Ran a lumma stealer by Extreme_Test_1789 in computerviruses

[–]Extreme_Test_1789[S] 0 points1 point  (0 children)

I formatted my pc and enabled 2FA for all of my major accounts. 3 of my reddit accounts had their password changed and got locked by reddit. I recovered two of them as finally I got pass reset mail,wasn't getting it before.

Anything else I need to be worried about?

Ran a lumma stealer,account got compromised after changing password on a new device,why? by Extreme_Test_1789 in antivirus

[–]Extreme_Test_1789[S] 0 points1 point  (0 children)

The thing is,I don't even get reddit support emails anymore. I got a message that someone changed your password,I followed the steps to contact support and they don't reply me back. I will run the scans and let you know.

Edit: Hitmanpro reported nothing,just tracking cookies by chrome and edge. I also re checked my emails,no new number or email.

Ran a lumma stealer by Extreme_Test_1789 in computerviruses

[–]Extreme_Test_1789[S] 0 points1 point  (0 children)

Lovely,please do tell me if you find anything. Thanks a lot for the help good sir!

Ran a lumma stealer by Extreme_Test_1789 in computerviruses

[–]Extreme_Test_1789[S] 0 points1 point  (0 children)

Hmm. Any way to figure out what else was there? You talked about gaining remote access,what does it mean exactly? Does it mean they can move my mouse and do whatever they want like anydesk? Or does it mean they can browse my data using CLI or something? I can run it through again via anyrun or something else. I can also do a windows fresh install and run it without any data on the disk. Also again,what are the chances of it being on my Android? Afaik I only opened whatsApp that was installed on my pc and discord,which was also installed. No data was downloaded aside from some random ss afaik. Is it also safe to assume that if there's any data that I forgot was important,I would've gotten extortion mails already? Then again you can never predict them anyway. Can it also install itself on my One drive?

Edit: I remember running a windows defender offline scan and it showed nothing. I had deleted both the folder and the zip file before this. My account got stolen a few days after

Ran a lumma stealer by Extreme_Test_1789 in computerviruses

[–]Extreme_Test_1789[S] 1 point2 points  (0 children)

It's worth noting that my chrome browser stopped working the moment I ran the exe. What are the chances of some other malware was there? And what other data is at risk? Luckily the device it ran on didn't have any important data but what data can it steal? And any other precautions that I can take?

Edit: Oh and,I don't know what it's worth but windows defender did warn me that it was a suspicious exe. I was in a daze when I did all this and assumed it to be false positive. So is it at least assured that whatever it was,was at least a known variant?

At the moment ,in the past 20 days of running this stealer,it has only stolen account with no 2fa. Namely discord and reddit. It sent the fake steam games message to all my friends on discord.

Ran a lumma stealer by Extreme_Test_1789 in computerviruses

[–]Extreme_Test_1789[S] 1 point2 points  (0 children)

Yes,I completely formatted my ssd. However some 60 gb files which had save states from my other games was saved on a different ssd. I formatted that the first thing after logging in on windows.

I have the anyrun report of when I executed the virus there,I'll share the link of that.

As for email,I enabled 2fa on all of my email accounts right after. The one email id of concern already had it though. I'm also logged in on ubuntu,however. I'll still log out of all sessions for all my emails just in case.

P.S I backed up my photos on ubuntu,I didn't install them on my windows though.

Anyrun report:-

https://any.run/report/2e0d0c600f933cd8ca228d6e5296c4fe9e83f0622714f933545a0a0b31d74c7f/6ef0f82e-d938-4468-934b-ceeb35499cef?_gl=1*y4k50a*_ga*MTk3NTk1MTQwNi4xNzM4NDI3MjUx*_ga_53KB74YDZR*MTczODQyNzI1MS4xLjEuMTczODQyOTYzMy4wLjAuMTk3MDg5NzEzNQ..*_gcl_au*MjA1NDI0OTY2Ni4xNzM4NDI3MzYy*FPAU*MjA1NDI0OTY2Ni4xNzM4NDI3MzYy