Possibly no help

Status
Not open for further replies.
Hey, I’m ___ and from
North America
Age group
41 - 50
Last known PC infection
Fav. Web Browser
Internet Explorer
Fav. Mobile OS
Android
Fav. Desktop OS
Windows
Fav. Videogame
None of them work TBH. Mbrcheck did get rid of the unknown code. But it'll only last till I log on to update windows again

Dcroft39

New Member
Thread author
Jun 9, 2019
25
I stumbled upon this site last night and hope maybe you guys can help. My phone, PC, any device I have or have had since February has been compromised. The hackers have installed deep deep viruses and have been tracking me for months. I was able to clean the MBR on my PC last night but as soon as I login to even update windows or anything they get me again. No need for a password. And in like 30 seconds they are in. The phone has been taped ##### for months. I've all but given up. I'm positive there is a key logger, all my email accounts. Can be accessed. I rarely even go online with my PC because I'm frankly getting tired of formatting and reinstall Windows. I'm on #17 now. I need help. Bad. If anyone thinks they can help. I will be indebted for life.
 
  • Like
Reactions: Andrew999

RoboMan

Level 35
Verified
Top Poster
Content Creator
Well-known
Jun 24, 2016
2,400
Hello and welcome to the forums. If you believe you're infected with malware, please post in Malware Removal Assistance For Windows

For what you say, I can get nothing. I don't know what are the symptoms that make you clean install the OS, or what is happening. You mention a keylogger, on all your devices (PC, phones). This looks weird at first sight, so please post in the aforementioned section explaining a bit more how this happened, what do you believe is happening, and every information you have.
 

Dcroft39

New Member
Thread author
Jun 9, 2019
25
God, where do I start.. ok, I downloaded a copy of tumblr from play store. It was a brand-new phone.and the only anti anything software was lookout. I began getting weird activity from that day. The app was a tumblr app and I was blogging about sig sauer pistols. The hacker began to attach a porn a based page to my blog and made it available to all. This is when I knew I'd been hacked. I went into Google accounts and he followed me immiediatly. Began to become a race to keep him out. Long story short I lost and couldn't recover the account. Him/they kept changing my password and I couldn't get back in. Finally they communicated to me that they wanted to use lookout and other apps on the phone to commit fraud. So like a dumb ass I sat and watched him control and program the phone remotely. Finally I'd had enough and I called my provider told them and he began to sennd threats saying hang up now. With that operation foiled, all hell broke lose. I changed phones 4 times that month, all my accounts, passwords, etc. I used to use several password generators. Every time I'd get a new phone, bam! They get in as soon as I created a new Google account. So I switched to apple. I was told. No way I could be hacked by apple unless they had physical contact. Well, one morning I inadvertently answered a robo call and from that point they were in. They made widgets to follow all my moves, they turned Siri against me to report passwords to them. They even put an extra pin after mine on the phone so I could not reset it. I'm on phone four. This was a cheap motor 6 forge prepaid in another person's name and before I even had the effing number activated they hacked in as I was setting it up. It's the phone I'm on now. I have a firewall called internet guard that I can allow each app on the phone access or block to. The net. I also use a tool called IP tools to watch the activity, but it's not showing a lot. Seems to be disabled. I use Kaspersky antivirus and it always comes up clean. And I have a widget that blocks the camera and mic. Now to the PC. As soon as I got it and went online they hacked in. They shut down half the computer and locked the C:\ making it almost impossible to use. Finally I called Microsoft to get the info for recovery files. And did a new install. It will run ok as long as I don't spend more than a few minutes online. If I do, they get in. My passwords are like 36 character freaking sentences and my pin is about 12 chars. They walk right in like it's theirs. This tells me, rootkit, or some back door. Every device that hooks to our wifi gets hacked. You realize that all the info I'm giving you they can get so it's a catch 22. The reason I have to reinstall Windows so much is because after a cpl days it becomes unusable. All my files are being shared with good knows who, all the permissions are out of whack. Hell I can't even access or save to half my folders. So I copy the data in the event viewer, system and security and I save it on USB drives. Format, reinstall. I even diskpart and name the system partition and format that. Then as soon as I go online to get out of S mode it slowly happens again. I took the windows 10 PC in the living room. An isolated machine. I used it to download the new install files from MS. And they got in that one. They change the router logins and I can't update the firmware cause there isn't an update. I unplugged the router from the cable, hooked to it with an Ethernet cable so I'd have proprietary access. And as I'm re entering new passwords they begin to change on me!!! I've been told this was impossible. Generally they hear. Our conversations via my roommates phone and know what steps were gonna take. This time I did it on a whim. And as I'm changing passwords I get locked out. I reset it to factory, and none of the default passwords would work. I reset again. Nothing. Finally I input the last one I used and gained access and it was as if nothing had been reset. That computer sits unplugged in the living room. My laptop I use several antivirus. But mostly rootkit finders. I have installed McAfee, Kaspersky, eset, all to just uninstall because they find nothing. Once I found some malware in notepad++ a Trojans cleaned it and was informed by the company it was a false positive? I work very hard to make a living these days. I haven't shelled out any money to purchase an antivirus because I haven't found any that can find the rootkits or viri that must be there. My point is, how could they hack a 30+char password in seconds Everytime I change it without a keylogger, or a backdoor in? I've reported it to the cops, I've stacked evidence, but they won't stop. I'm positive there is some malware at work here. The phone, #####, it's gone. Nothing clean it. They obviously have done something to files I can't access to let them keep following me. Ppl think I have lost mind or I am making this up. I spend hours studying the ways malware works and I've been writing batch files to make quick work of all the tests I have to run all the time. I'm trying to learn python,but if I can't get this fixed. It's pointless. As I said. I had unknown code on my MBR. I managed to fix that. So that was a small win. But all I have to do is login and I'll be infected again.
 

Dcroft39

New Member
Thread author
Jun 9, 2019
25
Here is a report from GMer. And some vital info attached. Forgive the photos. I do not want to logon to the net long enough to send the actual text file. Especially since it took me hours just to clean up the mbr last night

I can't tell yet but I hope they came through ok. It's not uncommon for the things I try to upload to change in as little time as it takes to press a button
 

Attachments

  • IMG_20190610_024753896.jpg
    IMG_20190610_024753896.jpg
    3.3 MB · Views: 172
  • IMG_20190610_024850214.jpg
    IMG_20190610_024850214.jpg
    3.3 MB · Views: 202
  • IMG_20190610_024859871.jpg
    IMG_20190610_024859871.jpg
    3.3 MB · Views: 177
  • IMG_20190610_024833697.jpg
    IMG_20190610_024833697.jpg
    2.8 MB · Views: 196

Ink

Administrator
Verified
Staff Member
Well-known
Jan 8, 2011
22,361
Welcome to MalwareTips.

As this sub-forum is intended for new members introductions, I am going to close this thread before anything escalates and so you can get the proper help.

Before posting in MRA for Windows please take a look at this:
 
Last edited:
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top