major dysfunctionalies w/mouse and other functions

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by 2easy, Sep 5, 2005.

  1. 2easy

    2easy Private E-2

    in the last few days my computer/mouse has been acting very erratic.

    my computer is a dell xps, windows xp sp2, pentium4, 3.2 speed, 2 gig ram. monitors are 4 dell 2001 fp's, with 2 radeon video cards.

    my mouse is a logitech mx1000 laser cordless. up until this just began, i have had no problems with it. and the degree of my problems, makes me wonder if this is JUST a mouse problem.

    the cursor does not move smoothly, or at a consistant speed. it also will jump to different locations on the screen(s), and at times will "stick" in the corners and various other places and display the multiple arrows type of thing, (looks something like this rotated 90 degrees, >>>.) it will also auto-enable the magnify function by itself.

    at times the mouse will start "drawing" the line/box type of dotted line thing on the screen on its own as i move it. (as my horrible descriptions probably indicate, i am very computer unsavvy, so please forgive me.)

    it also will unprovokedly enable the "application switch" selector onto the screen.

    and, as to the reason why i think that this could be more than just a mouse problem, there are times when i try to click on the bookmarks/favorites section of my browser, and then everything goes kinda beserk, with the computer speedily "rotating" through all of the browser options, i.e., tools, help, file, edit, view, go, bookmarks, etc., around and around, at warp speed.

    even when i tried to set my preferences for viewing modes when creating this forum account, i couldnt get the one i wanted, as when i attempted to roll the cursor to the desired selection, it would just rotate through them all and only let me select the "last" one on the list.

    if i try to click on an icon on the desktop, it selects a different icon than the one i chose. (seems to pick the one at the opposite end of whatever row im in.)

    text-highlighting, (i guess that is what it is called when you swipe over text and it turns blue,) also occurs spontaenously, and finally it usually/often takes many clicks before anything happens when clicking on something.

    and often when i type, everything is backwards. if i type "red" it shows "der."

    the mouse freezes often, the longer im on, the more my problems seem to increase.

    sometimes i cant even shutdown, as i cant select any option with the mouse to do so. sometimes i can hit "s" or "r" for shutdown or restart, at other times even this is inoperable.

    i have cleaned the optical area of the mouse with a q-tip and then used "dust-off" to removed any residue, so i dont think that any foriegn substance is the source of the "jumping" problem.

    i uninstalled the previous logitech setpoint drivers, and rebooted and redownloaded/reinstalled.

    the mouse is rechargable, and the charge is full, and has never been low.


    about 6 weeks ago i began getting a popup message on shutdown that said, " the instruction @0x7c80979d referenced memory @0x0042c18c. memory could not be written."

    about two weeks later i started getting a second one of these after the first one that said, " the instruction @0x7c81979d referenced memory @0x0042c22c. memory could not be written."

    they both say "click ok to terminate," which i do to shut down. i then get a "bonk or donk" type sound and the computer will go into shutdown right away.

    i use mcaffee and windows firewalls.

    i have run almost all of the suggested scans for virus from the "sticky" in the spyware forum.

    tried to run in safe mode, but when i got to the screen to select that, i couldnt, as the arrows and mouse wouldnt work and i couldnt select safe mode.

    temporarily disabled system restore, enabled viewing of hidden files, and ran adaware se with vx2 plugin, ran ccleaner, ran spybot, ran spyware blaster, ran mcaffee avert stinger, rancwshredder, ran kill2me, ran about:buster, ran hsremove, ran microsoft (old giant), and ran trendmicro. also did a defragmentation, which wasnt really needed, according to the analyze.

    i have posted on the software forum and gotten directed here after getting nowwhere there.

    so far my problems seem to have only gotten worse.

    i am in dire need of help, and any that could be given would be most appreciated.

    thanks.
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You need to run the two online scanners (RavAntivirus and BitDefender). Even if you cannot get into safe mode, the READ ME indicates that you should run them in normal boot mode.

    After running those scans, continue to follow the steps below:


    - Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post).


    By the way, have you tried using a different mouse and a different keyboard?
     
