06/04/2026
We got an extremely bad remote-access virus going around, likely in the top 3 i've seen in 40 years. It's unexpected in the aspect its legitimate software that has been 'hacked'. This means it will not be detected by Antivirus software or anything of any kind. The program has a digital signature signed by a reputable company which means Windows and Microsoft as well as all the Antivirus vendors will not flag it.
The program is called ScreenConnect https://www.connectwise.com/
This is legitimate program that is used by 'enterprise' meaning large companies to remotely manage PCs. Which is also why it wont be flagged as a trojan full access virus.
The way a person can easily find it is by clicking your Yellow folder Explorer window on the bottom bar.. Click 'Local Disk (C:)' and then 'Program Files (x86)', and scroll down to the S area (alphabetical order), look for any folder with a 'Screen Connect Client'. If you find this please give me a call. I cannot just tell you how to remove this in this post.. it's nasty.
This thing allows full access anytime your computer is turned on, and a hacker can just use anything on your computer as if they are sitting in front of it.. which is as bad as it gets.
[edit] Mac people. I have seemingly found one instance of this happening and I haven't been able to dig into it as deeply as the PC side. I don't have advice yet other than newer Macs make this impossible. Say.. around the M1 era which is 2020.. I don't have specifics and I wish I did.
Stay safe out there friends.