Author Topic: Sister's Laptop Semi-Ransomware / Hack Attacked  (Read 2419 times)

0 Members and 1 Guest are viewing this topic.

Offline Chim

  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 1151
Sister's Laptop Semi-Ransomware / Hack Attacked
« on: July 12, 2017, 01:59:38 AM »
My sister called me a while ago all panicked.  The unthinkable happened to her AND then she did the unthinkable.

She says she clicked on a seemingly harmless link for a recipe on facebook.  Suddenly ... BAMM!  Some screen came up saying that her computer was now BLOCKED and do NOT try to turn it off or attempt to close down the screen ... or presumable things would get worse.  A phone number was provided for her to call in case she wanted assistance fixing the problem.

Unfortunately ... all panicked --- my sister went ahead and called the number!  Oh Nooooooo!  Apparently some guy claiming to be from Microsoft said he'd help her.  I THINK he at some point did some remote looking / snooping around if I understood correctly.

The scammer then recommended to my sister 2 companies that would supposedly help her fix her problem ... no doubt for plenty of bucks.  One supposed company was something like --- Techzya or something along those lines.  The other was something like Info6LLC or thereabouts.  Obviously BS Scamsters.  I think even a dollar amount of around $200.00 was mentioned as being the repair fee of one of the 2 scam companies.

At least by this time my sister started smelling a rat, albeit too late ... and told the scammer that no, this was as far as she was going with this.

ANYWAY ... so I need to know what to tell / instruct my sister that she absolutely needs to do.

I told my sister that to be on the safe side, she should take her computer to get her OS (Windows 10) completely reinstalled.  It can't hurt.  This way it is assured that there isn't something deeply hidden that the scammer left in there, like some backdoor or whatever. 

The scammer told my sister that even reinstalling the OS completely would not help because "The international hackers" already had preliminary control of "her IP Address".  Heck, the scammer even told my sister that even a brand NEW computer would NOT help her because her IP Address was now compromised.  He even showed her I believe 4 supposed examples of how 4 international hackers already had "established" something or other ... as if more was to come.  CAN an IP Address be compromised?  If so, what would be the remedy?  Or is it just scare tactics / social engineering?  Of course we know the guy telling her all this BS is the Scammer in Chief.  But, I do need to know if it is true that "an IP Address" can become compromised like permanently or what.

I told my sister that on the extreme least, she should change whatever all passwords she uses, especially since she said she does do Online banking.

My sister is wondering whether she should close her facebook account as in ... is it now compromised and any activity on that account now is prone to making things worse?

Should my sister change her cellphone number?  The very scary thing is that with my sister having called that wicked number, the scammer now not only has her cellphone number ... but, also her full name from facebook.  A dangerously closer step to identity theft and whatnot, right?

So yeah, what's the absolute that I have to recommend to my sister that she do to hopefully put out the fuse the best possible?  She's gonna call in about an hour from now.
« Last Edit: July 12, 2017, 02:10:59 AM by Chim »
Dell Optiplex 780 / Core 2 Duo E8400 3.00 GHz / 4 Gig RAM / Windows XP Pro 32-Bit SP3 / Panda Dome  Free 18.07.00 / MBAM / SAS / NetZero Dial Up / Maxthon MX5 5.2.5.4000

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37582
  • Not a avast user
Re: Sister's Laptop Semi-Ransomware / Hack Attacked
« Reply #1 on: July 12, 2017, 02:17:01 AM »
If she did not give out any info ... passwords / creditcard info / ......   she should be safe

Changing passwords regulary should be done anyway   ;)
« Last Edit: July 12, 2017, 02:23:41 AM by Pondus »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37582
  • Not a avast user
Re: Sister's Laptop Semi-Ransomware / Hack Attacked
« Reply #2 on: July 12, 2017, 02:22:21 AM »
Quote
She says she clicked on a seemingly harmless link for a recipe on facebook.  Suddenly ... BAMM!  Some screen came up saying that her computer was now BLOCKED and do NOT try to turn it off or attempt to close down the screen ... or presumable things would get worse.  A phone number was provided for her to call in case she wanted assistance fixing the problem.
HTML:FakeAlert  >>  https://www.youtube.com/results?q=website+fake+alerts


Offline Chim

  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 1151
Re: Sister's Laptop Semi-Ransomware / Hack Attacked
« Reply #3 on: July 12, 2017, 02:37:03 AM »
I'll download that YouTube in just a bit, Pondus.  Remember, I have Dial Up.  ;D

Anyway, Pondus ... but, IS there such a thing as an IP Address being compromised?  Or is it just scare tactics?

In other words, say that she does get her Windows 10 reinstalled tomorrow and thus now has a fresh, clean Laptop to start off again from that end.  CAN her IP Address be a problem, a liability, a risk, a threat or not?  My sister's really worried about that.

I asked my sister and she said she does NOT keep any credit card numbers or info in her laptop.  So at least that's good.  And she said she did NOT give the scammer any credit card number or info.  She did NOT give out her Social Security Number.
« Last Edit: July 12, 2017, 02:53:38 AM by Chim »
Dell Optiplex 780 / Core 2 Duo E8400 3.00 GHz / 4 Gig RAM / Windows XP Pro 32-Bit SP3 / Panda Dome  Free 18.07.00 / MBAM / SAS / NetZero Dial Up / Maxthon MX5 5.2.5.4000

Offline Chim

  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 1151
Re: Sister's Laptop Semi-Ransomware / Hack Attacked
« Reply #4 on: July 12, 2017, 02:47:53 AM »
Oh, I see now.  So it's not a specific YouTube, but rather various YouTubes on the topic.

Early on when my sister started telling me her story, I immediately stressed --- Nooooo!  Don't EVER call ANY phone numbers on any screen or page that comes up like that.  A bad thought just entered my mind.  I don't know if the number she called was like an (800) toll free number or ... could it have been a NON toll free number that's gonna zap a big toll long distance call, conceivably from another country on her next phone bill.  Yikes!
Dell Optiplex 780 / Core 2 Duo E8400 3.00 GHz / 4 Gig RAM / Windows XP Pro 32-Bit SP3 / Panda Dome  Free 18.07.00 / MBAM / SAS / NetZero Dial Up / Maxthon MX5 5.2.5.4000


Offline midnight

  • Massive Poster
  • ****
  • Posts: 2474
Re: Sister's Laptop Semi-Ransomware / Hack Attacked
« Reply #6 on: July 12, 2017, 01:54:59 PM »
I got the same back in January.  I clicked on a link on Facebook which showed Willie Nelson had passed away.  I was able to close it and didn't call anyone.  Restarted my computer and everything was okay.

.