• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Hacked? Again?

VirtualLarry

No Lifer
Not quite sure what is going on here. My last PC, the Windows 10 installation, things started to "get weird", after plugging in my Android phone, which is running Android 7.1.1, which I am pretty sure is hacked. Anyways, it seems like it spreads to PC, too, as the day after I plugged in my phones into my PC, this PC (newer, updated PC, with fresh Windows 10 1903), ALSO started displaying this "Carat Browsing" Yes/No thingy, on the lock/login screen. Very unusual, as that's a browser feature.

Unless, my entire PC installation has been exfiltrated, and my GINA replaced with a remote login via a web browser / RDP combo, to make it LOOK like my PC, only captured on some remote VM server somewhere.

Has anyone seen this screen before? I wasn't able to bring it up with a web search. If anyone knows what malware this is, please let me know. I suspect something along the lines of something serious, that's not detected by Windows Defender or Malwarebytes, like EternalBlue or StuxNet or something very serious. It seems like something is "living" on my LAN as well.

Oh, and I just swapped keyboards, just in case it could have been faulty keyboard hardware, but NO, it came up again, so it's something in my OS.
 

Attachments

  • hacked.png
    hacked.png
    5.9 MB · Views: 26
I disabled a pair of Startup items, in Task Manager in Win10 1903, "Logitech Download Service", and "OneDrive". So far, it hasn't popped up again. So weird that a browser-based thing would pop up over the login dialog. Like every time.
 
Back
Top