tbh.. i have good knowledge in this field.
feel free to pm me anytime.
to do :
1# change all your passwords from a clean device/pc.
its obvious why...its highly likely to have a keylogger, pwd grabber installed into ur pc by now. and you dont want to get hijacked again.
2# disbale all 2nd auth, and re-enable it again.
since they have access to ur pc, they can copy ur current cash files, and use them again to bypass 2nd auth, on any other pc.
3# if you cant locate the malware, i suggest you do full re-installation of ur windows. (not a re-pair mode)
since the malware can be hidden in many many places, even in file-less form, it will recover itself if the coder is smart enough.
common places to check in (startup/task scheduler/drivers...basically its a mess)
ps, id be glad if you give me a sample
edit:
it doesn't have to be a bad version, it could just be a bad plug-in. which could trigger the malware code by time or event...etc.