My computer is being hacked and remotely access and no one can detect it

Rov123

New Member
Thread author
Nov 23, 2024
12
I've been hacked by this malicious actor for a long time now, and every now and then, this person would mess with me in subtle and small ways, which if you describe it to people, most would call you crazy.
Recently, it's escalating a bit and I've seen with my own eyes, my computer randomly used an emoji on discord towards a random stranger. I also made a YouTube account and posted a random video and it received 4 views, and when I looked at the YouTube data analyst, it said that the 4 views are from the same 1 unique view. So, whoever this is visited the video and watched it 4 times to mess with me.

I hired some experts, and some possibly scammers from upwork.com to look and investigate into my computer via remote access like Teamviewer, no results. They used common tools, and endpoint security tools, and some simple cmd lines, no detections. Look like scammers. I tried all antivirus myself and no detections.

Can someone help? This looks like some really advanced malware, so regular tools are not helping, and I think I need real professionals, who actually knows how to use CMD commands, or investigate the event viewer logs, investigate deep into the PC and network logs. I'm thinking of also purchasing real tools to detect threats, any recommendations? Antivirus is not doing it. I also need wireshark expert, I have no idea how to read the traffics.

I also replaced modem and new ISP, and replaced some components like SSD, GPU, CPU, motherboard, but not helping somehow. I also clean install my PC many times, but no luck. Whatever this is, it might have infected my USB, which explains why clean install via. USB is getting reinfected.

I ran APT-Hunter and this is the results:
Screenshot 2024-11-26 190051.png
 
Last edited:

nasdaq

Super Moderator
Verified
Staff Member
Nov 5, 2019
1,599
Hello, Welcome to MalwareTips.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

I'm ready to analyse the logs created by the tool I suggest below.
I will give you an answer as soon as possible after I have seen the logs.

Download the Farbar Recovery Scan Tool (FRST).
Choose the 32 or 64 bit version for your system.
and save it to a folder on your computer's Desktop.
Ensure that you are in an Administrator Account
Double-click to run it. When the tool opens click Yes to disclaimer.Download Farbar Recovery Scan Tool
Check the boxes as seen here:
L7kNU5y.jpg

Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Please attach the logs for my review.
How to attach a file to your reply:
In the Reply section in the bottom of the topic Click the "more reply Options" button.
attachlogs.png

Let me know what problems persists.

Wait for further instructions

p.s.
This program is updated often.
If it's identified as suspicious by your Anti-Virus program trust it if Downloaded from the link I provided.
if the download was from the site I provided you should restore the program from the Quarantine folder. It's SAFE.
====
 

Rov123

New Member
Thread author
Nov 23, 2024
12
Hello, Welcome to MalwareTips.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

I'm ready to analyse the logs created by the tool I suggest below.
I will give you an answer as soon as possible after I have seen the logs.

Download the Farbar Recovery Scan Tool (FRST).
Choose the 32 or 64 bit version for your system.
and save it to a folder on your computer's Desktop.
Ensure that you are in an Administrator Account
Double-click to run it. When the tool opens click Yes to disclaimer.Download Farbar Recovery Scan Tool
Check the boxes as seen here:
L7kNU5y.jpg

Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Please attach the logs for my review.
How to attach a file to your reply:
In the Reply section in the bottom of the topic Click the "more reply Options" button.
attachlogs.png

Let me know what problems persists.

Wait for further instructions

p.s.
This program is updated often.
If it's identified as suspicious by your Anti-Virus program trust it if Downloaded from the link I provided.
if the download was from the site I provided you should restore the program from the Quarantine folder. It's SAFE.
====

Here it is:
 

Attachments

  • FRST.txt
    63.6 KB · Views: 6
  • Addition.txt
    50 KB · Views: 4

nasdaq

Super Moderator
Verified
Staff Member
Nov 5, 2019
1,599
Hi,

First - Clean the Windows Defender Quarantine folder.

How to: Delete/Restore quarantined files.
Restore quarantined files in Microsoft Defender Antivirus - Microsoft Defender for Endpoint

Follow the directives on the page to delete all the files in the quarantine folder.

The folder will be cleaned the FIX after the restart of the computer.
<<<>>>

Let's start:

Please download the attached Fixlist.txt file to the same folder where the Farbar tool is running from.
The location is listed in the 3rd line of the FRST.txt log you have submitted.

Important:
If this default Profile is not or your doing I suggest you add these 3 lines anywhere to the Fixlist.txt file to remove them. Other wise forget it.

Save the file before running the FIX

FF DefaultProfile: axx097o5.default
FF ProfilePath: C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\axx097o5.default
FF user.js: detected! => C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\axx097o5.default\user.js


Run FRST and click Fix only once and wait.

The Computer will restart when the fix is completed.

It will create a log (Fixlog.txt) please post it to your reply.
===
 

Attachments

  • Fixlist.txt
    3.2 KB · Views: 2

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top