Spent part of yesterday & today answering friends’ call for help.
Short story: someone was on the net and was duped into some ‘click here’ bait. A warning sprang up with an number and a directive: call here for help. Social engineering took over after that.
Sometime in the course of being fleeced, the user awoke to something nefarious happening and shut it down. The resulting question was: how bad was it?
He called his daughter and SIL in LA for help. They enlisted my assistance as hands and eyes on the infected machine. I picked it up, did some top level examination of what’d been downloaded, installed, and accessed. Worse culprit was the Supremo app. That’s an app that let’s others remotely access and control the machine. Downloaded but never installed, I trashed that thing.
Then I set it up so that the SIL had remote access by installing an IT app that he requested I install. He sorted through files to confirm nothing had been seriously compromised. Some banking log in information had been compromised. Fortunately, the new location wasn’t recognized and the log in was challenged and denied. That two-factor authentication paid off.
Bottom line: fresh and clever scams are out there. While others have tricked people with banking issues or special offers, this friend was tricked into clicking on an offer to see what new childhood classmates had been found. On my end, I was tricked through a offer for flowrs for Mom’s birthday.
With so many scams hitting us, remember to be careful out there.
