Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Generic User Avatar

Interesting Virus issue


  • Please log in to reply
9 replies to this topic

#1 faheyp

faheyp

  •  Avatar image
  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:47 PM

Posted 21 June 2024 - 08:32 PM

Hi Everybody. My name is Phil and I am a first time poster. I been reading through the forums and have not found a thread that relates to this. Hopefully I can find some ideas here. I own a condo and would like to work from home. But I have neighbor upstairs Right above me who likes to hack  into my computer. Basically all they do is remote viewing. They have gotten into every single detail of my life. Looked at my bank accounts, health records and various work stuff. It seems they are doing this for sport. It has been mostly benign But they did disclose aspects of my health records to others in the building. I know that all this is happening because I can hear them talk about it. The wall and floors are pretty thin.

    well here is what I have done to try to eliminate the virus. Which none of the malware and virus applications can detect. I used Norton 360, Malwarebytes, Spybot. Well I turned off my WIFI and only connect my devices to 2.4 guest WIFI. I use the computer on a hardwire Lan connection only. But from what I hear they still can see my screen.  So I wiped my drive with Killdisk DOD method 3 passes. I also Flashed my BIOS with the latest update. After all that they still can see my screen. I play poker online and I can hear them talk about the hands and what a terrible poker player I am. ( I can be very good when I concentrate)

 so I then got a new router and put it behind the Verizon 5G router. Turned off the WIFI on the Verizon router and used the Guest network on the new router. One note: all of the previous mentioned work seems to get them out for awhile. Then it seems to pop back up for them. I don't think they even know how it's still working at one time I had three routers in series. wiped the disk and  BIOS. Eventually they got back in.

 So I called Verizon told them about the situation. They sent me a new router. I took all the other routers out of the picture. Hooked up the New router being careful not to connect it to the computer Until I wiped the drive again as well as the BIOS. I hardwired the computer to the router. turned off all WFIF except for the Guest. I have been careful not to connect any USB drives to the computer. It seemed to work for a day. but they are back in.

Previously I wiped the drive and installed LINUX UBUNTU and QUBES Separately. They still could see my computer. Oh yeah I went to the police and they are asking for proof. I just hear them talk about everything I do on my computer. Any help or suggestions would be greatly appreciated I am attaching my system info. I am at this point considering going off the grid and selling my computer and going without internet.


Edited by hamluis, 22 June 2024 - 04:31 AM.
Moved from W10 to Gen Sec - Hamluis.


BC AdBot (Login to Remove)

 


#2 faheyp

faheyp
  • Topic Starter

  •  Avatar image
  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:47 PM

Posted 21 June 2024 - 08:35 PM

here is my system info.

OS Name Microsoft Windows 10 Pro
Version 10.0.19045 Build 19045
Other OS Description Not Available
OS Manufacturer Microsoft Corporation
System Name DESKTOP-01T38M9
System Manufacturer MicroElectronics
System Model G464
System Type x64-based PC
System SKU 021493
Processor AMD Ryzen 9 3900X 12-Core Processor, 3801 Mhz, 12 Core(s), 24 Logical Processor(s)
BIOS Version/Date American Megatrends Inc. 5013, 3/22/2024
SMBIOS Version 3.3
Embedded Controller Version 255.255
BIOS Mode Legacy
BaseBoard Manufacturer ASUSTeK COMPUTER INC.
BaseBoard Product TUF GAMING X570-PLUS (WI-FI)
BaseBoard Version Rev X.0x
Platform Role Desktop
Secure Boot State Unsupported
PCR7 Configuration Binding Not Possible
Windows Directory C:\Windows
System Directory C:\Windows\system32
Boot Device \Device\HarddiskVolume1
Locale United States
Hardware Abstraction Layer Version = "10.0.19041.3636"
User Name DESKTOP-01T38M9\Philip
Time Zone Central Daylight Time
Installed Physical Memory (RAM) 32.0 GB
Total Physical Memory 31.9 GB
Available Physical Memory 26.3 GB
Total Virtual Memory 36.9 GB
Available Virtual Memory 25.9 GB
Page File Space 5.00 GB
Page File C:\pagefile.sys
Kernel DMA Protection Off
Virtualization-based security Not enabled
Device Encryption Support Reasons for failed automatic device encryption: PCR7 binding is not supported, Hardware Security Test Interface failed and device is not Modern Standby, Un-allowed DMA capable bus/device(s) detected, TPM is not usable
Hyper-V - VM Monitor Mode Extensions Yes
Hyper-V - Second Level Address Translation Extensions Yes
Hyper-V - Virtualization Enabled in Firmware No
Hyper-V - Data Execution Protection Yes


#3 buddy215

buddy215

  •  Avatar image
  • Moderator
  • 20,242 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:11:47 PM

Posted 21 June 2024 - 09:02 PM

I seriously doubt you can hear your neighbors clearly discussing your playing poker online.

