Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

LAS14

(15,270 posts)
Mon Aug 22, 2016, 01:25 PM Aug 2016

Hacking alert

This discussion thread was locked as off-topic by mcar (a host of the 2016 Postmortem forum).

Admins, please let this off-topic post remain, as it’s important that DUers be warned.

My computer got hacked today, and the path to it started on DU, although I don't suspect any bad behavior on the part of DUers. But I thought I should share my experience, lest this happen to someone else.

I posted a question about the whereabouts of Cha and Her Sister, who haven’t been posting since the very end of July. I got several answers and then a DU Mail telling me that Her Sister was present at a different Hillary site, by invitation only, and she gave me a link to it. She also said that another DUer, who apparently is an administrator on that site said that I had previously had difficulty proving I was a human, so she encouraged me to try again. In retrospect that may have been a red flag… dunno.

The DUer has a long history of postings, so I won’t mention her name here. I also won’t mention the name of the web site unless she gives permission. I won’t try to go back there unless I get a screen shot of posts from her and Her Sister on that site.

Anyway, I successfully created an account via the familiar method of getting an authorization message in e-mail. I tried to actually log on, and got to the point of proving I was a human. It was clear that the login process was handled by a separate company whose name I can’t remember, and I’m afraid to go back and look. I moved a graphic around to prove I was human and then got another “pop up” (I don’t think it was a real popup, just a small window looking thing) that looked just like the first, but this wanted me to get involved in a sales pitch for something completely different. I’m not sure what I did, but then I got a 3rd “popup” that looked just like the first two which asked me to call an 800 number.

Here’s where I get embarrassed. I’m really very good about not clicking on suspicious things. But I called this number. Last week I’d had the experience of letting a real Microsoft technician take control of my computer to help with a failure of two level verification. That was not spurious. They fixed the problem, etc., etc. So I can only attribute my idiocy to a lingering glow.

Bottom line, this technician took control of my computer. He “showed me” how my network and e-mails were hacked. I didn’t suspect criminality until he said I couldn’t call back to engage their fixit services. Fortunately I didn’t go that far. They hung up when I asked for a phone number. I did take a screen shot of the instructions he left in notepad, but I can’t use my computer to put it in dropbox. Can’t use it on the internet til it’s cleaned, according to my techie go-to guy.

I don’t know where the intrusion started, whether the Clinton web site’s login company is bad, or whether the Clinton web site itself is bad. But be forwarned.

Thanks,
LAS

15 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Hacking alert (Original Post) LAS14 Aug 2016 OP
Did you go to JackSquatFanaticals ? stonecutter357 Aug 2016 #1
No, that wasn't it. But thanks for the alert! LAS14 Aug 2016 #2
Wow! That's pretty scary! NurseJackie Aug 2016 #5
Never call an 800 number you haven't verified and NEVER let a tech take control of your computer Maeve Aug 2016 #3
My guess is that the pop up Control-Z Aug 2016 #4
Yes, please do. But how do you know what the site... LAS14 Aug 2016 #7
I'll send you a pm. n/t Control-Z Aug 2016 #9
k Go Vols Aug 2016 #6
You can go to any website you wish. Just don't... LAS14 Aug 2016 #8
Post removed Post removed Aug 2016 #10
Message auto-removed Name removed Aug 2016 #11
The owner of the website in question... LAS14 Aug 2016 #12
You should delete this thread. KMOD Aug 2016 #13
Message auto-removed Name removed Aug 2016 #14
This message was self-deleted by its author George II Aug 2016 #15

stonecutter357

(12,853 posts)
1. Did you go to JackSquatFanaticals ?
Mon Aug 22, 2016, 01:29 PM
Aug 2016

My Norton says the jpr has a keylogger.

LAS14

(15,270 posts)
2. No, that wasn't it. But thanks for the alert!
Mon Aug 22, 2016, 01:42 PM
Aug 2016

NurseJackie

(42,862 posts)
5. Wow! That's pretty scary!
Mon Aug 22, 2016, 01:51 PM
Aug 2016

Another reason to avoid.

Maeve

(43,284 posts)
3. Never call an 800 number you haven't verified and NEVER let a tech take control of your computer
Mon Aug 22, 2016, 01:44 PM
Aug 2016

UNLESS--you called that tech at a verified number!!!!! (LAS, you learned this the hard way; this warning is for others)

My Mom gets "you've been hacked" screens and she doesn't go anywhere but Facebook. She now knows to turn off the computer and call us--Hubby can walk her thru or take control and clear her cache or whatever she needs to do. But Hubby has had clients that have nearly ruined their businesses by following "call this number" instructions.
Glad you have a go-to techie to help you out!

Control-Z

(15,686 posts)
4. My guess is that the pop up
Mon Aug 22, 2016, 01:51 PM
Aug 2016

is outside malware appearing at the other site against that site owner's wishes or knowledge.

I know that site and can't imagine the owner would ever knowingly try to hurt anyone, especially a DUer.

I will contact the owner about your experience there, if you'd like.

LAS14

(15,270 posts)
7. Yes, please do. But how do you know what the site...
Mon Aug 22, 2016, 01:54 PM
Aug 2016

.. is? Just curious.

Control-Z

(15,686 posts)
9. I'll send you a pm. n/t
Mon Aug 22, 2016, 01:56 PM
Aug 2016

Go Vols

(5,902 posts)
6. k
Mon Aug 22, 2016, 01:54 PM
Aug 2016

so don't go to a website you wont name.

I feel safer already.

LAS14

(15,270 posts)
8. You can go to any website you wish. Just don't...
Mon Aug 22, 2016, 01:55 PM
Aug 2016

... call the 800 number.

Response to LAS14 (Original post)

Response to LAS14 (Original post)

LAS14

(15,270 posts)
12. The owner of the website in question...
Mon Aug 22, 2016, 05:47 PM
Aug 2016

... contacted me via DU mail and pointed out some lack of clarity in my post. Hope this helps. Wherever the spurious message came from, it looked exactly like the "validate that you are a human" messages that I had seen on the website. So it was tailored to the website, not just a popup presented by malicious software on my computer.

An identical post was closed in the Hillary Group because I wouldn't reveal the name of the website and couldn't remember the name of the login management company. I didn't reveal the name because I don't want to direct people away from a website which I wasn't sure was at fault. I am now sure it isn't at fault, but it does need to research what's going on.

 

KMOD

(7,906 posts)
13. You should delete this thread.
Mon Aug 22, 2016, 05:55 PM
Aug 2016

Not only does it have nothing to do with the 2016 election, it has nothing to do with this site and it is attracting asshole spammers.

Response to LAS14 (Original post)

Response to LAS14 (Original post)

Latest Discussions»Retired Forums»2016 Postmortem»Hacking alert