Gaming latency issues.

Gaming discussion, issues, setup, tips, latency, online gaming, game servers, console gaming, etc.
Post Reply
js1974
New Member
Posts: 3
Joined: Fri Feb 18, 2011 2:47 am

Gaming latency issues.

Post by js1974 »

I'll try to make this short and include everything you might need. While my distance to the server I play on is pretty far I know it's not an issue as I have been playing on servers in the same New York Data Center since Feb of last year. Now my avg ping has been about 125 spiking as much as 180 rarely anything more. Lately over the last month my Latency sits in the 275+ range very noticeable and most definitely not working for me.

Code: Select all

« SpeedGuide.net TCP Analyzer Results » 
Tested on: 02.18.2011 02:38 
IP address: 24.251.xxx.xxx 
Client OS: Windows 7 
 
TCP options string: 020405b40103030801010402 
MSS: 1460 
MTU: 1500 
TCP Window: 65536 (NOT multiple of MSS) 
RWIN Scaling: 8 bits (2^8=256) 
Unscaled RWIN : 256 
Recommended RWINs: 64240, 128480, 256960, 513920, 1027840 
BDP limit (200ms): 2621kbps (328KBytes/s)
BDP limit (500ms): 1049kbps (131KBytes/s) 
MTU Discovery: ON 
TTL: 122 
Timestamps: OFF 
SACKs: ON 
IP ToS: 00000000 (0) 
So I play on 3 different servers all in the same data center all east coast.

Server #1

Code: Select all

C:\Windows\system32>tracert 199.107.6.200

Tracing route to 199.107.6.200 over a maximum of 30 hops

  1     8 ms     8 ms     8 ms  10.81.128.1
  2    19 ms    30 ms    18 ms  ip68-2-4-5.ph.ph.cox.net [68.2.4.5]
  3    10 ms    11 ms     7 ms  70.169.75.118
  4     8 ms     8 ms    11 ms  mcdldsrj01-ae2.0.rd.ph.cox.net [70.169.76.225]
  5    23 ms    27 ms    29 ms  langbprj01-ae0.0.rd.la.cox.net [68.1.0.232]
  6    22 ms    21 ms    21 ms  192.205.37.145
  7    84 ms    89 ms   103 ms  cr2.la2ca.ip.att.net [12.122.84.218]
  8    90 ms    83 ms    82 ms  cr1.slkut.ip.att.net [12.122.30.29]
  9    83 ms    85 ms    84 ms  cr2.dvmco.ip.att.net [12.122.30.26]
 10    84 ms    86 ms    85 ms  cr1.cgcil.ip.att.net [12.122.31.86]
 11    87 ms    87 ms    90 ms  cr2.cgcil.ip.att.net [12.122.2.54]
 12    87 ms    94 ms    92 ms  cr1.n54ny.ip.att.net [12.122.1.1]
 13    86 ms    83 ms    93 ms  cr83.n54ny.ip.att.net [12.122.105.50]
 14    84 ms    83 ms    91 ms  gar20.n54ny.ip.att.net [12.123.2.13]
 15    86 ms    83 ms    83 ms  12-122-254-114.attens.net [12.122.254.114]
 16    85 ms    83 ms    86 ms  mdf001c7613r0003-gig-10-1.nyc3.attens.net [63.240.65.10]

Trace complete.
Server #2

Code: Select all

C:\Windows\system32>tracert 199.107.6.192

Tracing route to 199.107.6.192 over a maximum of 30 hops

  1     8 ms     6 ms     7 ms  10.81.128.1
  2     9 ms    13 ms     6 ms  ip68-2-4-5.ph.ph.cox.net [68.2.4.5]
  3     8 ms    10 ms     8 ms  70.169.75.118
  4     7 ms    17 ms    11 ms  mcdldsrj01-ae2.0.rd.ph.cox.net [70.169.76.225]
  5    45 ms    77 ms    22 ms  langbprj01-ae0.0.rd.la.cox.net [68.1.0.232]
  6    30 ms    20 ms    25 ms  192.205.37.145
  7    85 ms    87 ms    84 ms  cr2.la2ca.ip.att.net [12.122.84.218]
  8    82 ms    82 ms    84 ms  cr1.slkut.ip.att.net [12.122.30.29]
  9    83 ms    83 ms    83 ms  cr2.dvmco.ip.att.net [12.122.30.26]
 10    86 ms    82 ms   140 ms  cr1.cgcil.ip.att.net [12.122.31.86]
 11    83 ms    86 ms    83 ms  cr2.cgcil.ip.att.net [12.122.2.54]
 12   124 ms    93 ms    85 ms  cr1.n54ny.ip.att.net [12.122.1.1]
 13    82 ms    84 ms    93 ms  cr83.n54ny.ip.att.net [12.122.105.50]
 14    82 ms    81 ms    83 ms  gar20.n54ny.ip.att.net [12.123.2.13]
 15    82 ms    89 ms    83 ms  12-122-254-114.attens.net [12.122.254.114]
 16    86 ms    85 ms    82 ms  mdf001c7613r0004-gig-12-1.nyc3.attens.net [63.240.65.14]

