Welcome!

By registering with us, you'll be able to discuss, share and private message with other members of our community.

Sign up now!

PSA: TeamViewer was recently compromised

Client Developer
Joined
Oct 12, 2015
Messages
3,760
x-post from /r/2007scape
PSA: TeamViewer was recently Compromised. If you use it, please read this. • /r/2007scape

TeamViewer was recently compromised by a third party, and malware was implemented that retrieves saved emails, usernames, and passwords from your browser. To make sure you're safe, follow these steps:

Find the TeamViewer logs here:

  • C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.txt
  • C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile_OLD.txt
Do a search for "webbrowserpassview.exe". If it's in your logs, you should change your passwords immediately. This software essentially shows and exports all your saved username and passwords from your browsers (chrome, IE, firefox, etc).

Partial log entry showing the offending text:
teamviewer - Pastebin.com
http://imgur.com/YKIoVsL
If you were hacked, look in the Teamviewer logs for "webbrowserpassview.exe" (very important) • /r/teamviewer

Edit: Helpful comment from Mavmar:

It should be noted this seems to only be affecting users with registered accounts with teamviewer. This suggest that teamviewer itself wasn't hacked but some online database and now they're running down the list of hacked emails/passwords to try to connect to teamviewers. Even if you do not have an account I'd still check the logs and uninstall teamviewer till this gets cleared up.
 
Top