  3. 2easy

    2easy Private E-2

    thanks for the reply.

    i did indeed run ravantivirus, and bitdefender.

    will do your further suggestions.

    i havent used a different mouse as i dont have another.

    the keyboard is the dell wireless one that i got with the system.

    after coming up clean with all of the scans i do, do you still think i have a malware-type of problem?

    anyway, will attempt your suggestions.

    finally, how do i do the attachment thing?

    thanks.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    These kind of problems are normally more hardware related but you never know.

    To attach your log, follow the below:

    Assuming you have the hijackthis.log file saved on your PC and you know where it is:
    - Click the Reply button here to answer a message
    - At the bottom of the message window click the Go Advanced button
    - then scroll down a little until you see the Manage Attachments button and click it.
    - in the window that comes up click the Browse button and browse to the location on your PC where the hijackthis.log file is saved.
    - select it by double clicking on it.
    - Then click the Upload button. Observe the messages in that Window you should either see that the file is attached or the could be an error message if you did something wrong.
    - then close that window
    - then save your message
     
  5. 2easy

    2easy Private E-2

    i just ran the hijack this scan.

    took all of about 5 seconds. is that normal?

    am attaching the log.

    look forward to your reply.

    thanks again for the help.
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes that is normal. I'm looking at your log now. Hang on for a little while.
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I'm still looking at your log but here is something for you to think about in the meantime.

    Personally I do not trust any of these online poker sites. I always recommend that they be uninstalled. If they have no uninstall then we fix them using HijackThis and delete their folders.
    O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe
    O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe
    O9 - Extra button: Aztec Riches Poker - {7FCF69CA-B1D5-4b13-A6B0-31020DD5A976} - C:\Program Files\aztecrichesMPP\MPPoker.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
    O9 - Extra button: AbsolutePoker.com - {EFFF8D47-D060-4108-B761-E8EC86622E56} - C:\Documents and Settings\All Users\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk
    O9 - Extra 'Tools' menuitem: AbsolutePoker.com - {EFFF8D47-D060-4108-B761-E8EC86622E56} - C:\Documents and Settings\All Users\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk
    O9 - Extra button: Bodog Poker - {F47C1DB5-ED21-4dc1-853E-D1495792D4C5} - C:\Program Files\Bodog Poker\GameClient.exe
     
  8. 2easy

    2easy Private E-2

    unfortunatley, this is what i do for my sole source of income.

    i have had these on my machine for literally years now, and this problem is very recent.

    while i dont disagree that they could be less than reputable, i, as mentioned, must have them there to put food on the table.
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    But they can cause problems like one of the covert items I will be recommending you remove below in your HJT log.

    If you are using WinXP or WinMe, make sure you have system restore disabled (per the tutorial).
    For all OS types, make sure viewing of hidden files is enabled (per the tutorial).

    Run HijackThis and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://hsremove.com/done.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
    O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
    O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
    O4 - Startup: DLHelperEXE.exe <--- this was covertly installed by your online casino stuff
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

    After clicking Fix, exit HJT.
    Boot into safe mode and use Windows Explorer to delete
    :
    C:\Documents and Settings\All Users\Start Menu\Programs\DLHelperEXE.exe
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup\DLHelperEXE.exe
    C:\Documents and Settings\xxxxxxx\Start Menu\Programs\Startup\DLHelperEXE.exe <--- where xxxxxx is your user account name

    Now run Ccleaner (installed while running the READ ME FIRST). Now if running Win XP goto c:\windows\Prefetch and delete all files in this folder.

    Now reboot in normal mode and post a new HJT log. And tell us how things are working.

    If you still have the same problems with your mouse and keyboard (and I don't expect the above to fix them), I would recommend you locate a hardwired keyboard and mouse you can borrow from some one just to try out because I would expect the problems are hardware or driver related.

     
  10. 2easy

    2easy Private E-2

    chaslang,

    thanks for all the work.

    i will try these suggestions tomorrow, as i dont want to get stuck tonight.

    will repost then, with the log files, and let you know how it went.

    again, my thanks,

    2easy
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Your welcome. I'll be around off and on during the day and evening.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds