{"id":54,"date":"2015-06-02T22:09:40","date_gmt":"2015-06-03T05:09:40","guid":{"rendered":"http:\/\/www.macsrwe.com\/blog\/?p=54"},"modified":"2015-06-02T23:00:56","modified_gmt":"2015-06-03T06:00:56","slug":"dont-call-me-ill-call-you","status":"publish","type":"post","link":"https:\/\/www.macsrwe.com\/blog\/dont-call-me-ill-call-you\/","title":{"rendered":"DON&#8217;T CALL ME\u2014I&#8217;LL CALL YOU"},"content":{"rendered":"<p>Write the following on the\u00a0blackboard of your life, right underneath &#8220;There&#8217;s no such thing as a free lunch&#8221;:<\/p>\n<p><strong><em>Neither Microsoft nor Apple will ever phone\u00a0you to fix your computer\u2013at least not unless you have phoned\u00a0them first.<\/em><\/strong><\/p>\n<p>Today, one of my senior clients got a call &#8220;from Microsoft.&#8221; Since she had been having problems with her\u00a0DSL recently, she made the mistake of believing the caller. She complied with all his instructions and let him log into her Windows machine remotely, whereupon he showed her several screensful of &#8220;critical problems&#8221; that he said he would\u00a0fix right away\u2026 as soon as she paid him\u00a0$400 for the work.<\/p>\n<p>&#8220;I don&#8217;t have that kind of money to throw around. You never said anything about a charge when you called me, and I&#8217;m not paying you anything.&#8221;<\/p>\n<p>&#8220;You&#8217;d better pay me now, because if you hang up on me, you can&#8217;t call me back, I won&#8217;t call you back, and if I don&#8217;t get paid,\u00a0you&#8217;ll never use Windows on your computer again.&#8221;<\/p>\n<p>Refusing to be extorted, she hung up on him anyway, and then phoned me to see if there was anything I could do about her situation. When I showed up, I tried booting her system in Safe Mode, whereupon I was met with the demand, &#8220;This computer is configured to require a password in order to start up.&#8221; She had been victimized by\u00a0a &#8220;ransomware&#8221; scammer.<\/p>\n<p>A little time spent with a search engine revealed that my client had been saddled with a &#8220;SysKey password.&#8221; Establishing such a password encrypts a\u00a0Windows data area called the&#8221;SAM\u00a0registry hive,&#8221; so simply removing the password by force won&#8217;t fix this\u00a0situation, and could\u00a0result in the destruction of any\u00a0number of other\u00a0files. The <a href=\"https:\/\/www.google.com\/search?num=30&amp;newwindow=1&amp;client=safari&amp;rls=en&amp;q=%22this+computer+is+configured+to+require+a+password+in+order+to+start+up%22+phone&amp;oq=%22this+computer+is+configured+to+require+a+password+in+order+to+start+up%22+phone&amp;gs_l=serp.12...0.0.0.23858.0.0.0.0.0.0.0.0..0.0....0...1c..64.serp..0.0.0.d2GgE17ctcY\">same search<\/a> showed many instances of other scammed users being victimized by this same exact trick.<\/p>\n<p>I had to take the machine down to the shop, safestore the user files for insurance, then reset to a restore point from\u00a0about a week ago.\u00a0The backup process took longer than I would have liked, but my client\u00a0was back to happily using her machine\u00a0quicker than our scam caller could give his mother her next STD.<\/p>\n<p>Unfortunately, these scams are on the rise. This is the second senior in my (admittedly small-town) client base who has been hit with a similar scam in the past quarter.\u00a0The other was called by <a href=\"http:\/\/www.thestar.com\/business\/personal_finance\/2011\/09\/13\/we_were_almost_victims_of_an_online_fraud.html\">the fraudsters at Kavish<\/a>, and had paid them $149, which (at my urging) she recovered by disputing the charge with\u00a0her credit card company.<\/p>\n<p>The lesson here is not to trust unknown callers who phone you with official-sounding requests, whether they say they are calling from Microsoft, your bank, a store, a law enforcement agency, or anywhere else. If you didn&#8217;t initiate the call and you don&#8217;t personally know the caller, treat\u00a0him just as you would treat <a href=\"https:\/\/youtu.be\/rKiQqxHp5E8\" target=\"_blank\">Peggy from Siberia<\/a>: tell him nothing, and allow him\u00a0no access to your stuff.<\/p>\n<p>If you&#8217;ve called Microsoft, or Apple, or any other company for technical service, they will give you a ticket number. Write it down. When you receive a genuine return call, the caller will have that ticket number. If they don&#8217;t, hang up, and call the main number back.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Write the following on the\u00a0blackboard of your life, right underneath &#8220;There&#8217;s no such thing as a free lunch&#8221;: Neither Microsoft nor Apple will ever phone\u00a0you to fix your computer\u2013at least not unless you have phoned\u00a0them first. Today, one of my senior clients got a call &#8220;from Microsoft.&#8221; Since she had been having problems with her\u00a0DSL &hellip; <a href=\"https:\/\/www.macsrwe.com\/blog\/dont-call-me-ill-call-you\/\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">DON&#8217;T CALL ME\u2014I&#8217;LL CALL YOU<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[19],"tags":[20,21],"class_list":["post-54","post","type-post","status-publish","format-standard","hentry","category-security","tag-malware","tag-scam"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/posts\/54","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/comments?post=54"}],"version-history":[{"count":16,"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/posts\/54\/revisions"}],"predecessor-version":[{"id":70,"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/posts\/54\/revisions\/70"}],"wp:attachment":[{"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/media?parent=54"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/categories?post=54"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.macsrwe.com\/blog\/wp-json\/wp\/v2\/tags?post=54"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}