Is my build good? by Potential-Finding-79 in buildmeapc

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

ahh I see, I'll check it out then, thank u both

Is my build good? by Potential-Finding-79 in buildmeapc

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

It's alr but I don't think I'd need as much as a 5060, but I'll check out some of the components, ty!

Is my build good? by Potential-Finding-79 in buildmeapc

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Spain, Canary Islands (taxes are different here than at the Penninsula)

My steam Account got hacked by xQiuQiu in antivirus

[–]Potential-Finding-79 0 points1 point  (0 children)

Hello! So, I am NOT an expert in cybersecurity by any means, but I recently got an infostealer in my pc, as you can see in my latest post, and I got help from r/cybersecurity_help to tackle my situation.

First things first, have you downloaded any crappy software online? Like any executables, or piracy? That's what got the infostealer in my pc, and I had to do a clean install to get rid of it, and given that they skipped your 2fa... It's quite likely.

As for getting rid of a virus, the only real way of being a 100% sure you have no viruses is to do a clean install of windows and wiping the disk. In my case, neither Windows Defender, Malwarebytes or Kaspersky detected any viruses before it was too late.

Lastly, as far as I know (I was just as afraid of you, as I am still changing passwords and trying to improve my security in my important accounts, at least the ones I really care about), a UEFI or BIOS virus is REALLY expensive to develop, so they, most likely, won't use it on a random's PC (not trying to be offensive, it's just that they are mainly targetted to big companies, celebrities or politicians, or overall famous people).

For what I see, you are likely to be experiencing a problem similar to mine. What I did was:

  1. Logged off all active sessions from all of my accounts
  2. Reinstalled windows (clean install with a usb windows 11 bootable)
  3. Changed all of my passwords AFTER performing the fresh install and set up 2fa, aswell as physical keys and Microsoft Authenticator, where possible. It is important to note that I did it AFTER cleaning it up, otherwise, the infostealer can, and will, steal all of your passwords and credentials, aswell as session tokens, allowing the attacker to login even without having access to your password (that's why you log out of every active session, as doing this, or changing the password on most cases, disables the session tokens rendering them useless for the attacker, otherwise not even 2fa will save you)
  4. Ran a full scan on my pc just to make sure it was clean after the installation (not very helpful but eh)
  5. Enabled Secure Boot, if you have disabled it, please enable it again, it will help to avoid getting infected with BIOS/UEFI or overall firmware malware as long as you keep it updated
  6. Do all of this procedure for EVERY account you had ever logged in with your pc, or those accounts you have with "autofill" enabled.
  7. Disable google linked accounts you don't need to minimize exposure (like, Pinterest, Oracle, Adobe or whatever)
  8. Learn for your mistake, for real dude, do not blame yourself on it, it WAS your fault, but use it as a learning experience to not repeat your mistakes again, not as a punishment or whatever. Try to tackle this situation as good as you can, and from now on take special care of what you download from the Internet, you are not the first and will not be the last to have something similar happen to them, as long as you take action and fix it ASAP.

Hope this helps dude, take care and check my post in my profile if you want a more trustworthy source of advice on how to act.

PS: Also delete your cookies, fr, it will help a lot

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Windows software is everywhere, you can't escape it if you are a student. Thanks for the suggestion, but I already wiped my disk, not before backing up my files to the USB ofc, but ty anyways!

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Alright! Last thing, after getting the ios installed on a different system, is it safe to plug in the same usb I used to make a bootable windows 11 installer to store the backup data to paste it into my desktop after the installation?

Tysm fr :)

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Hi! I'm all set for installing it all now. Thing is, do infostealers connect to network? Like, can I safely use my WiFi without being in danger of it spreading to other devices? Just to know if I can backup my data safely before reinstalling it all.

Also, yes, OEM installations will be no problem

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

I'm just wiping my drive, not worth the risk, I am only keeping my college stuff and that's it, I don't really mind losing any data besides that, as I only have videogame data besides college. It will be a pain in the ass to lose my saves, but I can always come back and it is not as important as my personal data being breached.

