My internet is acting weird.

gme15

New Member
The speed of my internet is been pretty weird for a while. Its high one sec then low next. I ran Malwarebytes but it found nothing.

the hijack log


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 5:40:51 PM, on 3/13/2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Belkin\F7D4101\V1\PBN.exe
C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Belkin\Router Setup and Monitor\BelkinSetup.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Winamp\winamp.exe
C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Doog15\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HiJackThis.exe

O2 - BHO: vShare Toolbar - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files (x86)\vshare\vshare_toolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: vShare Toolbar - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files (x86)\vshare\vshare_toolbar.dll
O4 - HKLM\..\Run: [Dell DataSafe Online] "C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe" /m
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [InstaLAN] "C:\Program Files (x86)\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe" startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\Launcher.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - .DEFAULT User Startup: Dell Dock First Run.lnk = C:\Program Files\Dell\DellDock\DellDock.exe (User 'Default user')
O4 - Global Startup: Play Wireless USB Adapter Utility.lnk = C:\Program Files (x86)\Belkin\F7D4101\V1\PBN.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: cozi - {5356518D-FE9C-4E08-9C1F-1E872ECD367F} - c:\Program Files (x86)\Cozi Express\CoziProtocolHandler.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files (x86)\vshare\vshare_toolbar.dll
O20 - AppInit_DLLs: RemoveFocusRect.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: AffinegyService - Affinegy, Inc. - C:\Program Files (x86)\Belkin\Router Setup and Monitor\BelkinService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent\Dell Games\Dell Game Console\GameConsoleService.exe
O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RoxMediaDB10 - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SessionLauncher - Unknown owner - c:\Users\ADMINI~1\AppData\Local\Temp\DX9\SessionLauncher.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks - C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Belkin WLAN service (WLANBelkinService) - Unknown owner - C:\Program Files (x86)\Belkin\F7D4101\V1\wlansrv.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Zune Wireless Configuration Service (ZuneWlanCfgSvc) - Unknown owner - C:\Windows\system32\ZuneWlanCfgSvc.exe (file missing)

--
End of file - 11924 bytes



should i post the Security log of my belkin router?
 
Last edited:
Reboot your modem and router and see if your speeds stabilize. Uninstall the vshare toolbar. There is nothing in your log that I see.
 
Welcome back Respital,

I'm just assuming he has many windows open. I'm not sure if chrome is like IE 8 where each window open creates 2 instances of Iexplore in task manager. But it shouldn't cause the internet speed to slow.
 
should i post the Security log of my belkin router just in case?

Yes, go ahead and do it.

Also any particular reason why you had so many instances of the chrome browser running when you ran hijackthis?
 
Im guessing its because I had a lot of tabs open and my Extensions.


The belkin Security log:



03/13/2011 15:18:40 192.168.2.2 login success
03/13/2011 15:11:52 **Smurf** 212.57.208.0, 63930->> 192.168.2.2, 22224 (from WAN Inbound)
03/13/2011 14:53:53 **Smurf** 221.127.159.0, 19959->> 192.168.2.2, 22224 (from WAN Inbound)
03/13/2011 14:39:01 DHCP Client: [WAN]Receive Ack from 76.160.124.245,Lease time=604800
03/13/2011 14:39:01 DHCP Client: [WAN]Domain name = cavtel.net
03/13/2011 14:39:01 DHCP Client: [WAN]Send Request, Request IP=184.81.179.242
03/13/2011 14:39:01 DHCP Client: [WAN]Receive Offer from 76.160.124.245
03/13/2011 14:39:01 DHCP Client: [WAN]Domain name = cavtel.net
03/13/2011 14:39:00 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:40 DHCP Client: [WAN]Could not find DHCP daemon to get information
03/13/2011 14:38:38 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:36 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:34 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:32 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:32 DHCP Client: [WAN]Could not find DHCP daemon to get information
03/13/2011 14:38:30 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:28 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:26 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:24 DHCP Client: [WAN]Send Discover
03/13/2011 14:38:18 DHCP Client: [WAN]Send Release
03/13/2011 14:35:27 NTP Date/Time updated.
03/13/2011 14:35:22 DHCP Client: [WAN]Receive Ack from 76.160.124.245,Lease time=604800
03/13/2011 14:35:22 DHCP Client: [WAN]Domain name = cavtel.net
03/13/2011 14:35:22 DHCP Client: [WAN]Send Request, Request IP=184.81.179.242
03/13/2011 14:35:22 DHCP Client: [WAN]Receive Offer from 76.160.124.245
03/13/2011 14:35:22 DHCP Client: [WAN]Domain name = cavtel.net
03/13/2011 14:35:22 DHCP Client: [WAN]Send Discover
 
Back
Top