Trace complete.
Server #3

Code: Select all

Tracing route to 199.107.6.180 over a maximum of 30 hops

  1     9 ms    10 ms     7 ms  10.81.128.1
  2    10 ms     8 ms     7 ms  ip68-2-4-5.ph.ph.cox.net [68.2.4.5]
  3    37 ms    19 ms     9 ms  70.169.75.118
  4    10 ms     9 ms    12 ms  mcdldsrj01-ae2.0.rd.ph.cox.net [70.169.76.225]
  5    38 ms    21 ms    23 ms  langbprj01-ae0.0.rd.la.cox.net [68.1.0.232]
  6    21 ms    22 ms    20 ms  192.205.37.145
  7    85 ms    93 ms    91 ms  cr2.la2ca.ip.att.net [12.122.84.218]
  8    84 ms    91 ms    83 ms  cr1.slkut.ip.att.net [12.122.30.29]
  9    83 ms    83 ms    86 ms  cr2.dvmco.ip.att.net [12.122.30.26]
 10    83 ms    82 ms    84 ms  cr1.cgcil.ip.att.net [12.122.31.86]
 11    86 ms    83 ms    85 ms  cr2.cgcil.ip.att.net [12.122.2.54]
 12    85 ms    86 ms    84 ms  cr1.n54ny.ip.att.net [12.122.1.1]
 13    85 ms    87 ms    86 ms  cr83.n54ny.ip.att.net [12.122.105.50]
 14    84 ms    91 ms    83 ms  gar20.n54ny.ip.att.net [12.122.131.249]
 15    84 ms    83 ms    89 ms  12-122-254-114.attens.net [12.122.254.114]
 16    86 ms    87 ms   112 ms  mdf001c7613r0004-gig-12-1.nyc3.attens.net [63.24
0.65.14]

Trace Complete.
On the server I should add there are 7-8 hops that are not reachable most likely because they are internal to a network or they don't accept ping requests.

Now I know all 3 of these weren't needed as you can see they are all in the same location different ports is probably the only real difference. Clean traces I can't see any type of packet loss on the line.

In game latency is 300, Now I've reset my my network basically back to Windows 7 default. I'll throw a few ping tests up here but obviously the speed of a ping test server on a different network isn't going to tell much.

Image

Image

Image

Image

Now as you can see I have a pretty strong line, I don't have packet loss issues and overall it seems to be fine but over the last month or so something happened and now gaming is barely playable at times. Constant disconnects in game but no where else for instance I can be on skype/Vent/Mumble and in game and the game will look as it's experiencing extreme packet loss. Sometimes it will catch up 30-60 seconds later and there is no DC other times it's just a DC.

It feels like there is some type of throttle or something on sending and receiving only effecting the game. I really don't know if this will be any help or what I can even do about it but it's definitely killing my enjoyment atm.

Here is a quick ping test in case it's something else you would like to see. This has me pretty puzzled and while I'm not really interested in reinstalling my OS I will if I can't determine the issue. I've done everything I can think of to resolve this issue it is possible there isn't one but I figure it can't hurt to let someone else take a stab at it.

