Log In

Your email is not your username

Register

If you were a member of the old Bodybuilding.com forums and would like to reuse your previous username, you can request it below. We use your email only for registration and do not store it. For more information, please see our Privacy Policy.

Confirm your email

A registration code was sent to your email. Enter it here.

Welcome

You have successfully setup your account.

Sign in

Quick Navigation Bottom Misc
Forum
ยป Brahs...I think I may have a remote hacker accessing my laptop..(REPS!)
  1. Results 1 to 30 of 120
  2. 1
  3. 2
  4. 3
  5. Last
post 1655886543 02-09-2022, 10:58 AM
-
#1
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280

Brahs...I think I may have a remote hacker accessing my laptop..(REPS!)

Basically one evening my laptop sign in screen changed. Windows usually has a fancy picture but this time it was just black with no fingerprint sign on option. Only Pin. Secondly, the profile photo looked a bit blurred and some admin privileges were changed. I immediately did a fresh install of windows 11 however if there was a keylogger in the system it would still have my passwords. I also noticed my online banking password was the same, however the security question had been changed. I contacted them and they said that no security questions had been changed. weird. Also, when I try to set up my fingerprint sign in on windows hello it says it is not available and the helloface folder/files is missing from the system 32 folder. I also noticed facefoduninstaller.exe inside that folder. Basically the entire face driver folder is missing from the registry. Weird. Ive run malware bytes bootkit and RKill in safe mode. Nothing. Any idea how to detect a RAT/Rootkit/Botnet ?

The final weird thing is that sometimes when I shut off my computer it may boot back up unknowingly. Or I may hear sounds of it still being on after i shut it down, Even the battery power seems much better than before. The power buttons on the side also changed, usually when its plugged in the white light will come on, however if I unplug the power the white light stays on.
(these are my opinions i am not a licensed broker by trade)
post 1655886813 02-09-2022, 11:03 AM
-
#2
  1. JeepBruh
  2. Platinum
  1. JeepBruh
  2. Platinum
  3. Join Date: Aug 2019
  4. Posts: 12,136
  5. Subscribers: 2
  6. Rep Power: 146252
Might want to wipe your router as well. If they were able to get into the router firmware from your compromised PC you could be getting call backs even after a freshly installed OS. Hopefully you changed the default login on your router when you purchased?
post 1655886873 02-09-2022, 11:04 AM
-
#3
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By JeepBruh
Might want to wipe your router as well. If they were able to get into the router firmware from your compromised PC you could be getting call backs even after a freshly installed OS. Hopefully you changed the default login on your router when you purchased?
the problem is the router im using is from the apartment its not mine! how would I be able to reset it ? Already turned it off and then on
(these are my opinions i am not a licensed broker by trade)
post 1655886923 02-09-2022, 11:06 AM
-
#4
  1. MyBaddBrah
  2. u wot m8
  1. MyBaddBrah
  2. u wot m8
  3. Join Date: Apr 2013
  4. Posts: 19,318
  5. Rep Power: 61930
If you do a reinstall you removed everything. It's extremely unlikely you have anything that's affected the firmware. Change your passwords and you should be good.
*Hole is Life Crew*
*Meditation Crew*
post 1655887003 02-09-2022, 11:07 AM
-
#5
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By MyBaddBrah
If you do a reinstall you removed everything. It's extremely unlikely you have anything that's affected the firmware. Change your passwords and you should be good.
theres jsut weird chit going on that normally doesnt happen, like when I typed in weather it took me to a different location. Or when I am using chrome with adblocker I can still see ads
(these are my opinions i am not a licensed broker by trade)
post 1655887073 02-09-2022, 11:08 AM
-
#6
  1. JeepBruh
  2. Platinum
  1. JeepBruh
  2. Platinum
  3. Join Date: Aug 2019
  4. Posts: 12,136
  5. Subscribers: 2
  6. Rep Power: 146252
Originally Posted By VegasLifter26
theres jsut weird chit going on that normally doesnt happen, like when I typed in weather it took me to a different location. Or when I am using chrome with adblocker I can still see ads
Use ublock origin for ads and ghostery to minimize tracking
post 1655887173 02-09-2022, 11:11 AM
-
#7
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By JeepBruh
Use ublock origin for ads and ghostery to minimize tracking
Is there a way to see if someone has remote access . I reset the network setting, I checked the Netstat in command prompt, I disabled windows remote desktop. But seems like there is still some background activity going on.

