hackers

Hi, When I opened Google to search it said that I have a hacker in safari that can get my pass words and other info. What can I do about this? I have been using google for my gmail and google chrome for my default browser with the 2-sep verification security. I also use Safari everyday... Ive had allot of problems with chrome... I only use it for my email- gmail. I do not like the Icon Mail on macbook pro its confusing to me that is the only reason I ended up with google for my gmail account... with that said I don't know much about my macbook pro and still have allot to learn.... should I get rid out google chrome all together and start making Safari my default browser and use the macbook pro's mail? get rid of goole & chrome? Any help would be appreciated I get very nervous when I get a message saying I'm being hacked>>> 😮 I search with safari every day already but I do use chrome allot to for things like pdf files where they say you have to have adobe, or AdmitOne tells you to use chrome because the server is better for the connection from my mac to my tv? things I don't understand! And again with adobe that I have already deleted so many times keeps coming back??? I really need some help here😕. I have all this cool app's on my mac that I still don't know how to use!!!??? But right now I need to make this Hacker go away and keep my mac safe. all I have running in my have is my mac, my tv that has a roku box and my modem.. hope someone can help me.... waiting for reply ...

Thanks community

feather6868

MacBook Pro (15-inch Mid 2012), OS X Mavericks (10.9.5)

Posted on Jul 7, 2016 9:57 AM

Reply
21 replies

Jul 7, 2016 10:03 AM in response to feather6868

send a screen shot.

I smell bologna, and not the working mans T-bone type, it sounds like the full of type.

It is highly likely you were NOT hacked, hacking a mac comes with some inherent difficulty. From what you mention it sounds like adware or a scam page or something else.


see this document by forum contributor John Gault regarding adware

Phony "tech support" / "ransomware" popups and web pages


you may also send an Etrecheck report in this thread for further analysis of your system.

www.etrecheck.com

Jul 7, 2016 1:20 PM in response to JimmyCMPIT

Hi Jimmy, thanks for your reply🙂 I did the etrecheck for you. I was unable to get the page back to show you exactly what it said... the etrecheck comes out the same every time! I was told at one time I need more Ram but that can't be because I have nothing on my computer like I explained before I have not as of yet been able to open most of my apps yet and lean how to use them including iTunes Because of personal reasons.... and this adobe flash keeps coming back.. my daughter come to visit me and turned me on to something called admitOne where I can watch all kinds of shows and series that roku does not have out yet... I have its save. but it said I should use google with it for server reasons???? it was getting stuck in safari haven't tried it in chrome yet.. your personal advice Jimmy would I be better off getting rid of chrome and google and use Safari and mac's mail instead of google's gmail? so I don't have to bother anymore?? and if I do that what do I use for instead of adobe flash? thanks so much.... sorry for just now getting back with you😉

EtreCheck version: 2.6.6 (226)

Report generated 7/7/16, 4:05 PM

Runtime 3:27

Download EtreCheck from http://etrecheck.com


Click the [Click for support] links for help with non-Apple products.

Click the [Click for details] links for more information about that line.


Hardware Information:(What does this mean?)

MacBook Pro (15-inch, Mid 2012)

[Click for Technical Specifications]

[Click for User Guide]

MacBook Pro - model: MacBookPro9,1

1 2.3 GHz Intel Core i7 CPU: 4-core

4 GB RAM Upgradeable

[Click for upgrade instructions]

BANK 0/DIMM0

2 GB DDR3 1600 MHz ok

BANK 1/DIMM0

2 GB DDR3 1600 MHz ok

Bluetooth: Good - Handoff/Airdrop2 supported

Wireless: en1: 802.11 a/b/g/n

Battery: Health = Normal - Cycle count = 195 - SN = D863163R1XUDGDLBQ


Video Information:(What does this mean?)

Intel HD Graphics 4000

NVIDIA GeForce GT 650M - VRAM: 512 MB

Color LCD 1440 x 900


System Software:(What does this mean?)

OS X Mavericks 10.9.5 (13F1808) - Time since boot: about 7 hours


Disk Information:(What does this mean?)