Code: Select all

C:\Windows\system32>ping us.login.worldofwarcraft.com -n 25

Pinging us.login.worldofwarcraft.com [208.67.216.145] with 32 bytes of data:
Reply from 208.67.216.145: bytes=32 time=51ms TTL=55
Reply from 208.67.216.145: bytes=32 time=52ms TTL=55
Reply from 208.67.216.145: bytes=32 time=62ms TTL=55
Reply from 208.67.216.145: bytes=32 time=56ms TTL=55
Reply from 208.67.216.145: bytes=32 time=51ms TTL=55
Reply from 208.67.216.145: bytes=32 time=90ms TTL=55
Reply from 208.67.216.145: bytes=32 time=51ms TTL=55
Reply from 208.67.216.145: bytes=32 time=52ms TTL=55
Reply from 208.67.216.145: bytes=32 time=50ms TTL=55
Reply from 208.67.216.145: bytes=32 time=56ms TTL=55
Reply from 208.67.216.145: bytes=32 time=50ms TTL=55
Reply from 208.67.216.145: bytes=32 time=56ms TTL=55
Reply from 208.67.216.145: bytes=32 time=60ms TTL=55
Reply from 208.67.216.145: bytes=32 time=57ms TTL=55
Reply from 208.67.216.145: bytes=32 time=57ms TTL=55
Reply from 208.67.216.145: bytes=32 time=51ms TTL=55
Reply from 208.67.216.145: bytes=32 time=75ms TTL=55
Reply from 208.67.216.145: bytes=32 time=50ms TTL=55
Reply from 208.67.216.145: bytes=32 time=51ms TTL=55
Reply from 208.67.216.145: bytes=32 time=57ms TTL=55
Reply from 208.67.216.145: bytes=32 time=49ms TTL=55
Reply from 208.67.216.145: bytes=32 time=50ms TTL=55
Reply from 208.67.216.145: bytes=32 time=51ms TTL=55
Reply from 208.67.216.145: bytes=32 time=52ms TTL=55
Reply from 208.67.216.145: bytes=32 time=52ms TTL=55

Ping statistics for 208.67.216.145:
    Packets: Sent = 25, Received = 25, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 49ms, Maximum = 90ms, Average = 55ms
User avatar
Sava700
Posts: 24051
Joined: Wed Feb 27, 2002 7:51 am
Location: Somewhere

Post by Sava700 »

post a hijackthis log, also have you run the TCP Optimizer yet as setting to Optimal settings? What speed package are you pay for with Cox? And last Question for now is why in the world are you playing WoW on east coast servers when your on the west coast?
js1974
New Member
Posts: 3
Joined: Fri Feb 18, 2011 2:47 am

Post by js1974 »

Because I'm a competitive player and you have to go where guilds are recruiting to stay competitive. Yes I'm currently under Optimized setitngs but still experiencing DC's regularly.

Cox Service is Ultimate

55 Mbps Bursting, Usually around 20-30 Mbps regular use between 3-5 Mbps upstream.

Code: Select all

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:10:08 PM, on 2/18/2011
Platform: Windows 7  (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8080.16413)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Logitech\G35\G35.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsMono-1.00.027\Applets\x86\LCDMedia.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-1.00.027\Applets\x86\LCDMovieViewer.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-1.00.027\Applets\x86\LCDWebCam.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-1.00.027\Applets\x86\LCDYT.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [Logitech G35] C:\Program Files (x86)\Logitech\G35\G35.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: CurseClientStartup.ccip
O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~2\NEOTRA~1\NTXcontext.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: NeoTrace It! - {9885224C-1217-4c5f-83C2-00002E6CEF2B} - C:\PROGRA~2\NEOTRA~1\NTXtoolbar.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://streamengine.ubicom.com
O16 - DPF: {62BA437C-7712-48C6-9F0B-D251FA43192B} (SayaTV Control) - http://www.sayatv.com/download/SayaTV.cab
O16 - DPF: {65FDEDF3-8ED9-4F5B-825E-18C2D44191A7} (OneCCCtl Class) - https://as00.estara.com/UI/proxyhttps.php?a=downloads.estara.com./&hash=7007b168166ee752006c7fe34319814a&url=http%3A%2F%2Fd.64.69.12.26.downloads.estara.com.%2Fas%2FOneCCDM.php&template=354405&sessionid=1649240202_64.69.12.26_50455&=&req=1276115086089OneCC.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\Skype4COM.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Dyyno Service (Dyyno Launcher) - Unknown owner - C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\launcherd.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: LOWERP - LowerPing - C:\Program Files (x86)\LowerPing\LowerP.EXE
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Professional Business 2010\RpcAgentSrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Stuffit Archive Name Service - Smith Micro Software, Inc. - C:\Program Files (x86)\Smith Micro\StuffIt 2009\ArcNameService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Stardock WindowBlinds (WindowBlinds) - Unknown owner - C:\Program Files (x86)\Stardock\MyColors\VistaSrv.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15030 bytes
User avatar
Sava700
Posts: 24051
Joined: Wed Feb 27, 2002 7:51 am
Location: Somewhere

