Nettiyhteys "toimii", eli virheilmotuksia tai muuta sellasta ei tuu. Ongelma on siinä et yhteys alkaa normaalilla nopeudella ja hiljalleen vähenee olemattomiin ja katkee; ja sama toistuu katkeemisen jälkeen. Mistä voi johtua? Ipconfigilla tehty kaikki mahollinen ja johot katottu läpi. Modeemi on speedstream 4100 ja liittymä dna laajakaista. En onnistu löytämään korjausta ongelmaan. HJT loki tässä sivussa: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:48:10, on 15.4.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE C:\WINDOWS\system32\tcpsvcs.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe C:\Program Files\CyberLink\PowerCinema\PCMService.exe C:\Program Files\HP\HP Software Update\HPwuSchd2.exe C:\Program Files\Lexmark 2300 Series\lxcgmon.exe C:\Program Files\Lexmark 2300 Series\ezprint.exe C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Program Files\Windows Defender\MSASCui.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\WINDOWS\system32\lxcgcoms.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\WINDOWS\system32\ps2.exe C:\WINDOWS\ALCXMNTR.EXE c:\windows\system\hpsysdrv.exe C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe C:\Program Files\Windows Media Player\wmplayer.exe C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\Program Files\Symantec\LiveUpdate\AUPDATE.EXE C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\coIEPlg.dll O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\CoIEPlg.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe" O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe" O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16 O4 - HKLM\..\Run: [lxcgmon.exe] "C:\Program Files\Lexmark 2300 Series\lxcgmon.exe" O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 2300 Series\ezprint.exe" O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton 360\osCheck.exe" O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Yhteysohje - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm O9 - Extra 'Tools' menuitem: Yhteysohje - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1208110754078 O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Automaattinen LiveUpdate-ajastustoiminto (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZIPM12.EXE O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe -- End of file - 9211 bytes
Oletko jo katsellut komentorivi-ikkunassa esim. komennolla netstat -ano ja pid-numeron perusteella hakenut tasklist komennolla tehtävää, joka mahdollisesti varaisi liikaa liikennettä?
En ollu kokeillu, mut nyt kokeilin ja tulos netstatista on tässä. En tajuu mitää tosta, eli jos voit kertoa mitä tää tarkottaa ja mitä voin tehä. Näyttää ainaki liittymä olevan sonera eikä dna Aktiivisia yhteyksiä Protokolla Paikallinen osoite Vieras osoite Tila TCP Sikailija-Kone:1620 213.199.164.17:http TIME_WAIT TCP Sikailija-Kone:1633 65.55.197.114:http TIME_WAIT TCP Sikailija-Kone:1650 65.55.197.115:http ESTABLISHED TCP Sikailija-Kone:1653 65.55.197.115:http ESTABLISHED TCP Sikailija-Kone:1654 213-155-158-58.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1655 213-155-158-58.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1672 65.54.195.188:http TIME_WAIT TCP Sikailija-Kone:1673 mail.live.com:http ESTABLISHED TCP Sikailija-Kone:1680 213-155-158-40.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1681 213-155-158-33.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1682 213-155-158-33.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1688 mail.live.com:http TIME_WAIT TCP Sikailija-Kone:1689 213-155-158-40.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1690 mail.live.com:http TIME_WAIT TCP Sikailija-Kone:1691 213-155-158-25.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1695 213-155-158-25.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1696 213-155-158-25.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1697 213-155-158-25.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1698 213-155-158-25.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1699 213-155-158-25.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1700 213-155-158-25.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1702 p.live.com:http TIME_WAIT TCP Sikailija-Kone:1703 213-155-158-73.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1704 213-155-158-73.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1705 213-155-158-73.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1706 213-155-158-73.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1708 213-155-158-73.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1709 tou.live.com:http ESTABLISHED TCP Sikailija-Kone:1710 213-155-158-25.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1711 65.55.197.114:http ESTABLISHED TCP Sikailija-Kone:1712 65.55.197.114:http TIME_WAIT TCP Sikailija-Kone:1715 213-155-158-58.customer.teliacarrier.com:http E STABLISHED TCP Sikailija-Kone:1717 193.88.71.165:http TIME_WAIT TCP Sikailija-Kone:1718 12.130.60.8:http TIME_WAIT TCP Sikailija-Kone:1722 12.130.60.8:http TIME_WAIT TCP Sikailija-Koneptp 213-155-158-80.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1726 balanced.afterdawn.net:http TIME_WAIT TCP Sikailija-Kone:1730 semdvip1.doubleclick.net:http TIME_WAIT TCP Sikailija-Kone:1750 ug-in-f164.google.com:http TIME_WAIT TCP Sikailija-Kone:1751 mainos.afterdawn.net:http TIME_WAIT TCP Sikailija-Kone:1758 195-12-231-198.customer.teliacarrier.com:http T IME_WAIT TCP Sikailija-Kone:1759 62.32.97.17:http TIME_WAIT TCP Sikailija-Kone:1765 balanced.afterdawn.net:http TIME_WAIT TCP Sikailija-Kone:1570 localhost:1571 ESTABLISHED TCP Sikailija-Kone:1571 localhost:1570 ESTABLISHED TCP Sikailija-Kone:1572 localhost:1573 ESTABLISHED TCP Sikailija-Kone:1573 localhost:1572 ESTABLISHED -------------------------------- Mikä on pid-numero ja miten haen sillä tasklist komennon tehtäviä? Tän jos vielä kerrot.
Pid-numero on prosessin id-numero. Antamalla komennon netstat -o tulee lista yhteyksistä pid numeron kera. Tämän jälkeen tasklist komennolla näkee mille prosessille tuo numero kuuluu.
Ok. Ei näytä olevan mitää erikoista, ellei sit netstatin antamassa listassa. Joku täs yhteydes mättää pahan kerran.
Lueskelin netistä teliasoneran nettiyhteyksistä ja niillä on kuulemma ongelmia, joten ei ehkä johdu mistää koneella olevasta prosessista tai muista bugeista. Kiitän kuitenki neuvoista.