APPLE HDD HTS547550A9E384 disk0 : (500.11 GB) (Rotational)

EFI (disk0s1) <not mounted> : 210 MB

Macintosh HD (disk0s2) / : 499.11 GB (425.00 GB free)


HL-DT-ST DVDRW GS31N ()


USB Information:(What does this mean?)

Apple Inc. FaceTime HD Camera (Built-in)

Apple Inc. BRCM20702 Hub

Apple Inc. Bluetooth USB Host Controller

Apple Inc. Apple Internal Keyboard / Trackpad

Apple Computer, Inc. IR Receiver


Thunderbolt Information:(What does this mean?)

Apple Inc. thunderbolt_bus


Gatekeeper:(What does this mean?)

Mac App Store and identified developers


System Launch Agents:(What does this mean?)

[loaded] com.apple.RemoteDesktop.plist - Invalid signature!

[loaded] com.apple.screensharing.MessagesAgent.plist - Invalid signature!


Launch Agents:(What does this mean?)

[loaded] com.google.keystone.agent.plist [Click for support]


Launch Daemons:(What does this mean?)

[loaded] com.adobe.fpsaud.plist [Click for support]

[loaded] com.google.keystone.daemon.plist [Click for support]

[loaded] com.malwarebytes.MBAMHelperTool.plist [Click for support]

[loaded] com.microsoft.office.licensing.helper.plist [Click for support]

[loaded] jp.co.canon.MasterInstaller.plist [Click for support]


User Launch Agents:(What does this mean?)

[loaded] jp.co.canon.Inkjet_Extended_Survey_Agent.plist [Click for support]


User Login Items:(What does this mean?)

iTunesHelper Application (/Applications/iTunes.app/Contents/MacOS/iTunesHelper.app)

Google Chrome Application Hidden (/Applications/Google Chrome.app)

Living Wallpaper Application (/Applications/Living Wallpaper HD free.app)

Safari Application (/Applications/Safari.app)


Other Apps:(What does this mean?)

[running] [0x0-0x8008].com.google.Chrome

[running] [0x0-0xa00a].com.vinnov.Living-Wallpaper-HD-free

[running] com.etresoft.EtreCheck.22912

[loaded] com.google.Chrome.36640

[running] com.malwarebytes.Malwarebytes-Anti-Malware-Service

[running] com.malwarebytes.antimalware.29952

[loaded] com.vinnov.Living-Wallpaper-HD-free.62160

[loaded] com.vinnov.LivingWallpaperHDfreeHelper

[running] jp.co.canon.ij.scanutility2.CIJSUAgent


Internet Plug-ins:(What does this mean?)

FlashPlayer-10.6: Version: 22.0.0.192 - SDK 10.9 [Click for support]

QuickTime Plugin: Version: 7.7.3

Flash Player: Version: 22.0.0.192 - SDK 10.9 [Click for support]

EPPEX Plugin: Version: 10.0 [Click for support]

Default Browser: Version: 537 - SDK 10.9

SharePointBrowserPlugin: Version: 14.5.8 - SDK 10.6 [Click for support]

PepperFlashPlayer: Version: 22.0.0.192 - SDK 10.6 [Click for support]

Silverlight: Version: 5.1.30514.0 - SDK 10.6 [Click for support]

iPhotoPhotocast: Version: 7.0


3rd Party Preference Panes:(What does this mean?)

Flash Player [Click for support]


Time Machine:(What does this mean?)

Time Machine not configured!


Top Processes by CPU:(What does this mean?)

15% WindowServer

4% kernel_task

2% Living Wallpaper HD free

0% launchd(5)

0% fontd


Top Processes by Memory:(What does this mean?)

1.11 GB com.apple.WebKit.WebContent(7)

529 MB kernel_task

168 MB Safari

131 MB mds_stores

98 MB WindowServer


Virtual Memory Information:(What does this mean?)

23 MB Free RAM

3.16 GB Used RAM (409 MB Cached)

0 B Swap Used


Diagnostics Information:(What does this mean?)