Like the police...I would question your thinking that is happening.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
If we are to have another contest in the near future of our national existence, I predict that the dividing line will not be Mason and Dixon’s, but between patriotism and intelligence on the one side, and superstition, ambition, and ignorance on the other. Ulysses S. Grant...Republican president who correctly predicted the cause of Trump's attempted coup.

 

 


#4 faheyp

faheyp
  • Topic Starter

  •  Avatar image
  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:47 PM

Posted 21 June 2024 - 09:05 PM

Thanks for your reply. But me and my upstairs neighbor know I can hear them. Been going on for 6 years now. I trust my hearing.

Oh and pardon my tinfoil hat


Edited by faheyp, 21 June 2024 - 09:18 PM.


#5 Secret-Squirrel

Secret-Squirrel

  •  Avatar image
  • Members
  • 378 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:United Kingdom
  • Local time:05:47 AM

Posted 22 June 2024 - 04:05 AM

But I have neighbor upstairs Right above me........................

I'll take your word for it that you're of sound mind, so have you checked to see if there's a spy-hole in the ceiling above your computer? Also, is it possible that while you were out, he installed a covert camera somewhere in your apartment so that he can see your screen?

 

Whichever it is, move your computer somewhere different, ideally another room, and see if the snooping stops.

 

With all the other information you've provided, I don't believe for one second that there's any malware or screen-monitoring software on your computer.
 


Edited by Secret-Squirrel, 22 June 2024 - 04:09 AM.


#6 faheyp

faheyp
  • Topic Starter

  •  Avatar image
  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:11:47 PM

Posted 22 June 2024 - 05:21 AM

Thanks. Yes I have tried moving it to a different location. No change. That thought crossed my mind about a camera. But the fact that wiping the drive and BIOS gets them out for awhile leads me to believe it's a Virus.



#7 ranchhand_

ranchhand_

  •  Avatar image
  • Members
  • 5,312 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midwest
  • Local time:10:47 PM

Posted 22 June 2024 - 09:22 AM

Ok, it's time to stop trying to figure this out for yourself. This forum has a top-quality help section the aids folks who have virus infections.

Go here, carefully read the posting instructions and follow them. Then wait for someone to contact you, remember nobody is getting paid and this is all volunteer work. These people go through heavy training and are qualified. If there really is a virus on your machine, they will find it.


If there are no responses to my post for 3 days I remove it from my answer list. If you wish to continue the thread after 3 days please PM me.


#8 midimusicman79

midimusicman79

    Sec & Web Browser Enthusiast


  •  Avatar image
  • BC Advisor
  • 5,070 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Norway
  • Local time:06:47 AM

Posted 22 June 2024 - 11:27 AM

And if you would like to do so, please follow the instructions in the Malware Removal and Log Section Preparation Guide.

 

Good luck! :)


Microsoft Windows 10 Professional 64-bit V. 22H2 (19045) Retail Desktop PC, EAMH Paid/EEK, MB 4 Prem., and Unchecky, MDFW, FF with uBO/AG, Grammarly Free, MBBG, and Acronis CPHOE (DI), RuckZuck, PatchMyPC, UpdateHub, WingetUI, UCheck, and Winget. I have 29 Years of PC Experience.

#9 Dominique1

Dominique1

    Bleepin Funny


  •  Avatar image
  • Members
  • 1,027 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:47 PM

Posted 22 June 2024 - 04:19 PM

So, you can hear them talking about you?  Record them and what is happening on your screen at the same time, then go to police.



#10 Secret-Squirrel

Secret-Squirrel

  •  Avatar image
  • Members
  • 378 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:United Kingdom
  • Local time:05:47 AM

Posted 23 June 2024 - 02:06 AM

But the fact that wiping the drive and BIOS gets them out for awhile leads me to believe it's a Virus.

Because you're wiping the drive with KillDisk, wiping the BIOS, and installing different operating systems, the only possibility is that they're entering your apartment while you're out, accessing your computer and installing the Windows or Linux versions of screen-monitoring software. That seems highly unlikely.

 

 

There are covert screen-monitoring devices that use WiFi to send what's happening on your screen to a remote viewer. Check the back of your computer for unknown devices - especially ones that sit between the computer's video output and the monitor cable.






1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users