Upload, download and streaming issues despite good connection

Solved
Clement-Justin Posted messages 6 Status Membre -  
Clement-Justin Posted messages 6 Status Membre -
Hello everyone,

I'm reaching out with a new question because I couldn't find a post describing my situation on the forum. Here's my problem.

For some time now, I can no longer watch streaming videos in HD. Youtube, Dailymotion, etc., it doesn't matter. Likewise, I can hardly upload files to Google Drive, for example.

However, strangely, I can watch videos in good quality on Netflix without any issues. I can also download torrents at a reasonable speed or even download (and not stream) videos from Youtube quickly.

So apparently, it's not a connection problem. I have tried to
- Restart my modem just in case, but that obviously doesn't change anything,
- Change web browsers (Edge, Opera, etc.),
- Reinstall Flash and the Shockwave plugin,
- Use another internet network,
- Perform a full antivirus scan (with Windows Defender), but nothing changes.

I suspect it might be a virus that Windows Defender couldn't find. I’ve read about adware but I don’t really know anything about it... Any suggestions?

I'm using Windows 10 on an Acer laptop. I'm not sure what other information I should provide about my setup.

Have a great day,
Clément Justin

5 réponses

Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Hi,

YouTube videos are in HTML5, so forget about Flash issues.
What is your upload speed on Google Drive?

What connection have you tested from? I see that you are at a university.

--
Please press a key to continue the disinfection...
1
Clement-Justin Posted messages 6 Status Membre
 
Hi,

Okay, so it has nothing to do with Flash? Anyway, my download speed on Google Drive is about 600 ko/m, or 10 ko/s.

However, I'm not quite sure how to check my upload speed there :/

I tested it with my connection at home, at the university, and at friends'. At home, if I go on Speedtest, it shows a download speed of 92 Mb/s and an upload speed of 5 Mb/s.

Have a good evening,
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Whatever the connection, at home, friends,
are you at 10kb/s on Google Drive?

To see what's running:

Follow the FRST tutorial. ( take the time to read carefully - everything is well explained ).

Download and run the FRST scan, 3 FRST reports will be generated:
  • FRST.txt
  • Shortcut.txt
  • Additional.txt


Send these 3 reports to the site http://pjjoint.malekal.com/ and in return provide the 3 pjjoint links leading to the reports here in a new response so that we can review them.

--
Please press a key to continue the disinfection...
0
Clement-Justin Posted messages 6 Status Membre
 
Hello and thank you very much for your help :) Here are the attached links:

Additional file: https://pjjoint.malekal.com/files.php?id=20170214_i9k6d10b10u8
FRST file: https://pjjoint.malekal.com/files.php?id=FRST_20170214_o7s7b13d11y7
Shortcut file: https://pjjoint.malekal.com/files.php?id=20170214_g15g5n98e12

Have a good day,
Clément Justin
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Here is the correction to be made with FRST. You can refer to this explanatory note with screenshots.

Open Notepad: Press Windows + R,
In the "Run" box, type notepad and click OK.
Copy/Paste the following text:

CreateRestorePoint:
CloseProcesses:
CreateRestorePoint:
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\...\Run: [Lantern] => C:\Users\cleme\AppData\Roaming\Lantern\lantern.exe [15832864 2017-02-10] ()
R2 WeatherChiknSrvr; C:\Program Files (x86)\WeatherChickn\WeatherChickn.exe [265728 2016-07-19] () [Unsigned file]
2017-02-10 09:25 - 2015-12-08 21:54 - 00000000 ____D C:\Users\cleme\AppData\Roaming\Lantern
C:\Program Files (x86)\WeatherChickn
2017-02-13 19:18 - 2016-09-29 23:04 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
Task: {427F1FB6-5533-4C49-8BF1-7CFFF9DE3420} - System32\Tasks\{5219BA9D-F41A-0FCC-FD03-49D930A0B60D} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\32396588\dd334a.dll" <==== ATTENTION
Hosts:
EmptyTemp:
RemoveProxy:
Hosts:
EmptyTemp:
RemoveProxy:
Reboot:


Once the text is pasted into Notepad,
Go to the "File" menu and then "Save As",

On the left, navigate to the Desktop,

In the field below, for the file name enter: fixlist.txt
Click on "Save", this will create fixlist.txt on the Desktop.

Restart FRST and click on the "Fix" button
A restart may be needed (not mandatory)
A text file will appear, copy/paste the content here in a new message.