Ublock just worked btw
(these are my opinions i am not a licensed broker by trade)
post 1655887493 02-09-2022, 11:15 AM
-
#8
  1. JeepBruh
  2. Platinum
  1. JeepBruh
  2. Platinum
  3. Join Date: Aug 2019
  4. Posts: 12,136
  5. Subscribers: 2
  6. Rep Power: 146252
Originally Posted By VegasLifter26
Is there a way to see if someone has remote access . I reset the network setting, I checked the Netstat in command prompt, I disabled windows remote desktop. But seems like there is still some background activity going on.

Ublock just worked btw
Antivirus. Windows defender does a decent job, but McAfee or dedicated antivirus will help pick up slightly more. They have free trials obv. Just uninstall once you no longer need and they start pressuring you to buy. Or just buy.

Make sure scan in safemode as well. These are basic suggestions, but should catch vast majority of infections.

I still think you should figure out login information for router and wipe/reinstall firmware.
post 1655887843 02-09-2022, 11:20 AM
-
#9
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By JeepBruh
Antivirus. Windows defender does a decent job, but McAfee or dedicated antivirus will help pick up slightly more. They have free trials obv. Just uninstall once you no longer need and they start pressuring you to buy. Or just buy.

Make sure scan in safemode as well. These are basic suggestions, but should catch vast majority of infections.

I still think you should figure out login information for router and wipe/reinstall firmware.
I think you may be right, I noticed that when my network was connected it would show two networks on the same router. For Instance - Bob'sRouter , and Bob'sRouter -5ghz

that seemed very strange
(these are my opinions i am not a licensed broker by trade)
post 1655887883 02-09-2022, 11:21 AM
-
#10
  1. Critter5592
  2. That's the arm I fap with
  1. Critter5592
  2. That's the arm I fap with
  3. Join Date: Nov 2011
  4. Posts: 33,809
  5. Rep Power: 354322
if you did a fresh windows install, you are fine. Id change passwords though just to be extra safe.
Uncontrollable behavior with some psychopathic tendencies
post 1655887943 02-09-2022, 11:22 AM
-
#11
  1. JeepBruh
  2. Platinum
  1. JeepBruh
  2. Platinum
  3. Join Date: Aug 2019
  4. Posts: 12,136
  5. Subscribers: 2
  6. Rep Power: 146252
Originally Posted By VegasLifter26
For Instance - Bob'sRouter , and Bob'sRouter -5ghz

that seemed very strange
The first one is your 2.4GHz signal. An older standard that is slower, but with better range
post 1655888093 02-09-2022, 11:25 AM
-
#12
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By JeepBruh
The first one is your 2.4GHz signal. An older standard that is slower, but with better range
Do you know if these viruses/Trojan once they get in your PC can they infect other PC's on a different network. FOr example if I logged into someone elses home network or a public wifi would those devices on there become infected?
(these are my opinions i am not a licensed broker by trade)
post 1655888173 02-09-2022, 11:26 AM
-
#13
  1. MyBaddBrah
  2. u wot m8
  1. MyBaddBrah
  2. u wot m8
  3. Join Date: Apr 2013
  4. Posts: 19,318
  5. Rep Power: 61930
Originally Posted By VegasLifter26
Is there a way to see if someone has remote access .
Since you already wiped your files, the only place that could be left is firmware. Hackers usually aren't bothering with new firmware exploits for routers used by everyday people. Why would they? What do they have to gain? It's a lot of effort for little reward. As long as your router's been updated, which it likely has been, you're 99% good.


Who else is on your network? Are you getting phished?
*Hole is Life Crew*
*Meditation Crew*
post 1655888273 02-09-2022, 11:27 AM
-
#14
  1. JeepBruh
  2. Platinum
  1. JeepBruh
  2. Platinum
  3. Join Date: Aug 2019
  4. Posts: 12,136
  5. Subscribers: 2
  6. Rep Power: 146252
Originally Posted By VegasLifter26
Do you know if these viruses/Trojan once they get in your PC can they infect other PC's on a different network. FOr example if I logged into someone elses home network or a public wifi would those devices on there become infected?
If you are wondering if you infected other networks then no. No one within your wifi range is going to re-infect your network.
post 1655888383 02-09-2022, 11:29 AM
-
#15
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By MyBaddBrah
Since you already wiped your files, the only place that could be left is firmware. Hackers usually aren't bothering with new firmware exploits for routers used by everyday people. Why would they? What do they have to gain? As long as your router's been updated, which it likely has been, you're 99% good.