Jul 7, 2016, 02:15:11 PM ~/Library/Logs/DiagnosticReports/helpd_2016-07-07-141511_[redacted].crash

Jul 7, 2016, 08:19:20 AM Self test - passed

Jul 8, 2016 11:59 AM in response to feather6868

flash is not a necessary evil but some web pages still use it and demand it, the inherent problem is since it's popular many fraudulent websites will tell you to download flash and direct you do a phony download.

flash should only be updated from here

https://get.adobe.com/flashplayer/

any website that directs you to it's own player or a previous versions needs to be avoided like the plague.

you have 4GB RAM which is enough to run El Captian but as you muti-task you will begin to see degradation in system performance. You have an i7 CPU which is advantageous, if you added 8 or 16 GB RAM (apple officially supports 8 in that system but other users state it will run with 16) you would see overall performance benefits.

While I prefer Safari to Chrome (two years ago you would have never heard that from me BTW) I wouldn't tell you to get rid of it, but you may wish to try it for yourself and keep Chrome on your system in the event you need it or prefer it, but some users have stated Chrome on Mac is very RAM intensive and others have said that's conjecture. As for mail I prefer the web client over mac mail but mostly because my ISP is terrible and I'm on multiple systems from moment to moment so again it's a matter of preference.

you do have remote desktop enabled on your system. unless you (or someone you trust) need remote control you don't need this on, and you can always turn in on later if you do.

>System Preferences>Sharing

go to remote login

uncheck it.

go to Remote Managment

uncheck it.

while this does not "invite" hackers into your system having it on it does not hurt to remove it from startup if you don't need it.

AdmitOne seems to be a torrent application that allows you to watch copyrighted material illegally so thats not something I would want on my computer, and I can only guess how legitimate the program is so if you are worried about dodgy activity thats something that I would trash, not only hackers but the RIAA and the FBI could harass you or your ISP could report you which evidently happens to people I talk to who use these type of torrent expediters.

I would seriously consider the following

Backing up your computer with Time Machine

Use Time Machine to back up or restore your Mac - Apple Support

verifying your existing software and hardware will run in 10.11 then clean install to 10.11.5 which has additional security OS 10.9 doesn't, then restore your user data with the backup. Also any possibility of a residual problem on your current OS will be addressed by a clean install.

upgrading your RAM to take advantage of the CPU, you could do 6GB and keep one of your existing RAM chips or go to 8 or 16. I recommend OWC Computers, they are very mac savvy and a number of us here have had good success with them.

Get rid of that torrent app before it causes a problem, which one way or another it likely will.

Jul 9, 2016 11:39 AM in response to Csound1

hi csound1, level 8 this is one of the reasons that some of us that are new to apple computers hesitate to hit that reply button because of answers like this... I wanted to know if there was a way to reach out so someone like Jimmy who was kind enough to reply and help me when no one else did. I wanted to know if there was a way to reply to someone other then this reply button to reply only to the person that replied to me. I'm a very nice person csound1 and that wasn't very nice and I wanted to let you know that. feather6868🙂

Jul 9, 2016 11:43 AM in response to feather6868

feather6868 wrote:


hi csound1, level 8 this is one of the reasons that some of us that are new to apple computers hesitate to hit that reply button because of answers like this... I wanted to know if there was a way to reach out so someone like Jimmy who was kind enough to reply and help me when no one else did. I wanted to know if there was a way to reply to someone other then this reply button to reply only to the person that replied to me. I'm a very nice person csound1 and that wasn't very nice and I wanted to let you know that. feather6868🙂

What you want to do is counter to how community help forums work. All users benefit from the advice provided to each question. Besides, we are users like you contributing here. Providing private contact information could lead to overwhelming a user not to mention opening up that user to spam and phishing.

Jul 9, 2016 11:51 AM in response to feather6868

feather6868 wrote:


I wanted to know if there was a way to reach out so someone like Jimmy who was kind enough to reply and help me when no one else did.

Your initial post was up for less than 10 minutes before you got a reply, so I'm not sure why your inferring that you weren't getting any help.


You can do two things here: you can post and you can reply. There is no private messaging function.


You might also keep in mind that this is a user-to-user forum. Being unpleasant to someone who tried to be helpful by answering your question is not always the best way to go about things. If you don't like an answer you get, either just say "Thank you" and move on or, if you're unable to do that, ignore it. This is also a public forum. Everyone who is a member can read and respond to all the posts. You don't get to pick and chose who gets to reply.