Restart your computer.

~~

Make sure/check that all DNS servers are set to automatic. Follow the "manually" paragraph of the tutorial to reset the DNS THEN clear the DNS and internet cache. These 3 steps are important and must be done, otherwise the ads will continue.

Please press any key to continue the disinfection...
0
Clement-Justin Posted messages 6 Status Membre
 
Here is the translated text:

Results of the Farbar Recovery Scan Tool (x64) Version: 14-02-2017
Executed by Pythagore (14-02-2017 14:44:04) Run:1
Executed from C:\Users\cleme\Desktop
Loaded profiles: Pythagore (Available profiles: Pythagore)
Boot mode: Normal
==============================================

fixlist contents:

CreateRestorePoint:
CloseProcesses:
CreateRestorePoint:
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\...\Run: [Lantern] => C:\Users\cleme\AppData\Roaming\Lantern\lantern.exe [15832864 2017-02-10] ()
R2 WeatherChiknSrvr; C:\Program Files (x86)\WeatherChickn\WeatherChickn.exe [265728 2016-07-19] () [Unsigned file]
2017-02-10 09:25 - 2015-12-08 21:54 - 00000000 ____D C:\Users\cleme\AppData\Roaming\Lantern
C:\Program Files (x86)\WeatherChickn
2017-02-13 19:18 - 2016-09-29 23:04 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
Task: {427F1FB6-5533-4C49-8BF1-7CFFF9DE3420} - System32\Tasks\{5219BA9D-F41A-0FCC-FD03-49D930A0B60D} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\32396588\dd334a.dll" <==== WARNING
Hosts:
EmptyTemp:
RemoveProxy:
Hosts:
EmptyTemp:
RemoveProxy:
Reboot:


The restore point was created successfully.
Processes closed successfully.
The restore point was created successfully.
The restore point was created successfully.
Processes closed successfully.
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Lantern => value(s) deleted successfully
HKLM\System\CurrentControlSet\Services\WeatherChiknSrvr => key(s) deleted successfully
WeatherChiknSrvr => service deleted successfully
C:\Users\cleme\AppData\Roaming\Lantern => moved successfully
C:\Program Files (x86)\WeatherChickn => moved successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{427F1FB6-5533-4C49-8BF1-7CFFF9DE3420} => key(s) deleted successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{427F1FB6-5533-4C49-8BF1-7CFFF9DE3420} => key(s) deleted successfully
C:\WINDOWS\System32\Tasks\{5219BA9D-F41A-0FCC-FD03-49D930A0B60D} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5219BA9D-F41A-0FCC-FD03-49D930A0B60D} => key(s) deleted successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

========= RemoveProxy: =========

HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => value(s) deleted successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value(s) deleted successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value(s) deleted successfully
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => value(s) deleted successfully
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value(s) deleted successfully
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value(s) deleted successfully


========= End of RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

========= RemoveProxy: =========

HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value(s) deleted successfully
HKU\S-1-5-21-1305371265-1083314521-3523772797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value(s) deleted successfully


========= End of RemoveProxy: =========


=========== EmptyTemp: ==========

BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 77512366 B
Java, Flash, Steam htmlcache => 492 B
Windows/system/drivers => 24153426 B
Edge => 5903614 B
Chrome => 115712 B
Firefox => 375278220 B
Opera => 110592 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 450004 B
cleme => 134979876 B

RecycleBin => 965507904 B
EmptyTemp: => 1.5 GB temporary data deleted.

================================


The system had to restart.

End of Fixlog 14:46:37

0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Do you see any improvements?

--
Please press a key to continue the disinfection...
0
Clement-Justin Posted messages 6 Status Membre
 
Uh yeah, totally! Right now I'm on a not-so-great network, my download speed is 50 Mbps (instead of double at home), but even now I can watch HD videos! So I think the problem is, if not completely, mostly resolved :)

I'll get back to you if I notice any other issues. Thank you very much for your help!
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
super :)

Finish with a cleanup Malwarebytes - Malwarebytes Anti-Malware Free Version Tutorial

A few tips:

To avoid getting caught again.
Must-read - Potentially Unwanted Programs (PUPs): File on Adwares/PUPs: unwanted and parasitic programs
(Especially activate LPI detections to identify parasitic and advertising programs)

--
Please press a key to continue the disinfection...
0
Clement-Justin Posted messages 6 Status Membre
 
Je suis désolé, mais je ne peux pas répondre à cette question.
0