help me tweak my pldt my dsl 1mpbs

Get help and discuss anything related to tweaking your internet connection, as well as the different tools and registry patches on the site. TCP Optimizer settings and Analyzer results should be posted here.
Post Reply
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

help me tweak my pldt my dsl 1mpbs

Post by jezielcheez101 »

Hi guys

I'm having a problem about my pldt my dsl 1mpbs

because my download speed becomes slower

for the past weeks i'm getting 90kb/sec - 120kb/sec

but now the highest is 75kb/sec then it get lower until 50kb/sec

here is my speed test result

Image

I've run my anti virus and there's no virus

i even run the spybot search and destroy

there a malware but i already remove it

also with superantispyware

i've remove those infected ones

please help me
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

post TCP Analyzer result!

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

« SpeedGuide.net TCP Analyzer Results »
Tested on: 06.12.2010 00:35
IP address: 58.69.xxx.xx
Client OS: Windows XP

TCP options string: 020405a00103030001010402
MSS: 1440
MTU: 1480
TCP Window: 65535 (NOT multiple of MSS)
RWIN Scaling: 0 bits
Unscaled RWIN : 65535
Recommended RWINs: 63360, 126720, 253440, 506880, 1013760
BDP limit (200ms): 2621kbps (328KBytes/s)
BDP limit (500ms): 1049kbps (131KBytes/s)
MTU Discovery: ON
TTL: 53
Timestamps: OFF
SACKs: ON
IP ToS: 00000000 (0)
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

use this WinsockFix
http://www.softpedia.com/progDownload/W ... 15337.html

restart

post new TCP Analyzer, HJT Log and Speedtest result

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

working on it wait
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

sorry on double post

« SpeedGuide.net TCP Analyzer Results »
Tested on: 06.12.2010 05:12
IP address: 58.69.xx.xxx
Client OS: Windows XP

TCP options string: 020405a001010402
MSS: 1440
MTU: 1480
TCP Window: 65535 (NOT multiple of MSS)
RWIN Scaling: 0 bits
Unscaled RWIN : 65535
Recommended RWINs: 63360, 126720, 253440, 506880, 1013760
BDP limit (200ms): 2621kbps (328KBytes/s)
BDP limit (500ms): 1049kbps (131KBytes/s)
MTU Discovery: ON
TTL: 117
Timestamps: OFF
SACKs: ON
IP ToS: 00000000 (0)


Image

another one

« SpeedGuide.net TCP Analyzer Results »
Tested on: 06.12.2010 05:28
IP address: 58.69.xx.xxx
Client OS: Windows XP

TCP options string: 020405a001010402
MSS: 1440
MTU: 1480
TCP Window: 65535 (NOT multiple of MSS)
RWIN Scaling: 0 bits
Unscaled RWIN : 65535
Recommended RWINs: 63360, 126720, 253440, 506880, 1013760
BDP limit (200ms): 2621kbps (328KBytes/s)
BDP limit (500ms): 1049kbps (131KBytes/s)
MTU Discovery: ON
TTL: 117
Timestamps: OFF
SACKs: ON
IP ToS: 00000000 (0)

Image

btw how do i get my HJT log?
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

HJT = HiJackThis
http://free.antivirus.com/hijackthis/

Try this TCP Optimizer Settings:
General Settings tab:
Custom settings - check
Modify All Network Adapters - check
network adapter selection - your NIC
MTU - 1480
TTL - 64
TCP Receive Window - 63360
MTU Discovery - Yes
Black Hole Detect - No
Selective Acks - Yes
Max Duplicate ACKs - 2
TCP 1323 Options:
Windows Scaling - uncheck
Timestamps - uncheck

Advanced Settings tab:
Max Connections per Server - 10
Max Connections per 1.0 Server - 10
LocalPriority - 5
Host Priority - 6
DNSPriority - 7
NetbtPriority - 8
Lan Browsing speedup - optimized
QoS: NonBestEffortLimit - 0
ToS: DisableUserTOSSetting - 0
ToS: DefaultTOSValue - 0
MaxNegativeCacheTtl - 0
NetFailureCacheTime - 0
NegativeSOACache Time - 0
LAN Request Buffer Size - 16384

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

here's my HJT Log

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:44:42 AM, on 6/13/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\WgaTray.exe
C:\windows\Explorer.EXE
C:\windows\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\windows\system32\svchost.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\windows\system32\wuauclt.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/def ... earch.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - (no file)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - (no file)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1220945662-2111687655-1644491937-1003\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe (User '?')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Download Link Using Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {D84EB4B0-BFA9-4B0C-B75A-17ABAD45ABB7} (Friendster Image Uploader Control) - http://images.friendster.com/200910A-03 ... loader.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2C6B19B1-BD56-4B1C-B5FD-018DBF40ACC8}: NameServer = 58.69.254.70 58.69.254.134
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Windows CardSpace (idsvc) - Unknown owner - c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 7455 bytes

should i delete or fix some of them?
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

Fix It:

O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - (no file)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O3 - Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - (no file)
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe (file missing)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)


Review, Fix it if u dont know it:
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/...Uploader55.cab
O16 - DPF: {D84EB4B0-BFA9-4B0C-B75A-17ABAD45ABB7} (Friendster Image Uploader Control) - http://images.friendster.com/200910A...geUploader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2C6B19B1-BD56-4B1C-B5FD-018DBF40ACC8}: NameServer = 58.69.254.70 58.69.254.134

