A friend of mine is working on a Mac in a lab where he has annoying
problems like files disappearing, texts being erased, magically
altered data and so on. I know that this can be caused by various
reasons and causes, but one that can not be excluded after his
explanations is that he's molested via ARD or something similar.
The question now is, if there is any possibility to detect ARD
interventions on a client for a person without much computer skills,
no admin rights, and no access to any analysis tools ?
And further; is there an easy way to stop it, at least to check if it
is the reason that causes the troubles? Like a process to kill? Can
you detect the IP or machine name from where the attack is coming from?
Certainly all this sounds rather paranoid, but this person really
suffers from that stuff and is close to a nervous breakdown.