Lets take the first comment for example:
>Holy fucking shit. That's how I got hacked. 5/25/2016 and 5/28/2016, they logged into one of my computers at 3:24AM both days and used my PayPal, Microsoft account, eBay account, to buy tons of codes for different online stores. I just checked my browser history on that computer and sure enough, all those sites were visited. My bank took care of everything, so did PayPal and Microsoft. It was fucking teamviewer. I enabled TFA for the time being and turned off all computers connected to teamviewer.
This is ridiculous, if someone had in fact hacked teamviewer they wouldn't be wasting their precious time by stealing a couple of bucks from this guys paypal account. (Paypal accounts are essentially worthless, you can buy them by the thousand on various forums)
A far more credible theory is that some bot is either grabbing teamviewer credentials, and those are now being sold on fraud forums.
TeamViewer is used to manage literal fucktons of PoS infrastructure it being compromised would be a far bigger deal than the Target breach.
He probably had some bot on his computer that recorded him using paypal and what not, and because paypal has some seriously impressive fraud detection mechanisms the attacker opted to take over teamviewer (if teamviewer is at all involved here, could be VNC provided by the malware for all we know) on his computer.
Now, judging by the way these things generally work the guy running the bots and the guy running remote desktop on his computer are hardly ever the same person.
Edit: what I mean by this is that they're running absolutely shit PR on this and it's basically convincing everyone that they're at fault, despite somewhat limited evidence to that effect.
People are misinterpreting them so badly you start to wonder if it's perhaps intentional?
We use teamviewer host and haven't seen anyone trying to log in, but I'd rather not take the chance and have removed the software from all our machines. If we need to remote assist someone, they can run the software manually.
Having the ability to remote connect and repair problems is great, but when there is the remotest (pun intended) chance that it can be used nefariously then I'd rather limit the threat.