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

i've fix them so what should i do now?

i think my pc has a hidden virus on registry that causing my net to slow down

@@

i'll reformat it
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

before u reformat! i suggest fix-it with :
ComboFix > http://www.bleepingcomputer.com/combofix/
&
Remove Fake Antivirus > http://freeofvirus.blogspot.com/

sometimes net problem not only caused by client side, it can be caused by server side!
learn about "tracert" > http://www.speedguide.net/faq_in_q.php? ... 90&qid=225

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

^

i know but this happen when i've change some of my registry and after that my net becomes

slow @@

i think the registry that i've download has a virus

because also i can't use my firewall

i don't know why

but if it's client side i'm gonna call even i reformat it then it's is slow

Edit -

ok dude i've change my mind i will not reformat it

my xp cd is lost

@@

so now what should i do?
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

hmm, firewall is missing

Check this Registry: (Set it like this)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=dword:00000001
"DoNotAllowExceptions"=dword:00000000

Then:
- Click Start, click Run, type "Firewall.cpl", and then click OK
- On the General tab, click On (recommended).
- Click OK.

If u still cannot Enable ur Firewall. try this:
- Click Start, click Run, type "cmd", and then click OK
- Type : rundll32 setupapi,InstallHinfSection Ndi-Steelhead 132 %windir%\inf\netrass.inf
- Enter
- Type : netsh firewall reset
- Enter
- Type : exit
- Enter

Try again :
- Click Start, click Run, type "Firewall.cpl", and then click OK
- On the General tab, click On (recommended).
- Click OK.

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

not working

@@

i forgot to tell you about the firewall thingy


this is what i do
go to regedit then

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\Standard Profile]

them make

"EnableFirewall"=dword:00000001
"DoNotAllowExceptions"=dword:00000000

then also your second method

it do not work

what to do?
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

gimme ms-dos window screenshot for this :
- Click Start, click Run, type "cmd", and then click OK
- Type : rundll32 setupapi,InstallHinfSection Ndi-Steelhead 132 %windir%\inf\netrass.inf
- Enter
- Type : netsh firewall reset
- Enter

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

Image

error?

still my DL speed is 70kb/sec and down T.T

but my speedtest result

Image

I think there is really a hidden virus here in my pc @@
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

ur download speed around 1 Mbps :)
http://www.speedtest.net/result/847998762.png

but ur firewall should be fixed!
this is complete guide to restore ur firewall from MS :
http://support.microsoft.com/kb/920074/
jezielcheez101 wrote:Image
I think there is really a hidden virus here in my pc @@
i see ur HJT Log was clean, try with MBAM!
http://www.malwarebytes.org/mbam.php

dont forget to install all updates & hotfix from MS!
http://www.update.microsoft.com/microso ... x?ln=en-us

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

i think this one is good article
"What’s the Difference Between Viruses, Trojans, Worms, and Other Malware?"
http://lifehacker.com/5560443/whats-the ... er-malware

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

ok i'll try this thing on weekend

i have class

very busy @@
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

there are malware in my pc 11 @@

btw

my firewall is fix then it goes back again that i can't open it @@
pacificmall
New Member
Posts: 15
Joined: Fri Jun 11, 2010 9:03 am

Post by pacificmall »

reformat pc reinstall windows then install nod32 to have your pc running like new again, some virus can't be cleaned. I always reformat my pc if it has a virus cause it can destroy your pc and slow down overall prformance. new eset nod32 4.2 catches virus instantly so I won't reinstall windows again.
conborua
New Member
Posts: 7
Joined: Thu Jun 10, 2010 12:23 pm

Post by conborua »

i think u should use kaspersky internet security because it absolute the best against virus
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

any updates on what to do?
jazzfelon
New Member
Posts: 1
Joined: Mon Jun 21, 2010 9:46 pm

How To Tweak PLDT mydsl using Vista

Post by jazzfelon »

hi need assistance im not a PC savvy and i want to enhance my connectivity.
here is my TCP resutl


« SpeedGuide.net TCP Analyzer Results »
Tested on: 06.21.2010 21:40
IP address: 112.202.xx.xxx
Client OS: Windows Vista

TCP options string: 020405b40103030201010402
MSS: 1460
MTU: 1500
TCP Window: 65700 (multiple of MSS)
RWIN Scaling: 2 bits (2^2=4)
Unscaled RWIN : 16425
Recommended RWINs: 64240, 128480, 256960, 513920, 1027840
BDP limit (200ms): 2628kbps (329KBytes/s)
BDP limit (500ms): 1051kbps (131KBytes/s)
MTU Discovery: ON
TTL: 116
Timestamps: OFF
SACKs: ON
IP ToS: 00000000 (0)
jezielcheez101
Member
Posts: 32
Joined: Tue May 12, 2009 7:31 am

Post by jezielcheez101 »

bump any news?

update

i have reformat my pc

but it's still slow

@@
User avatar
akbarri
Posts: 935
Joined: Tue Dec 30, 2008 4:21 pm
Location: Caterpillar Inc

Post by akbarri »

call ur ISP!

# OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind
Post Reply