Post by Sava700 »

Ugg jesus... ok lets start off with removing all that crap that has anything to do with "widecapdrv.dll" and anything that has to do with that Lowerping junk... that don't work and prob causes more problems than solving most certainly being involved with "winsock". Next lets download/update and run Malwarebytes Anti-Malware and see if your having any type of infections. Go through that log list and if you see anything that says "FileMissing" you need to fix/remove those too!

After all that.. lets check some speed tests again.
js1974
New Member
Posts: 3
Joined: Fri Feb 18, 2011 2:47 am

Post by js1974 »

Sava700 wrote:Ugg jesus... ok lets start off with removing all that crap that has anything to do with "widecapdrv.dll" and anything that has to do with that Lowerping junk... that don't work and prob causes more problems than solving most certainly being involved with "winsock". Next lets download/update and run Malwarebytes Anti-Malware and see if your having any type of infections. Go through that log list and if you see anything that says "FileMissing" you need to fix/remove those too!

After all that.. lets check some speed tests again.
They have been removed, widecap and lowerping are both just ssh tunneling through putty to other servers and using a more direct connection which has resulted in reducing my ping by 2/3's so they do help but rather not pay for it. Anyway everything removed that was unknown/widecap/lowerping here is the new hijackthis listing.

Code: Select all

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:19:48 PM, on 2/25/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8080.16413)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Logitech\G35\G35.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsMono-1.00.027\Applets\x86\LCDMedia.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-1.00.027\Applets\x86\LCDMovieViewer.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-1.00.027\Applets\x86\LCDWebCam.exe
C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-1.00.027\Applets\x86\LCDYT.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe
C:\Users\Requital\AppData\Local\Apps\2.0\GKMW4489.H3T\LAM3C5KQ.MK3\smoo..tion_79697336850d12d3_0001.0001_86c1f9a9065272bc\assets\putty.exe
C:\Users\Requital\Desktop\wt\WoWTunnels1.6\WoWTunnels.exe
C:\Users\Requital\Desktop\wt\WoWTunnels1.6\exec\ss5capengine.exe
C:\Users\Requital\Desktop\wt\WoWTunnels1.6\exec\putty.exe
D:\World of Warcraft\WoW.exe
C:\Users\Requital\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Requital\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [Logitech G35] C:\Program Files (x86)\Logitech\G35\G35.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [CorelDRAW Graphics Suite 11b] C:\Program Files (x86)\Corel\Corel Graphics 12\Languages\EN\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=030611 serial=DR12WEX-1504397-KTY lang=EN
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: CurseClientStartup.ccip
O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~2\NEOTRA~1\NTXcontext.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: NeoTrace It! - {9885224C-1217-4c5f-83C2-00002E6CEF2B} - C:\PROGRA~2\NEOTRA~1\NTXtoolbar.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\widecap\widecapdrv.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://streamengine.ubicom.com
O16 - DPF: {62BA437C-7712-48C6-9F0B-D251FA43192B} (SayaTV Control) - http://www.sayatv.com/download/SayaTV.cab
O16 - DPF: {65FDEDF3-8ED9-4F5B-825E-18C2D44191A7} (OneCCCtl Class) - https://as00.estara.com/UI/proxyhttps.php?a=downloads.estara.com./&hash=7007b168166ee752006c7fe34319814a&url=http%3A%2F%2Fd.64.69.12.26.downloads.estara.com.%2Fas%2FOneCCDM.php&template=354405&sessionid=1649240202_64.69.12.26_50455&=&req=1276115086089OneCC.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\Skype4COM.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Dyyno Service (Dyyno Launcher) - Unknown owner - C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\launcherd.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Professional Business 2010\RpcAgentSrv.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Stuffit Archive Name Service - Smith Micro Software, Inc. - C:\Program Files (x86)\Smith Micro\StuffIt 2009\ArcNameService.exe
Image

Image

Image

Image

I went ahead and used the same servers I used last time just to get a comparison.
Post Reply