Monday, October 8, 2012

Scam alert

This article on Ars Technica talks about a scam where people cold-call you on your phone, claim they are 'calling from Windows,' and they need to help you get rid of multiple viruses they have found on your PC. Needless to say it's a scam, no one calls form a product (they would be calling from Microsoft, not Windows), and some people are being taken for hundreds of dollars and worse, as they convince you to install software that allows them to gain remote access to your system and ALL of your files.

The main hook they use is the Windows Event Viewer, which often lists errors and warnings for system events, but they are normally benign and don't impact you or your use of the machine in any way. I have pasted an example of my own below:


As you can see, there are many errors and warnings, and that's fine. If you looked at your own it would look very much the same. It's an administrative tool that allows investigation of any system trouble that causes serious problems, but these rarely do. It looks serious, however, and I can understand why someone would fall for a caller claiming it shows a seriously compromised system.

These scammers are patient, and persistent. The best thing to do if you get a call like this is to tell them you know it's a scam, they'll scream profanities, and hang up. If you know anyone who might fall for it let them know as well, otherwise they could find themselves out of money and their sensitive data posted online.

Or, you could just turn the tables (this article, and the comments, are hilarious yet sad. I encourage you to read it to see what these people will do to get at your system and the clever ways people foil them).

6 comments:

  1. I had no idea that there was a scam like this happening. I am very happy to be aware of it now so I would not fall into this trap. I am pretty much a computer illiterate so if I saw the screen they ask you to pull up I would be very worried. I would hope I would not just give out my credit card information to someone calling randomly about my computer. At least now I do know what this is and I plan on sending this information to everyone I know!

    ReplyDelete
  2. Social engineering nightmare... but I have to say, it's a brazen way to go about it.

    ReplyDelete
  3. I heard about this scam recently and I just wish these people could use their powers for good.

    ReplyDelete
  4. This comment has been removed by the author.

    ReplyDelete
  5. I think remote access is really a smart scam, as dark as this sounds. Its like you directly giving someone access to your computer, because without those programs to download they can't access your machine unless they are really that good of a hacker. My Uncle has remote access to one of my P.C.s and well to tell you the truth its pretty scary, they can take total control over your computer. In some cases if you do turn off your machine they can't access your computer, but in other cases they can even turn on your computer from their end if it is not un-plugged.

    ReplyDelete
  6. People will do anything for a dollar and the consumer is to blame because people always want the best of the best.

    ReplyDelete