Who else is on your network? Are you getting phished?
Nobody is on my network however I was using teamviewer last week with someone from fiverr. However I was in the mode conrolling his pc...would that have left me vulnerable?
(these are my opinions i am not a licensed broker by trade)
post 1655888413 02-09-2022, 11:29 AM
-
#16
  1. JeepBruh
  2. Platinum
  1. JeepBruh
  2. Platinum
  3. Join Date: Aug 2019
  4. Posts: 12,136
  5. Subscribers: 2
  6. Rep Power: 146252
Originally Posted By MyBaddBrah
Since you already wiped your files, the only place that could be left is firmware. Hackers usually aren't bothering with new firmware exploits for routers used by everyday people. Why would they? What do they have to gain? As long as your router's been updated, which it likely has been, you're 99% good.


Who else is on your network? Are you getting phished?
A common tactic once they compromise your pc is to start trying to log into your router by brute forcing default passwords. "admin, admin" etc
post 1655888433 02-09-2022, 11:30 AM
-
#17
  1. SuperHercules
  1. SuperHercules
  2. Join Date: Jun 2014
  3. Height: 6'5"
  4. Posts: 32,389
  5. Subscribers: 6
  6. Rep Power: 567288
Originally Posted By VegasLifter26
the problem is the router im using is from the apartment its not mine! how would I be able to reset it ? Already turned it off and then on
Maybe the landlord is the culprit


Anyways windows is garbage. You should just try Linux
See Shakebrah's sig
post 1655888843 02-09-2022, 11:35 AM
-
#18
  1. MyBaddBrah
  2. u wot m8
  1. MyBaddBrah
  2. u wot m8
  3. Join Date: Apr 2013
  4. Posts: 19,318
  5. Rep Power: 61930
Originally Posted By JeepBruh
A common tactic once they compromise your pc is to start trying to log into your router by brute forcing default passwords. "admin, admin" etc
True. But modern routers aren't vulnerable to brute force attacks via rate limiting. And chances are if he's set up his own router he knows to use a strong password on it.
*Hole is Life Crew*
*Meditation Crew*
post 1655888903 02-09-2022, 11:35 AM
-
#19
  1. flat6pilot
  2. Registered User
  1. flat6pilot
  2. Registered User
  3. Join Date: Oct 2015
  4. Age: 42
  5. Posts: 1,958
  6. Rep Power: 5996
It is possible for some viruses to get into the Bios and would reinfect a clean reinstall of windows.

https://docs.microsoft.com/en-us/ans...ry-resets.html
post 1655888973 02-09-2022, 11:36 AM
-
#20
  1. MyBaddBrah
  2. u wot m8
  1. MyBaddBrah
  2. u wot m8
  3. Join Date: Apr 2013
  4. Posts: 19,318
  5. Rep Power: 61930
Originally Posted By VegasLifter26
Nobody is on my network however I was using TeamViewer last week with someone from fiverr. However I was in the mode conrolling his pc...would that have left me vulnerable?
You should be good with team viewer. Post some screen vids with the weird behavior.
*Hole is Life Crew*
*Meditation Crew*
post 1655889053 02-09-2022, 11:37 AM
-
#21
  1. olemo
  2. Registered User
  1. olemo
  2. Registered User
  3. Join Date: Dec 2013
  4. Age: 32
  5. Posts: 3,179
  6. Rep Power: 8054
You have a ROOTKIT it is malware infected code into hardware.

Run multiple anti rootkit software(malware bytes bascily any you can find)

Ive had a rootkit once in my motherboard. Was hacked by russian hackers.

They are hard to get rid of.

Bascily it boots the virus into your pc when the hardware is Run so even if you a do fresh instal you will get re-infected.

edit: download all of those.

https://www.bleepingcomputer.com/dow.../anti-rootkit/

edit: this tool will check your router do this for DNS HACK. (also check what your current DNS is.)

https://www.f-secure.com/en/home/fre...router-checker
post 1655889083 02-09-2022, 11:37 AM
-
#22
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By MyBaddBrah
True. But modern routers aren't vulnerable to brute force attacks via rate limiting. And chances are if he's set up his own router he knows to use a strong password on it.
the password and usernames are custom. Its a 2 in 1 TMobile 5g router/model
(these are my opinions i am not a licensed broker by trade)
post 1655889223 02-09-2022, 11:40 AM
-
#23
  1. jreacher
  2. Registered User
  1. jreacher
  2. Registered User
  3. Join Date: Sep 2012
  4. Posts: 8,704
  5. Rep Power: 363348
Originally Posted By VegasLifter26
theres jsut weird chit going on that normally doesnt happen, like when I typed in weather it took me to a different location. Or when I am using chrome with adblocker I can still see ads
This makes me think someone setup a proxy or VPN on your router.

