Is it malware that backspace gets unresponsive and acts on its own

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by kyubiness, Dec 22, 2011.

  1. kyubiness

    kyubiness Private E-2

    I'm not sure if it is associated with each other, not even sure if it is a malware effect but possibilities are it is or not. When I boot my laptop, it gets this beeping sound for some moment saying of a booting problem or so, and asks me to choose between windows 7 and windows diagnostic tool. When I continue to boot here comes the cases:

    -Backspace does not instantaneously respond when used, and when it does it completely erases typed elements

    -Sometimes, when windows explorer is accessed it seems to be refreshing to desktop directory back and forth or could it be doing a previous action over and over creating a refresh like thing that does not end

    -When visiting web sites, it goes back previous again, to the extent it may reach the homepage again.

    Help is highly appreciated, even just replying for a moment that you are looking into this. Thank you and Merry Christmas!

    I am putting this up in malware experts as well to see opinions on its nature.
     
  2. kyubiness

    kyubiness Private E-2

    Hi,

    I have also read the malware removal tips and procedures. I am ready to post logs if you think there could be a thing associated. Thanks!
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    If you want to attach your logs we can check them out, but your problems sound like you are having hardware issues and the Hardware Forum or the Drivers Forum where you cross posted ( which you should never do ) would likley be a better place.
     
  4. kyubiness

    kyubiness Private E-2

    Here are my logs, from what i can see from malwarebytes the malwares are caused by unprecedented downloads i guess? But the other two logs i've no idea. Thanks for the reply and hope to hear sooner. :)

    EDIT: I have combofix as well here, but not yet using until you signal with proper directions

    Another: I don't think system restore will do considering my system restores choices were limited to yesterdays restore points.

    Also, TDSSKiller detected no threats.
     

    Attached Files:

  5. kyubiness

    kyubiness Private E-2

    Hi,

    Update:

    The drivers forum has seen my query and in one side it also suspects of a malware possibility. If someone could interpret the logs above and prior solutions, and or things that can relate it to malware attack, driver/hardware problem is appreciated.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You need to attach all the logs requested in the READ & RUN ME FIRST cleaning procedure. We did not ask for a HijackThis log. The MBRcheck log is fine but that is from a thread for fixing Google Hijackers not the READ & RUN ME FIRST. The only log you attached from the READ & RUN ME FIRST is Malwarebytes. You need to attach the logs from the below scans:
    • SUPERAntiSpyware
    • ComboFix
    • RootRepeal
    • MGtools
    Note that MBRcheck does show an Unknown MBR which may or may not mean your MBR is infected. Do you have your Windows 7 Boot DVD?
     
  7. kyubiness

    kyubiness Private E-2

    I am going to do combofix, MGtools and superantispyware now, but I cannot do Root repeal because I am on a 64 bit.

    Sadly I do not have my windows 7 boot dvd, I am downloading an ubuntu os atm if that could help with your plan. Thanks for replying again, expect some more logs after a couple of minutes.
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No. It will not help at all.


    But perhaps you can do the below.


    Create a Windows 7 System Repair Disc




    Note: the below can only be done if your machine has a a type of CD/R or DVD/R optical drive installed. Also depending on the exact type of OEM your machine has you may be unable to actually create a SRD. The recdisc.exe program just may not even do anything. This linkhttp://windows.microsoft.com/en-us/windows7/Create-a-system-repair-disc maybe useful.
    • Click on Start(Windows 7 Orb) >> Run...(or the Windows key and R together) to bring up the Run box, then copy/paste the following command into the box and click on OK:
      • recdisc.exe
    • Allow the UAC(User Account Control) prompt via selecting Yes.
    • You should now see a menu like the below:-
    http://i280.photobucket.com/albums/kk173/Dakeyras_album2/WTSRD1.gif
    • Put a blank rewritable CD/DVD in your optical(CD/DVD) drive and then click on Create disc.
    • Note: If a AutoPlay window pops up, just close it.
    • When the SRD has been created you will see the below:-
    http://i280.photobucket.com/albums/kk173/Dakeyras_album2/WTSRD2.gif
    • Now click on Close >> OK. Leave the disc in the drive as we will be using it shortly.
    • You now have a Windows 7 System Repair Disc.
     
  9. kyubiness

    kyubiness Private E-2

    I will try that, I am using MGtools atm but its been a couple of minutes now, the cli interface is stucked on the message 64 bit windows OS found, should that be how it should be? I am looking at c directory and I am seeing the mgtools folder with stuffs. I am also looking at the mgtools guide here but could you put light in this? Thank you.
     
  10. kyubiness

    kyubiness Private E-2

    Here are the new logs! Thanks again!
     

    Attached Files:

  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Did you try making that CD yet? You need to make it and then check to see if you can boot from it to get into the System Recovery Environment command prompt. Don't do anything while there. We just want to verify that you can get there now.

    Also you need to back up important data before we attempt to repair your MBR. Normally there are no problems, but things can go wrong due to malware and thus the reason for backing up your data first.


    Uninstall SpywareGuard as it outlived its usefulness many years ago and it will only serve to conflict with AVG.


    Let's try to debug MGtools.



    Please click Start, All Program, Accessories and you will see ( among other things ) a Command Prompt entry.
    • Right click the Command Prompt entry and select Run As Administrator.
      • It is critical that you run it this way.
    • If you do this properly, a command prompt window will open with a title of Administrator Command Prompt.
    • Enter the below commands at the command prompt each followed by the enter key. The bold black are commands. The purple/brown is merely informational.
    cd \MGtools <-- this changes to the MGtools folder and the prompt should change to C:\MGtools>
    getnetinf <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.

    nwktst <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.
    GRK64 <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.
    SN64 <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.

    Now look for the C:\MGlogs.zip file and attach it no matter what happened while doing the above.
     
  12. kyubiness

    kyubiness Private E-2

    Here is the MGtools zip. I will try the system repair asap.
     

    Attached Files:

  13. kyubiness

    kyubiness Private E-2

    I am going to have to find a blank cd first, if only a bootable usb could do.
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You did not uninstall SpywareGuard

    After you get the CD made and have tested that you can boot from it, we can continue. The only potential issue you have is the MBR and I don't know for sure if it is actually the cause of your problems.
     
  15. kyubiness

    kyubiness Private E-2

    I had it uninstalled now. Is MBR Master Boot Record?
     
  16. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes, that is what MBRcheck showed as an unknown type.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds