Hi all,
So a family member of mine was recently dupped by a proxy virus into placing a call to a malicious number which attempted to solicit personal information from her. I'm sure everybody has heard of this method by now and using logmein123.com to connect to machines. Unfortunately for her, she allowed access to her machine. I've gone through immediate actions such as changing all online credentials, however there is fear that personal files may have been copied. My question is, does log me in leave any log files locally that would indicate what was done exactly when this malicious user had access? Could there be anything in event viewer that would let me know? I'm not sure if file sharing was enabled, however the information I'm getting from my family member is too vague to rule it out. I plan on doing a system restore and perhaps reconfiguring the router as a super precaution... Anything I'm missing?
Thank You