2012-12-15

I have a screenshot from my iMac this morning showing  'Little Snitch' prompting me to accept or deny an incoming connection from 78.138.161.142 on TCP Port 2002 (globe).

Reverse DNS Name shows static.142-161-138-78.kgts.ru, process ID 73, User root (UID: 0).

I am of course denying it, but the scary part is it's displaying the LogMeIn blue logo with three (3) white dots.

Is LogMeIn hacked?  Has our secuity now been compromised?  Is there some other reason that if I do an IP lookup that it shows as info that has nothing to do with LogMeIn?

(here is the screenshot + other info)

https://www.dropbox.com/s/jwr0i5frisjrhwd/Is%20this%20a%20LogMeIn%20hack%3F.png

   Related IP adresses

IP address

Type

Host name

DNS state

78.138.154.10

A

kgts.ru

78.138.154.10

MX

mail.kgts.ru

78.138.135.10

MX

relay2.kgts.ru

78.138.135.10

NS

ns.kgts.ru

194.226.96.8

NS

ns4.nic.ru

78.138.154.10

NS

ns2.kgts.ru

Whois record :

Show more