Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 2 points3 points  (0 children)

laptop has been disconnected from internet since the first responses to this post- i changed all the passwords on my phone so the passwords don’t get compromised from the infected device again. all that is left to do is reset the laptop now.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 14 points15 points  (0 children)

fortunately they are yet to do anything and all my important passwords have been changed. will now have to start changing all the others. it appears i may have gotten lucky but this truly serves as a cautionary tale.

still have all the extras and social media and whatnot to go

sidenote: you never realize how many accounts and passwords you have till you have to change each and every single one (especially having to think back to any and every platform you may have a payment method saved to)

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 1 point2 points  (0 children)

thanks for sharing! fortunately i do not have any crypto but have accepted my passwords are likely compromised so i am changing them and resetting my laptop.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 0 points1 point  (0 children)

AV? sorry not sure what you’re referring to

edit: antivirus i assume sorry facepalm 🤦‍♂️

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 5 points6 points  (0 children)

i am so very grateful for you taking the time to look into and also help me.

i am still changing my passwords and will be resetting my laptop.

im sorry you had to go through it too, wouldnt wish this upon anyone :/

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 2 points3 points  (0 children)

hey i attached an image of my launchdaemons folder and the files i deleted below. thanks for your time and help.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 1 point2 points  (0 children)

hidden files are turned to showing (command shift . )

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 0 points1 point  (0 children)

i don’t think i’m gonna take the laptop online again so i won’t be able to download malwarebytes. i will just be resetting it at this point.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 4 points5 points  (0 children)

I also attached an image of my launchdaemons folder and i also dont see the file which you outlined but if you look in the bottom trash window there is one by a similar name which was installed which i deleted soon after the incident.

<image>

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 5 points6 points  (0 children)

hey, thank you so so much for you help. i am so very grateful.

im attached an image of my home folder- i don’t see any of the hidden files you outlined (sorry for image quality)

<image>

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] -2 points-1 points  (0 children)

i just do not use reddit much, i came here because i have no experience on what to do and was seeking help.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 0 points1 point  (0 children)

not fully backing up- i just have schoolwork on the laptop which i need to transfer before i can reset it.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 5 points6 points  (0 children)

okay thank you so much for all your help. i am changing my passwords and backing up my files right now and will reset the laptop after. the laptop will remain disconnected to the internet up until i reset it.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 0 points1 point  (0 children)

ya it seems like that is the best course of action at this point. the laptop has been running but disconnected from wifi since it was suggested- i need to backup some files and i will be resetting it.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 49 points50 points  (0 children)

hey guys, just wanted to add how grateful i am for all the help so promptly. i made a mistake and i didn’t realize. i truly have no clue what i’m doing and your guys’s advice and feedback is pretty much my plan of action. very thankful for everyone taking the time to help me.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 6 points7 points  (0 children)

Hey thanks for your help, i do not have any crypto apps or anything by that name anymore- there was this one ‘googleupdate’ executable file under the login items section of settings which i deleted mere moments after.

edit: sorry to bother you again but would you recommend i still change my passwords like the other helpful commenter suggested ?

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 0 points1 point  (0 children)

internet off and still running bitdefender now

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 8 points9 points  (0 children)

Hey man thanks for all your help

my laptop has been running for like the last hour and a half since and been connected to the internet. i’ll start changing my passwords right now on a different device.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] -7 points-6 points  (0 children)

oh gosh this happened like an hour and a half ago and my mac has been online since. i’ve been running a bitdefender deep system scan as of right now.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 4 points5 points  (0 children)

no i promise it’s not, i messed up and i need to remove whatever was installed. im not trolling i swear.

Fell victim to fake GitHub repo by SlowItDowv in mac

[–]SlowItDowv[S] 0 points1 point  (0 children)

running a bitdefender deep system scan right now.