Best of luck.

Jul 9, 2016 11:54 AM in response to BobTheFisherman

Oh Hi BobTheFisheman, How are you... I thanks for the reply I didn't want a private contact.... I'm so glad you replied.. you helped me once and ask me to send you my etrecheck to a different place it was not in the same place where we reply to and that is what I was trying to do.... nothing more... I have enough of that in my personal like trust me I don't need any more from the outside😎.... thanks again for the reply feather6868

Jul 9, 2016 12:12 PM in response to feather6868

There are a few things I see in your report that I find troubling. The most important by far is that you are not using the free Time Machine Application to make Backups. If you have some other mechanism that is making a Trusted Backup by some other means, that is great. But you need a Trusted Backup.


Apple provides some free software, you can buy different software, but you need to buy a large drive (2.5 to 3x the size of what needs to be saved) and start doing Backups immediately. Not doing so is a decision to NOT save any of the files on your Mac, because "Any Drive can fail at any time."


--------

It is VERY troubling to see these two files (that have to do with Sharing) that are corrupted:

System Launch Agents: (What does this mean?)

[loaded] com.apple.RemoteDesktop.plist - Invalid signature!

[loaded] com.apple.screensharing.MessagesAgent.plist - Invalid signature!


I recommend you remove those files. It is a Multi-step process because they are likely "in use".

First, move both of those files to the Trash.

Perform a Restart, which will mark those files as no longer in use.

Then, empty the Trash.

If needed, they will be recreated (and hopefully in their proper, signed form). Leaving them as is could be an indication that you are already allowing unauthorized access to your Mac.


-------

if you ever need to clear your Boot Drive and re-Install to fix these and similar problems, your Trusted Backup will be required, which feeds back to my first concern.

Jul 9, 2016 12:22 PM in response to Grant Bennet-Alder

Hi Grant, Once I Back up everything to time machine and delete those two things and empty my trash and restart my pc. the only thing I have on my pc is pictures in iPhoto, documents in my library and my emails other then that I have nothing else on my pc.... with that said would it be best if I took it somewhere and have them do it for me or would that coast me to much money that i do not have?? that is how new I'am to my mac 😐thanks feather6868 I have not warranty thanks for your help

Jul 9, 2016 3:05 PM in response to feather6868

Lacking other symptoms, I do not suggest that erasing your drive and re-installing MacOS is necessary at this point.


But not having a Trusted Backup leaves you with less room to maneuver. In a few weeks you will have many more files that you would not like to lose.


If you have an Apple store available, Apple will allow you to make an appointment and present all your equipment for an evaluation and advice. These visits are provided free of charge, regardless of warranty status.

Jul 10, 2016 7:56 AM in response to Csound1

Hi Csound1,

How are you today? I would like to start by saying, I hope that after you read this that we can start over🙂.

I have never used time machine before the person at best buy who did my mac told me I need not need it nor did I need iCloud and also told me that the mail would cause me problems!! I ask him then why did I buy an apple when I can't use all the cool stuff... I did explain to him (I don't share my personal life but I've been divorced 2 yrs this month, it wasn't a good marriage very abusive mentally then later physically.. I had a total of 13 major surgeries during that marriage & 3 concussions. I was told to get an apple it does everything for you, no more worries...) that was my divorce present to myself... with that said. The mac was put away for awhile due heath issues.. So I'm new to all of this... so all the apps that came with the apple I haven't had a chance to use yet. I haven't even developed iTunes yet or any of the other apps. Where is all the space going to??? I feel dumb when it comes to this stuff ..when I” read your reply it sounded mean to me because of course you hit reply to answer someone. I simply wanted to tell Jimmy what I just told you and I didn’t want everyone to know why I needed a little more explaining to understand what do with my apple… I hope you understand and there are no hard feelings between us….I know you have allot of experience and hope one day you can help me out. I'm really not a not nice person Csound1 complete opposite I'm to nice and get taken advantage of at times something I need to work on Ive been told😊.....Have a wonderful day… feather6868🙂

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

hackers

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.