Ongelma....

Discussion in 'WLAN ja lähiverkot' started by TTTimonen, Apr 15, 2008.

  1. TTTimonen

    TTTimonen Member

    Joined:
    Oct 22, 2005
    Messages:
    6
    Likes Received:
    0
    Trophy Points:
    11
    Nettiyhteys "toimii", eli virheilmotuksia tai muuta sellasta ei tuu. Ongelma on siinä et yhteys alkaa normaalilla nopeudella ja hiljalleen vähenee olemattomiin ja katkee; ja sama toistuu katkeemisen jälkeen.

    Mistä voi johtua?

    Ipconfigilla tehty kaikki mahollinen ja johot katottu läpi.
    Modeemi on speedstream 4100 ja liittymä dna laajakaista.
    En onnistu löytämään korjausta ongelmaan.

    HJT loki tässä sivussa:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 19:48:10, on 15.4.2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
    C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE
    C:\WINDOWS\system32\tcpsvcs.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
    C:\Program Files\CyberLink\PowerCinema\PCMService.exe
    C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    C:\Program Files\Lexmark 2300 Series\lxcgmon.exe
    C:\Program Files\Lexmark 2300 Series\ezprint.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\WINDOWS\system32\lxcgcoms.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\WINDOWS\system32\ps2.exe
    C:\WINDOWS\ALCXMNTR.EXE
    c:\windows\system\hpsysdrv.exe
    C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
    C:\Program Files\Windows Media Player\wmplayer.exe
    C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\Program Files\Symantec\LiveUpdate\AUPDATE.EXE
    C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\CoIEPlg.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
    O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
    O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16
    O4 - HKLM\..\Run: [lxcgmon.exe] "C:\Program Files\Lexmark 2300 Series\lxcgmon.exe"
    O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 2300 Series\ezprint.exe"
    O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton 360\osCheck.exe"
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve')
    O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: Yhteysohje - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Yhteysohje - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1208110754078
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: Automaattinen LiveUpdate-ajastustoiminto (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
    O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE
    O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe

    --
    End of file - 9211 bytes
     
  2. Deukka

    Deukka Regular member

    Joined:
    Jan 13, 2008
    Messages:
    132
    Likes Received:
    0
    Trophy Points:
    26
    Oletko jo katsellut komentorivi-ikkunassa esim. komennolla netstat -ano ja pid-numeron perusteella hakenut tasklist komennolla tehtävää, joka mahdollisesti varaisi liikaa liikennettä?
     
  3. TTTimonen

    TTTimonen Member

    Joined:
    Oct 22, 2005
    Messages:
    6
    Likes Received:
    0
    Trophy Points:
    11
    En ollu kokeillu, mut nyt kokeilin ja tulos netstatista on tässä. En tajuu mitää tosta, eli jos voit kertoa mitä tää tarkottaa ja mitä voin tehä. Näyttää ainaki liittymä olevan sonera eikä dna :D

    Aktiivisia yhteyksiä

    Protokolla Paikallinen osoite Vieras osoite Tila
    TCP Sikailija-Kone:1620 213.199.164.17:http TIME_WAIT
    TCP Sikailija-Kone:1633 65.55.197.114:http TIME_WAIT
    TCP Sikailija-Kone:1650 65.55.197.115:http ESTABLISHED
    TCP Sikailija-Kone:1653 65.55.197.115:http ESTABLISHED
    TCP Sikailija-Kone:1654 213-155-158-58.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1655 213-155-158-58.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1672 65.54.195.188:http TIME_WAIT
    TCP Sikailija-Kone:1673 mail.live.com:http ESTABLISHED
    TCP Sikailija-Kone:1680 213-155-158-40.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1681 213-155-158-33.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1682 213-155-158-33.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1688 mail.live.com:http TIME_WAIT
    TCP Sikailija-Kone:1689 213-155-158-40.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1690 mail.live.com:http TIME_WAIT
    TCP Sikailija-Kone:1691 213-155-158-25.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1695 213-155-158-25.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1696 213-155-158-25.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1697 213-155-158-25.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1698 213-155-158-25.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1699 213-155-158-25.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1700 213-155-158-25.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1702 p.live.com:http TIME_WAIT
    TCP Sikailija-Kone:1703 213-155-158-73.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1704 213-155-158-73.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1705 213-155-158-73.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1706 213-155-158-73.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1708 213-155-158-73.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1709 tou.live.com:http ESTABLISHED
    TCP Sikailija-Kone:1710 213-155-158-25.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1711 65.55.197.114:http ESTABLISHED
    TCP Sikailija-Kone:1712 65.55.197.114:http TIME_WAIT
    TCP Sikailija-Kone:1715 213-155-158-58.customer.teliacarrier.com:http E
    STABLISHED
    TCP Sikailija-Kone:1717 193.88.71.165:http TIME_WAIT
    TCP Sikailija-Kone:1718 12.130.60.8:http TIME_WAIT
    TCP Sikailija-Kone:1722 12.130.60.8:http TIME_WAIT
    TCP Sikailija-Kone:pptp 213-155-158-80.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1726 balanced.afterdawn.net:http TIME_WAIT
    TCP Sikailija-Kone:1730 semdvip1.doubleclick.net:http TIME_WAIT
    TCP Sikailija-Kone:1750 ug-in-f164.google.com:http TIME_WAIT
    TCP Sikailija-Kone:1751 mainos.afterdawn.net:http TIME_WAIT
    TCP Sikailija-Kone:1758 195-12-231-198.customer.teliacarrier.com:http T
    IME_WAIT
    TCP Sikailija-Kone:1759 62.32.97.17:http TIME_WAIT
    TCP Sikailija-Kone:1765 balanced.afterdawn.net:http TIME_WAIT
    TCP Sikailija-Kone:1570 localhost:1571 ESTABLISHED
    TCP Sikailija-Kone:1571 localhost:1570 ESTABLISHED
    TCP Sikailija-Kone:1572 localhost:1573 ESTABLISHED
    TCP Sikailija-Kone:1573 localhost:1572 ESTABLISHED
    --------------------------------

    Mikä on pid-numero ja miten haen sillä tasklist komennon tehtäviä?
    Tän jos vielä kerrot.
     
  4. Deukka

    Deukka Regular member

    Joined:
    Jan 13, 2008
    Messages:
    132
    Likes Received:
    0
    Trophy Points:
    26
    Pid-numero on prosessin id-numero. Antamalla komennon netstat -o tulee lista yhteyksistä pid numeron kera.
    Tämän jälkeen tasklist komennolla näkee mille prosessille tuo numero kuuluu.
     
  5. TTTimonen

    TTTimonen Member

    Joined:
    Oct 22, 2005
    Messages:
    6
    Likes Received:
    0
    Trophy Points:
    11
    Ok.

    Ei näytä olevan mitää erikoista, ellei sit netstatin antamassa listassa.
    Joku täs yhteydes mättää pahan kerran.
     
  6. TTTimonen

    TTTimonen Member

    Joined:
    Oct 22, 2005
    Messages:
    6
    Likes Received:
    0
    Trophy Points:
    11
    Lueskelin netistä teliasoneran nettiyhteyksistä ja niillä on kuulemma ongelmia, joten ei ehkä johdu mistää koneella olevasta prosessista tai muista bugeista.

    Kiitän kuitenki neuvoista.
     

Share This Page