Can you use your phone as a hotspot and see if the behavior changes on a different network?
post 1655889333 02-09-2022, 11:42 AM
-
#24
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Yea the other thing I forgot to mention was in the task manager the other day I saw weird processes like GoToMyPC and LogMeIn and windows shell
(these are my opinions i am not a licensed broker by trade)
post 1655889363 02-09-2022, 11:42 AM
-
#25
  1. InVentive44
  2. Snakin down your chimney
  1. InVentive44
  2. Snakin down your chimney
  3. Join Date: Nov 2014
  4. Posts: 12,842
  5. Rep Power: 108456
Get on webcam and masturbate that will scare them away
Superight Crew
AntiVaxx Cew
COVID is a jok Crew
post 1655889373 02-09-2022, 11:42 AM
-
#26
  1. olemo
  2. Registered User
  1. olemo
  2. Registered User
  3. Join Date: Dec 2013
  4. Age: 32
  5. Posts: 3,179
  6. Rep Power: 8054
Originally Posted By VegasLifter26
Yea the other thing I forgot to mention was in the task manager the other day I saw weird processes like GoToMyPC and LogMeIn and windows shell
Yep ur infected. Look my post above (srs)
post 1655889473 02-09-2022, 11:44 AM
-
#27
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By jreacher
This makes me think someone setup a proxy or VPN on your router.

Can you use your phone as a hotspot and see if the behavior changes on a different network?
the thing is my phone is messed up too..im about to post a screenshot from my phone. I get this weird image when i do a google search from my iphone

(these are my opinions i am not a licensed broker by trade)
post 1655889663 02-09-2022, 11:47 AM
-
#28
  1. SuperHercules
  1. SuperHercules
  2. Join Date: Jun 2014
  3. Height: 6'5"
  4. Posts: 32,389
  5. Subscribers: 6
  6. Rep Power: 567288
You should run a loop of an automated voice reading EOD's post history


Hackers will abandon their mission within 48 hours and possibly rope themselves
See Shakebrah's sig
post 1655889703 02-09-2022, 11:48 AM
-
#29
  1. olemo
  2. Registered User
  1. olemo
  2. Registered User
  3. Join Date: Dec 2013
  4. Age: 32
  5. Posts: 3,179
  6. Rep Power: 8054
Originally Posted By flat6pilot
It is possible for some viruses to get into the Bios and would reinfect a clean reinstall of windows.

https://docs.microsoft.com/en-us/ans...ry-resets.html
Originally Posted By VegasLifter26
Now the download isnt starting in chrome. Usually when you download something it auto downloads but it aint working for me....strange
Rootkit took over your DNS. Thats why you're phone is infected too. Run the anti rootkits( all of them), run the tool i send u, Then factory mode your router.

Windows shell is always used by hackers. it run scripts.
post 1655889883 02-09-2022, 11:51 AM
-
#30
  1. VegasLifter26
  2. MAGA
  1. VegasLifter26
  2. MAGA
  3. Join Date: Mar 2017
  4. Posts: 9,040
  5. Rep Power: 27280
Originally Posted By olemo
You have a ROOTKIT it is malware infected code into hardware.

Run multiple anti rootkit software(malware bytes bascily any you can find)

Ive had a rootkit once in my motherboard. Was hacked by russian hackers.

They are hard to get rid of.

Bascily it boots the virus into your pc when the hardware is Run so even if you a do fresh instal you will get re-infected.

edit: download all of those.

https://www.bleepingcomputer.com/dow.../anti-rootkit/

edit: this tool will check your router do this for DNS HACK. (also check what your current DNS is.)

https://www.f-secure.com/en/home/fre...router-checker
It does seem like the hardware was effected because the battery life increased dramatically. My phone and laptop always heat up and have chitty batteries but now they are working 2x better. Also the "fully charged" silver light on my laptop always stays on even if it isnt charging. Im skpetical that shutting down actually does that

the malware bytes rootkit already found 2 infections but cannot be removed because backup file is not available..fml
(these are my opinions i am not a licensed broker by trade)
Quick Navigation Top Misc
Bookmarks
Digg.com
Digg
del.icio.us
del.icio.us
Stumbleupon.com
StumbleUpon
Google.com
Google
Facebook.com
Facebook
Posting Permissions
  1. You may not post new threads
  2. You may not post replies
  3. You may not post attachments
  4. You may not edit your posts