[SOLVED] HELP! Remote Hacker

BlueGirl

Prominent
Oct 1, 2019
9
0
510
Hello All.

I know that I sound like a "dumb girl"....but my IMAC is still being remotely hacked Josh.



Does anyone know what steps I could take to have my IMAC fixed to where it can't be accessed remotely permanently?
Not just in the "install".....but the actual IMAC itself remote-free.



I have filmed many of the incidents I experience (in a nutshell, my hacker sends malicious code to stop me from doing certain things--forcing me to constantly

reinstall my system--they make changes to documents, photos and videos on my computer that I MUST work on).


They are extremely high level.


For the last 18 months, I have been reaching out to Apple (sent them several video Proof of incidents)....but it's clear to me that Apple has 2 positions ...

(1) Fear of being liable & thus sued (2) An arrogance about the invincibility of their product.


Apple Techs keep "diagnostic testing" my IMAC and then telling me they didn't find anything ...so....reinstall. But lately, even my reinstall procedures are now being

interfered with and it's clear the Hacker will LET ME install Big Sur....but not Mojave or Catalina. When I do install any of the 3....I am not able to get my updates.


I stopped using Wifi and only use Ethernet. I don't do any type of Messenger or anything that requires "remote" computer connections (that I know of).



What I have done finally ....is requested (yesterday) that APPLE make my IMAC unable to be accessed remotely permanently.


At first I was told this was possible and given an appointment and a place to take the IMAC to have this done.


An hour later....I was called back and told that it may not be possible to make my machine Remote-Free and that all they would be doing is a "Diagnostic Test" (I've had about 70 of those in 18 months).


I am at my wits end.


What would YOU do in my position?
 
Solution
You should also take a look here for additional general suggestions to secure your home network.

JUST A HEADS UP:

If anyone sees an app listed in their FULL DISK ACCESS named "sshd-keygen-wrapper"
...you should UN-tick it, but don't delete it.....because if you delete it that automatically
activates it with Full Disk Access.

Apple doesn't tell you that. I had to learn it from a technician.

And that's NOT how I'm being accessed. But that was the first thing they investigated,
because the App specifically allows Remote Computers (or you) to make connections to
your system.
 
why are you still online? you should stay off the phone and internet.

If you're a MOD.....I sincerely apologize.

But I don't have the option of never going online again.

What I NEED....is to be able to go online without Remote Connections being able
to access my network for the brief times that I am online.

Today I'm online A LOT only because I'm reaching out to several experts and people
like you for advice on HOW TO completely cut off Remote Access to my computer.

My files & videos & photos can still be destroyed if I'm not online. My computer was
STILL being accessed and APPLE TECH agreed with me on that.
 
Change your Apple ID password and make it extremely strong and secure. Do it on a secure device like a phone and enable two factor authentication.

Then pull the plug for the Internet out of your computer and format and reinstall the entire system then go online and log on with your new secure Apple ID
 
There’s no way they can use Bluetooth to get to your computer unless you have a device like your phone that has been infected you should factory reset your phone as well before you do anything and then change your Apple ID. When you factory reset your phone make sure to wipe all data

Let your iPhone choose a super strong password and use it you will be able to recover it later for your PC that also log on and remember two factor authentication
 
Change your Apple ID password and make it extremely strong and secure. Do it on a secure device like a phone and enable two factor authentication.

Then pull the plug for the Internet out of your computer and format and reinstall the entire system then go online and log on with your new secure Apple ID

Mandark,

THANK YOU for actually answering my question IN DETAIL.

I will get on this immediately.
 
Mandark,

THANK YOU for actually answering my question IN DETAIL.

I will get on this immediately.
I would factory reset the phone and wipe all the data out before I reset my Apple ID. And then nuke the computer before plugging it into the Internet and logging back in
 
  • Like
Reactions: BlueGirl
If he was accessing it through her phone it would. Just trying to cover the bases because I think this person might have access to their actual ID and their online stuff no matter what the computer is on and off
 
  • Like
Reactions: BlueGirl
You should also take a look here for additional general suggestions to secure your home network.

 
Solution
No that part is because he probably has access to her online account. So securing the phone is the first step and then change the ID to something very secure from the phone while using two factor authentication so there’s no way they can spoof it

Then I would nuke the entire contents of that PC because it probably has all kinds of stuff crawling around in it like keyloggers

I don’t believe the PC can be accessed while it’s off that doesn’t make any sense whatsoever
 
There’s no way they can use Bluetooth to get to your computer unless you have a device like your phone that has been infected you should factory reset your phone as well before you do anything and then change your Apple ID. When you factory reset your phone make sure to wipe all data

Let your iPhone choose a super strong password and use it you will be able to recover it later for your PC that also log on and remember two factor authentication


I have one more question.

I use an app called "Little Snitch" whenever I have to be online.

What that app has shown me is that whenever one these 2 things run:

configd

nbagent

My internet connection suddenly stops COMPLETELY.

Why does that happen?
 
You should also take a look here for additional general suggestions to secure your home network.



Thank you SO MUCH for this!!!
OMG

THANK YOU!
 
I have one more question.

I use an app called "Little Snitch" whenever I have to be online.

What that app has shown me is that whenever one these 2 things run:

configd

nbagent

My internet connection suddenly stops COMPLETELY.

Why does that happen?
A better question is what is executing those two processes? You need to contact your Internet service provider and make sure they don’t have problems on their end
 
  • Like
Reactions: BlueGirl
Also see this to Make it so you can turn off Wi-Fi and Bluetooth and people cannot turn it back on. Basically you’re going to have an administrator account that you never use unless you’re setting up software and you were going to create a lower level user account that you use on a daily basis that doesn’t have rights to those systems. Read this link

https://www.ifixit.com/Answers/View/163760/How+to+remove+WiFi-Bluetooth+safely

Do that after you have re-formatted and reinstalled all your software and before connecting to the Internet. don’t even have it plugged into the Internet before you do this

Most likely your problem stems from you using an administrator account when you should be a user
 
  • Like
Reactions: BlueGirl