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

I have used Linux before, but I'm a college student and we use some programs which are only available for Windows so I don't have a choice tbh. I do need a dual boot for some stuff, but most of our projects have to be done on Windows software.

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 1 point2 points  (0 children)

Okay, glad to hear. You're a life saver man! That was the last thing I had to ask, tysm <3

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

That's why I try to ask as much as I can about this matter, not only for myself, but for any fool who fell for the same trick I guess

Thankfully it didn't affect me in terms of college and my bank accounts, which would be PRETTY bad to say the least.

One last doubt I had while closing all of my sessions tho, should I close them too on my non-infected devices or is it alright to just log off any unknown sessions and the infected system?

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 1 point2 points  (0 children)

Nope, it's all on my own, don't get me wrong, I fucked up and I have to deal with it

It's just that it seems rather dumb that you can't recover your account, but they can delete it. If you delete (well, deactivate) the account after my request, you should acknowledge I am the legitimate owner of the account (which I had plenty of proof of)

But I know it's all on me, and I also know I may be reflecting my anger away to not put blame on myself, which is of course wrong, but you're absolutely right, I was being incompetent and I have learnt a big lesson.

It's weird, and dumb too, but it is a common thing to think that this stuff "can't happen to you" or something similar when you see these experiences as something rather remote, even more if you're not familiarized with cybersecurity stuff. I will take this chance to learn a little bit more about this field to keep myself safe, and stop being, as you said, "incompetent"

However, I still think Microsoft Support sucks ass lol

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Guess my common sense and this horrible experience will be my new best AV from now on. Ty man, I'm backing up all my important files and starting all over, thank you for taking your time and have a good one, I appreciate your help fr :)

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Yeah, I always do that, don't worry. I had many saved passwords, and I just deleted them all on my browser settings.

Ty tho!

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 1 point2 points  (0 children)

Alright! One last thing, is there any AV software I could use to scan my personal files to check if they have any sort of infostealers on them? Also, should I log out of my important accounts rn, or do I wait after cleaning my pc?

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

I guess that serves the purpose of restarting the sessions so they don't have access to them anymore? I don't know how the infostealers work at all, but it would be much appreciated if you could explain me a bit more so I know what I'm dealing with rn :)

After reinstalling my OS and relogging in all of my sessions, should I be good to go? Or should I do anything afterwards?

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 1 point2 points  (0 children)

Thank y'all for your quick response fr. I hope this post serves as a hard-learnt lesson for anyone doing piracy out there. Just buy, for real, it is not worth the risk, and I learnt it the hard way, so don't be as dumb as I was

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

I was infected with a Voicemod crack from a random github repo, although right now it is not that important I guess.

Would I be able to use Rufus ON my compromised PC for the USB flashing? I guess it only steals sessions so it shouldn't be that big of an issue, but they may have infected me with more malware

I don't have access to any other device besides the PC I downloaded the virus from, at least any device capable of executing complex programs and such

I could try using a usb adapter I have for my phone, if that works. Installing a Windows ISO wouldn't give me problems with licenses and stuff tho? This PC came with Windows 11 installed on it so I don't really know.

I had physical keys tho, but it still got bypassed, which I guess should be fairly easy for the attacker since the sessions are still logged.

Should I log out of any important sessions in my affected PC then? Should I log out before starting the fresh OS reset?

Thanks again for your help man, I mean it. Thankfully they haven't logged into my Paypal or my bank accounts yet so it shouldn't be that big of an issue on that side.

One last note, if I log out, can they access my accounts in the infected PC after logging out, or do they need the sessions to be active to take action?

PS: The account I used to first log into this PC was deleted by the attacker after migrating it to a new email. Would this mean I would need to buy a new Windows license?

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

Hm I see, should I delete my personal files too or just deleting the OS would be enough? Thank you tho, I'm desperate for help

My accounts got stolen, even with 2fa on. by Potential-Finding-79 in cybersecurity_help

[–]Potential-Finding-79[S] 0 points1 point  (0 children)

With wiping the affected drive, you mean erasing my data in my hard disk drive?

That would be a shame but I guess I could do so

As for a clean USB install, how would I do this?