![]() |
|
|
|
Parrothead member
Join Date: Jul 2003
Location: Monmouth county, NJ USA
Posts: 13,818
|
Yeah, seeing the cursor move and click on something would freak me the hell out.
.
__________________
Vinny Red '86 944, 05 Ford Super Duty Dually '02 Ram 3500 Diesel 4x4 Dually, '07Jeep Wrangler '62 Mercury Meteor '90 Harley 1200 XL "Live your Life in such a way that the Westboro Baptist Church will want to picket your funeral." |
||
![]() |
|
Counterclockwise?
|
Quote:
It's fun to grab the mouse and fight him on what he is trying to do. He doesn't find it funny. lol
__________________
Rod 1986 Carrera 2001 996TT A bunch of stuff with spark plugs |
||
![]() |
|
You do not have permissi
Join Date: Aug 2001
Location: midwest
Posts: 39,808
|
It may be in windows settings or deeper.
Turn OFF remote access: https://www.lifewire.com/disable-windows-remote-desktop-153337 There is also regedit line to change it false: https://learn.microsoft.com/en-us/answers/questions/903132/turn-off-remote-connection-in-settings-via-registr Those probably won't fix the virus/hack, but at least they won't be able to take control.
__________________
Meanwhile other things are still happening. |
||
![]() |
|
Registered
Join Date: Nov 2002
Location: NWNJ
Posts: 6,202
|
Quote:
__________________
big blue tricycle stare down the darkness and watch it fade |
||
![]() |
|
You do not have permissi
Join Date: Aug 2001
Location: midwest
Posts: 39,808
|
You may need to log into regedit as admin first, or it won't work.
Do this offline ie disconnect the wire.
__________________
Meanwhile other things are still happening. |
||
![]() |
|
Registered
Join Date: Nov 2002
Location: NWNJ
Posts: 6,202
|
Quote:
![]()
__________________
big blue tricycle stare down the darkness and watch it fade |
||
![]() |
|
![]() |
Registered
Join Date: Jul 2001
Location: Lawrenceville GA 30045
Posts: 7,376
|
Flatbutt1 - we had a hacker take over our home PC back around April of 2021. Wife walked in the room to check email and the mouse cursor was moving within the browser and she screamed bloody murder.
I disconnected the machine from our network. First thing I did was go to Fidelity and change both mine and the wife's 401k account passwords. I won't go into details - I could tell from browser history they weren't too sophisticated - but the hacker used my Chase credit card points to purchase 4 $200 HomeDepot gift cards. I got to my email first -and discovered them before they were able to access the email. Called and cancelled credit cards, bank accounts - you name it. We were up until 11:30PM Sunday night calling and cancelling everything. Next day I ran all sorts of scans and nothing was found. I took it to a repair shop - and they also found nothing. I went and bought a new machine 24 hours later. I kept the "infected" machine off the network and transferred files by thumbdrive running scan tools each time. I was able to rebuild our computer from scratch. I destroyed the infected HD when I finished.
__________________
Mark '83 SC Targa - since 5/5/2001 '06 911 S Aerokit - from 5/2/2016 to 11/14/2018 '11 911 S w/PDK - from 7/2/2021 to ??? |
||
![]() |
|
Registered
Join Date: Nov 2002
Location: NWNJ
Posts: 6,202
|
I brought it to the Geeks at BestBuy today and they found a remote control program that I somehow downloaded. I can't figure out where I picked it up.
Fortunately my banking and credit card online stuff uses two point verification but I changed all my passwords anyway. Fkers!
__________________
big blue tricycle stare down the darkness and watch it fade |
||
![]() |
|
Junior Member
Join Date: Dec 2004
Posts: 7,216
|
Have you tried a system restore? If you have an idea when it was infected chose a restore date before the infection date. I have used it a few times, works like a charm and you lose no data. Should be able to get into it safemode on startup.
__________________
Remember, it's not a lie if you believe it. Last edited by Black968; 01-24-2024 at 02:50 PM.. |
||
![]() |
|
Registered
Join Date: Jul 2001
Location: Lawrenceville GA 30045
Posts: 7,376
|
Change your email password ASAP! You don't want to take the chance that they have access to it.
__________________
Mark '83 SC Targa - since 5/5/2001 '06 911 S Aerokit - from 5/2/2016 to 11/14/2018 '11 911 S w/PDK - from 7/2/2021 to ??? |
||
![]() |
|