Skip to Content

The Fake Virus Alert: How Tech Support Scammers Use Remote Access to Empty Your Bank Account

The Fake Virus Alert: How Tech Support Scammers Use Remote Access to Empty Your Bank Account
You’re browsing the web, paying bills or checking email, when a red pop-up slams across your screen: “WARNING: Your computer has been infected with 3 viruses! Call Microsoft Support immediately at 1-800-XXX-XXXX.” A robotic voice might even start blaring from your speakers. Your heart skips. You don’t want to lose your files or have your bank account drained. So you pick up the phone.

Don’t. That pop-up is the opening move in one of the most common and costly remote access scams targeting Americans between 45 and 64. The people on the other end aren’t Microsoft employees. They’re criminals who want to trick you into giving them control of your computer, and then take your money.

Here’s how it works. The fake virus alert you see is almost always generated by a malicious website – not by your actual computer. It’s designed to look like a Windows or Apple security warning, complete with official logos and urgent language. The page locks your browser into full‑screen mode so you can’t easily close it. It may even play a panic‑inducing recording. Once you call the number, a “technician” answers with a scripted greeting that sounds professional. He’ll ask you to open a website or download a program like TeamViewer, AnyDesk, or GoToAssist. Those are legitimate remote‑access tools used by real IT departments, but in the scammer’s hands they become the keys to your digital life.

After you give them a code or click a link, the scammer can see everything on your screen and control your mouse and keyboard. While you watch, he’ll run a few fake diagnostic steps, maybe type in some command prompt gibberish to make it look serious, and then claim to have found dozens of “viruses” or “security breaches.” The next step is a request for payment – often $200 to $500 – to “clean” your computer. The scammer will insist you pay by credit card, digital gift card (like Google Play or iTunes), wire transfer, or crypto. He’ll stay on the phone, coaching you through the purchase to make sure you don’t ask questions. If you hesitate, he may threaten to delete your files or, more subtly, claim your identity has already been stolen and he’s the only one who can fix it.

But the real damage doesn’t end with that payment. While the scammer has remote access, he can snoop through your documents, steal saved passwords, copy browser history, and even look at your banking or email accounts. Some scammers install keyloggers or ransomware. Others return days later, posing as a different company offering a “refund” for the first scam – that’s called a secondary scam. You could lose thousands before you realize there was never a virus at all.

How do you spot this fraud before it’s too late? First, understand that no legitimate tech company – Microsoft, Apple, Google, or your internet provider – will ever send you an unsolicited pop‑up warning that asks you to call a phone number. Real security alerts appear in your system tray or in the built‑in security software, and they never demand immediate action over the phone. Second, real tech support never asks for remote access unless you have contacted them first about a specific problem. Third, no honest business asks for payment in gift cards, cryptocurrency, or wire transfer. Those methods are virtually untraceable, which is exactly why scammers demand them.

If you see a pop‑up like that, do not call the number. Instead, force‑close your browser. On a Windows PC, press Ctrl + Alt + Delete and select Task Manager, then right‑click your browser and choose End Task. On a Mac, press Command + Option + Escape and force quit the browser. If that doesn’t work, restart your computer. Then run a full scan with your antivirus software just to be safe. You might also clear your browser cache and cookies.

If you already fell for the trick and gave a scammer remote access, act fast. Disconnect your computer from the internet immediately – either unplug the Ethernet cable or turn off Wi‑Fi. Run a full security scan with a reputable program. Change all your important passwords from a different, clean device (a phone or tablet works fine). Enable two‑factor authentication on your email and bank accounts. Call your bank or credit card company to report any unauthorized transactions or suspicious charges. You may also want to freeze your credit if the scammer accessed sensitive financial information.

These scammers are good at what they do. They sound calm and helpful. They use high‑pressure tactics and fear to rush you into making a mistake. But you have the advantage of knowing the script. Recognize the fake pop‑up for what it is: a doorstop trying to trick you into opening the door. Slam it shut and don’t look back.


Scam Watch

Protect it before they take it.

Fake Court Summons Sent via Email

Fake Court Summons Sent via Email

Extortion, Blackmail & Digital Threats · You open your email to find a message that looks official, complete with a court seal, a case number, and a demand for immediate payment.
The “Missed Package” Text Scam That Is Emptying Bank Accounts

The “Missed Package” Text Scam That Is Emptying Bank Accounts

Delivery Notification and Missed Package Cons · You are waiting for a package.
The Package Delivery Phishing Scam: How a Text About a Missed Delivery Can Empty Your Bank Account

The Package Delivery Phishing Scam: How a Text About a Missed Delivery Can Empty Your Bank Account

The Phishing Hall of Shame · You get a text message.