Redundant Keylogger(?) Problem

Discussion in 'Malware Help (A Specialist Will Reply)' started by bi0fire, Jun 21, 2008.

  1. bi0fire

    bi0fire Private E-2

    AND dICE-K. yOPU NEED SOME ofREAL BAD, TELL ME WHAT YOU GOT YOUR EYE ON. tHANKS,

    jEREMY

    Thats a little excerpt of my problem I am having here, non-intentional, it types itself...I can barely type this without being screwed up (i.e. clicking in the middle of sentences, right clicking, typing...) I have tried EVERYTHING. At first I thought it must be a RAT, because my computer was practically controlling itself. It types on sentence over and over again on and off, as you can see above, that I myself had entered while updating my fantasy baseball team. So I thought that the remedy to the problem would be to disconnect the network card, but it continues (not on as frequent of a basis...). I have tried multiple scans with multiple utilities, and they have found nothing. I have also noticed an exact trend when the computer acts up, for example, the sentence it typed up above always has the same grammatical errors and the time in between certain words typed is down to a science. It always right clicks after the sentence is typed three times.

    I don't know what else to do. I usually like to figure things out myself, but right now, I am at a loss. Thanks in advance!
     
    Last edited by a moderator: Jun 21, 2008
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Welcome to Major Geeks!

    Please uninstall HJT as it will be properly installed when you do the following:

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.

    READ & RUN ME FIRST. Malware Removal Guide
     
  3. bi0fire

    bi0fire Private E-2

    Ok, I have done everything asked. Here's the new log...
     
    Last edited: Jun 21, 2008
  4. bi0fire

    bi0fire Private E-2

    Here's the updated log.
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

  6. bi0fire

    bi0fire Private E-2

    All instructions followed!
     

    Attached Files:

  7. bi0fire

    bi0fire Private E-2

    A few more.
     

    Attached Files:

  8. bi0fire

    bi0fire Private E-2

    I have reinstalled my OS and the problem still persists.
     
  9. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    What do you mean you have reinstalled your OS? Did you do a complete format and new install or just ran a repair install ( which will do nothing to remove the malware)?

    You were supposed to attach the MGTools log which is right where the Read and Run instructions say it is:
    C:\MGLogs.zip.
     
  10. bi0fire

    bi0fire Private E-2

    I did a repair install figuring that there is a possibility of it overwriting any system directories that may have been tampered with, I guess not. Sorry, I thought you wanted each individual file...
     
  11. bi0fire

    bi0fire Private E-2

    Here's the MGtools file.
     

    Attached Files:

  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Since the only thing that comes up as malware is the WPA crack....let me ask a few questions.

    You say this happens with both the wireless and wired internet connections disabled?

    Do you use a wireless mouse?

    Where is the computer? Are there other computers near by?
     
  13. bi0fire

    bi0fire Private E-2

    Well, I use an Antiwpa crack because I own mulitple computers and copies of XP and Vista and don't feel like registering all of them. I used a copy that I had previously used by an accident and got lazy. Sounds like a crock, but it's the truth. The antiwpa crack has always come up as malware, but after I reinstalled the patch the same line of text comes up, which sort of cancels out that possibility. I use a wired mouse, but it's been giving me problems. This happens, on rare occasions, when I disconnect my card and always happens right after I disconnect it for a little while, a possible queue? The computer is in a basement, and the closest computer is about 40 feet away, through walls. Thanks for your help!
     
  14. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    A key logger would have to have access to your computer....if it is disconnected with both wired and wireless access disabled....they it really sounds like someone close to you is using a wireless mouse .....weird, Huh?

    So use IE and Go to Bitdefender agree to the license and then select Scan. DO NOT CHANGE THE OPTIONS TO SHOW ALL FILES SCANNED. That will make your logs huge and we don't need to see clean files. Once Bitdefender completes the scan:

    Click-on the Detected Problems tab. Then select Click here to export the scan report

    When the window comes up to save the report, change the Save as type: box to Text (Tab Delimited) (*.txt) and then in the File name box enter change to bdscan then click save. This will save a file named bdscan.txt in whatever folder you are currently in when you save the file (take notice of where you are at so you can find it later). This bdcan.txt file will actually contain HTML code that we can easily view later while reviewing your log. All we have to do is rename the file to bdscan.html.
     
  15. bi0fire

    bi0fire Private E-2

    Came up as no problems found...
     
  16. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Is it still happening? Who has access to the other computers?
     
  17. bi0fire

    bi0fire Private E-2

    Still happening, no one has access to this computer, remote or otherwise, and there is no one in my household capable of installing a backdoor or utilizing an open port. Even if there were, this typing and clicking sequence is a replica of something I typed a few months ago, down to every last grammatical error.
     
  18. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I don't believe this is malware related.....in which program does this happen?
     
  19. bi0fire

    bi0fire Private E-2

    It doesn't happen in a particular program, just whatever I am doing. It does it to me in browsers just as frequently as it does it in text editors and games. One thing I know is that once it starts, it doesn't stop until the routine is completed.
     
  20. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It just appears on the screen and does'nt go away until you finish something or until you shut down? I'm curious ...have you tried a different monitor?
     
  21. bi0fire

    bi0fire Private E-2

    I wouldn't figure it to be the monitor, what happens is there are random link clickings or desktop clickings, same ones every time, followed by the same line of text I had typed in a few months ago, same errors and everything. Don't see how the monitor could be affecting this... would you like me to post a video?
     
  22. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Screen shot would be good.....
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds