nightHawk12
Contributor
1. My instagram account was hacked. Email address changed and an app based 2fa was enabled. The account is now deactivated which they most probably will activate later. I cannot reset the password as instagram sends an email otp for the procedure but I dont get the otp no matter how many different email id give.
2. 1 Hour later I got to know from email and 3 hours later ubisoft account password changed followed by email address. When I received the email I tried to change the password but it was too late.
3. After this I changed my email address because both the accounts had same email address. Unlinked recovery email address and removed logged in devices. Since then no issues yet but I am worried. Worried about what else they have access to?
4. Ran a malwarebytes scan and got arround 9 trojans in system32 directory and 5 in downloads folder which I quarantined. I am on windows 11. This is the first time any of my account got hacked and I could not believe my eyes.
5. I suspect the following:
What needs to be changed and what precautions needs to be taken for the future? That instagram account was not much important but I would like it to delete it myself than relying on the hacker.
2. 1 Hour later I got to know from email and 3 hours later ubisoft account password changed followed by email address. When I received the email I tried to change the password but it was too late.
3. After this I changed my email address because both the accounts had same email address. Unlinked recovery email address and removed logged in devices. Since then no issues yet but I am worried. Worried about what else they have access to?
4. Ran a malwarebytes scan and got arround 9 trojans in system32 directory and 5 in downloads folder which I quarantined. I am on windows 11. This is the first time any of my account got hacked and I could not believe my eyes.
5. I suspect the following:
- I use a password manager which is synced across my pc and android. Both my account details was there only. But if the hacker had access to the password manager why would he reset my password? Yes for permanetn access but that leads my doubts towards my email account.
- My email account seems to be compromised becaust both attacks were done using my email address reset method but how they got access to it? Then why such trivial accounts(my insta is empty af because I use it only to watch and share reels with friends) ,why not bank accounts?
- Any sort of malware/keylogger/rootkit in my system. But I think it might have played a role in giving access to email indirectly.
What needs to be changed and what precautions needs to be taken for the future? That instagram account was not much important but I would like it to delete it myself than relying on the hacker.