 3 90 10 352964 588
xcommsvr.exe 868 1.8.11.0 >"C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe" /service< 4100Kb 1092 540Kb 138 2 9 8 10184 444
ati2evxx.exe 872 6.14.10.4119 >Ati2evxx.exe -Client< 3948Kb 1552 896Kb 71 5 14 12 44920 860
explorer.exe 1344 6.0.2900.2180 >C:\WINDOWS\Explorer.EXE< 26784Kb 95862 22696Kb 409 15 3437 109 17338653 11126
livesrv.exe 1532 9.0.0.3 >"C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe" /service< 4100Kb 1096 1340Kb 155 3 42 19 34348 959
bdss.exe 1608 0.0.0.0 >"C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe" /service< 37568Kb 35717 24332Kb 169 6 2090 586 24458960 15094
vsserv.exe 216 9.0.0.16 >"C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service< 21120Kb 11358 16584Kb 385 14 1413 206 18590286 7480798
wmiprvse.exe 620 5.1.2600.2180 >C:\WINDOWS\system32\wbem\wmiprvse.exe< 7668Kb 4173 4368Kb 157 6 18 18 62086 1297
alg.exe 1756 5.1.2600.2180 >C:\WINDOWS\System32\alg.exe< 5692Kb 1531 3232Kb 112 6 12 10 50376 588
winampa.exe 660 0.0.0.0 >"C:\Program Files\Winamp\winampa.exe" < 3304Kb 1008 1088Kb 48 1 35 8 237668 576
avp.exe 2240 6.0.0.299 >"C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" < 6180Kb 8632 3696Kb 299 0 184 7 836874 504
bdnagent.exe 1764 1.0.0.1 >"C:\PROGRA~1\Softwin\BITDEF~2\bdnagent.exe" < 2376Kb 725 808Kb 34 1 7 11 35414 972
bdswitch.exe 1648 0.0.0.0 >"C:\PROGRA~1\Softwin\BITDEF~2\bdswitch.exe" < 2548Kb 730 840Kb 37 1 7 6 9118 432
msnmsgr.exe 2384 8.0.792.0 >"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background< 16540Kb 8320 9704Kb 320 8 195 14 411061 1008
sgmain.exe 2996 2.2.0.1 >"C:\Program Files\SpywareGuard\sgmain.exe" < 7184Kb 20921 2556Kb 95 1 2650 6 114563 432
sgbhp.exe 3284 2.2.0.1 >"C:\Program Files\SpywareGuard\sgbhp.exe"< 4208Kb 1138 1120Kb 49 1 20 6 20564 432
svchost.exe 2304 5.1.2600.2180 >C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup< 5776Kb 1626 4668Kb 136 5 15 14 51432 876
WudfHost.exe 2472 6.0.5348.0 >"C:\WINDOWS\System32\wudfhost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b7e0b70f-4756-4732-8b2c-db6343928708 -SystemEventPortName:HostProcess-eb6bd6b9-b640-4f3b-828a-c783cb53dcc3 -IoCancelEventPortName:HostProcess-4a905242-faf1-400b-b61d-31e398a92aae -ServiceSID:S-1-5-18 -LifetimeId:91c0155d-5e7f-4bb5-b264-ac0ed4ed188f< 6984Kb 971849 5856Kb 199 8 28530 45528 873492 1815881879
CTDetect.exe 548 3.0.2.0 >"C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /r< 14828Kb 4120 11672Kb 226 8 16 7 121491 604
javaw.exe 2980 5.0.60.5 >"C:\Program Files\Java\jre1.5.0_06\bin\javaw.exe" -ss64k -ms4m -Xminf0.10 -Xmaxf0.25 -Dorg.apache.commons.logging.Log=org.apache.commons.logging.impl.NoOpLog -jar FrostWire.jar< 69320Kb 210381 72040Kb 1565 31 39341 12876 1379490301 13333713
iexplore.exe 2984 6.0.2900.2180 >"C:\Program Files\Internet Explorer\iexplore.exe" < 33040Kb 401708 18208Kb 847 25 32756 94337 164692741 257362425
winamp.exe 476 5.2.4.703 >"C:\Program Files\Winamp\winamp.exe" < 44412Kb 68616 42472Kb 611 24 2412 900 8900546 1975500
BearDiag[1].exe 2932 1.99.3.0 >"C:\Documents and Settings\Robert\Local Settings\Temporary Internet Files\Content.IE5\ZGL84USA\BearDiag[1].exe" < 8844Kb 2747 4792Kb 214 5 158 43 2053363 626452
wmiprvse.exe 2000 5.1.2600.2180 >C:\WINDOWS\system32\wbem\wmiprvse.exe< 6860Kb 1809 4524Kb 147 6 16 14 61914 1032
BearShare library folder information for ROBERT-765621DB, running WIN_XP, Service Pack 2, build 2600
Details collected on 2006/07/01 02:20:46
Volume in drive C has no label.
Volume Serial Number is 88FC-3639
Directory of C:\Program Files\BearShare\db
07/01/2006 02:20 AM <DIR> .
07/01/2006 02:20 AM <DIR> ..
07/01/2006 02:20 AM 1,361,560 BearShareHostiles.zip
06/25/2006 12:07 AM 2,974 config.bin
06/30/2006 01:44 PM 109,244 connect.txt
06/30/2006 01:44 PM 2,142 gwebcache.dat
06/25/2006 12:07 AM 3,768 Hostiles.old
04/30/2006 08:37 PM 10,384,336 Hostiles.txt
06/30/2006 01:44 PM 0 Hostiles-Chat.txt
06/30/2006 01:32 PM 2,800,640 library.2.db
06/30/2006 01:32 PM 2,800,640 library.2.db.lastgoodload.bak
06/24/2006 04:34 AM 21,692 library.2.db-journal.bak
06/30/2006 01:32 PM 2,800,640 library.db
06/30/2006 01:32 PM 2,800,640 library.db.lastgoodload.bak
06/30/2006 01:44 PM 19 searches.ini
13 File(s) 23,088,295 bytes
2 Dir(s) 7,318,310,912 bytes free
Important listing 'hijackthis.log' could not be found - details not available. Please re-run from C:\Documents and Settings\Robert\Local Settings\Temporary Internet Files\Content.IE5\ZGL84USA\HijackThis.exe to generate and paste in forum.