Share

Related Links

Related Stories

  • Spammers getting lazier says Symantec
    Some rather amusing news comes our way today courtesy of Symantec, and it does not bode well for the creative prowess of spammers. It appears that one of May’s hottest spam trends was blank email subject lines according to the company’s latest “State of Spam & Phishing” report.
  • World Cup spam volumes soar
    Spam relating to the FIFA 2010 World Cup has soared by about 27% according to security firm, Symantec.
  • How to protect your personal information on Facebook
    Facebook members can protect their personal information by following some basic guidelines, says security firm Symantec.
  • Symantec to pay $1.28bn for VeriSign’s security business
    Security software group Symantec is to acquire VeriSign's identity and authentication business in a $1.28bn cash deal.
  • Symantec snaps up PGP
    In what must surely mark the end of an era for encryption technology, Symantec is buying PGP Corporation for $300 million.
  • PDF attacks skyrocket, says Symantec
    Web-based attackers are increasingly targeting PDF files to compromise machines online, according to new figures released by Symantec. In the April version of its Internet Security Threat Report, the company revealed that half of all Web-based attacks in 2009 targeted PDF files, compared to just one in 10 attacks reported the previous year.

Top 5 Stories

News

Symantec security ops manager warns of new phone support cyberscam

25 June 2010

Cybercriminals are branching out into new areas and, says Orla Cox, security operations manager with Symantec, one of the latest diverse scams involves a 'company' called Online PC Doctors, who initiate the cybercrime by telephoning the victim directly to advise the computer users they have a 'virus' and offer to fix it for a fee.

"Of course", she said, "there is no virus to fix."

According to Cox, the scam is noteworthy because, instead of using applications to convince users that their computer was in trouble, this particular group was phoning users directly to tell them that they had a virus on their computer – "but thankfully help was at hand."

"The company in question, Online PC Doctors, offers to remotely connect to your computer to clean up the infection. All for a fee of course", she said.

"At first glance, the website for this service looks pretty legitimate: www.onlinepcdoctors.com. However digging deeper, the poor English used is a bit of a giveaway that something is amiss here. We decided to look into this further and avail of their offer of assistance. I assumed the guise of a computer novice and had a clean installation of Windows XP ready for them to work their magic on", she added.

Cox says she told the remote 'company' that her computer was running slowly and the assistant – 'Brian' – said it as due to a virus and walked her through the Event Viewer.

"Brian could arrange for a 'certified Microsoft technician' to fix these problems for me. They set up a remote session with my computer and proceeded to take action to 'fix' it", she said in her security blog posting.

The end result was that Cox was asked to pay an annual subscription of €129 (~$158) – or €250 for two years.

"In order to pay for this service I had to send them an email with my full name, address, phone number, email address, and full credit card details. I also had to write in the email that I authorised them to charge my credit card," she said, adding that she was also asked to fax them a copy of her driver's license.

Fortunately, the Symantec security expert sent a lot of fake information and IDs – excluding the valid card number – to the 'company.'

There are, she says, a lot of worrying points here.

"Firstly, this company had lied to me by telling me I had a malware infection. I then had to pay 129 euros for them to clean up this so-called infection. I also had to provide them with a number of personal details, including my credit card number", she said.

"Unfortunately security software can't protect against this type of social engineering. If you get a call from the 'Online PC Doctors', just hang up and advise your friends and family to do the same", she added.

Cox has posted an interesting video showing the 'Online PC Doctors' in action.

This article is featured in:
Internet and Network Security • Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.