Windows 10: Phishing

Discus and support Phishing in AntiVirus, Firewalls and System Security to solve the problem; I got phished about a month ago by an Indian outfit. They trailed an HP printer driver installation page I was trying to use for a new printer, and... Discussion in 'AntiVirus, Firewalls and System Security' started by Racco, Nov 18, 2017.

  1. Racco Win User

    Phishing


    I got phished about a month ago by an Indian outfit. They trailed an HP printer driver installation page I was trying to use for a new printer, and place a "chat" ear at the bottom of the page. After I could not find what I was looking for, I clicked on the chat ear and the rest is history.
    I ended up wiping my machine clean.
    I reinstalled windows 10.
    I want to know if I am still at risk from these people.
    Do I need to change my IP Address? If so, how?
    What else do I need to do?

    :)
     
    Racco, Nov 18, 2017
    #1
  2. ZigZag3143 (MS -MVP), Nov 18, 2017
    #2
  3. phishing scam?

    Hi Marie,

    There are different types of Phishing scam, and the one that you received might be probably a
    "Deceptive Phishing" or "System Reconfiguration Attacks". For you to prevent receiving a phishing email and to be more aware about scams, we suggest that you report it by following the steps on this
    link. There are tips as well on the said link on how to determine a phishing email.

    We're looking forward to your feedback.
     
    Carlos Tin, Nov 18, 2017
    #3
  4. Phishing

    If you did a clean install you are fine. (and by that I mean you deleted all partitions on drive and scanned your data with a tool like MalwareBytes from MalwareBytes.com) Any software they would have installed is gone. Your router will ignore packets that appear if they did not originate from a computer inside your network.

    Not sure what you use for a router or if you are using the default router password. This is an extreme case. You can Google "Malware on Routers". If you are concerned you could reset the router so it reloads base firmware. (Clean install). Now if this is a supplier modem router you could ask them to reset. In any case the default router password should always be changed. Write it on a piece of tape and stick to bottom of router so it's always handy. I always use my own router, even if supplier supplies one and first thing I do is change password.

    Now as I said this is an extreme case, most malware outfits are not that sophisticated and there are plenty of fish out there so they just move on.

    Ken

    Edit: We didn't discuss identity theft. If you let them on they could have copied some data. I would be changing all financial passwords at a minimum and I would just put a little extra effort into watching accounts. Not to raise fear level. Just do it as a precaution.
     
    Caledon Ken, Nov 18, 2017
    #4
  5. Racco Win User
    Thanks. Yes I did all that from a different computer. It was a lot of work but I was paranoid enough to take the time. It's been a month. The corrupted computer has been off-line and all seems ok. I am starting to investigate getting that machine back on line. I will ask my provider to reset their router just in case.
     
    Racco, Nov 18, 2017
    #5
  6. It's not paranoid. You can't tell what they are doing in the background. A clean install is the answer.
     
    Caledon Ken, Nov 18, 2017
    #6
  7. simrick Win User
    Hi.
    Glad you wiped the machine - that's the only sure way to be rid of whatever they did, once they've been in your system.
    Ken is right - all passwords should be changed from a known-clean system. You have to assume that, once they were in, a silent script was run to collect all kinds of data from your machine, especially passwords.

    Sorry you had to go through this. In the future, a Macrium image would have been a quicker solution to restore the system; then the chore of changing passwords would only have had to be done..
    Backup and Restore with Macrium Reflect Backup Restore Tutorials
    They have a free version which works well; many members here use it.
     
    simrick, Nov 19, 2017
    #7
  8. Racco Win User

    Phishing

    Thanks for all the assurances and suggestions; all very helpful. I've done all the above, and will look into the Macrium back up
    consider this thread solved
     
    Racco, Nov 27, 2017
    #8
  9. simrick Win User
    Cheers! *Thumbs
     
    simrick, Apr 5, 2018
    #9
Thema:

Phishing

Loading...
  1. Phishing - Similar Threads - Phishing

  2. Phishing email

    in Windows 10 Gaming
    Phishing email: I got an email in my Yahoo mail, it says it is from Microsoft Teams, it looks legitimate but there is one error that makes me think it is not. I cannot find an address to send it to Microsoft. Everything I find is related to Outlook email, I don’t use Outlook email. So what...
  3. Phishing email

    in Windows 10 Software and Apps
    Phishing email: I got an email in my Yahoo mail, it says it is from Microsoft Teams, it looks legitimate but there is one error that makes me think it is not. I cannot find an address to send it to Microsoft. Everything I find is related to Outlook email, I don’t use Outlook email. So what...
  4. Phishing email

    in AntiVirus, Firewalls and System Security
    Phishing email: I got an email in my Yahoo mail, it says it is from Microsoft Teams, it looks legitimate but there is one error that makes me think it is not. I cannot find an address to send it to Microsoft. Everything I find is related to Outlook email, I don’t use Outlook email. So what...
  5. Blocking a phishing email...

    in AntiVirus, Firewalls and System Security
    Blocking a phishing email...: I was trying to block a repetitive phishing email using the "Rules" option this was my first time using this option and I may have stuffed my email, as soon as I hit the "enter" key all my email list started to disappear, and now my email won`t/can`t receive or send, can...
  6. another Defender phishing scam

    in Windows 10 Gaming
    another Defender phishing scam: just received this one - full headers of email msg included---------- Original Message ----------Return-Path: <*** Email address is removed for privacy ***>Received: from mx03.dca.untd.com mx03.dca.untd.com [10.171.44.33]by maildeliver10.vgs.untd.com with SMTP id...
  7. another Defender phishing scam

    in Windows 10 Software and Apps
    another Defender phishing scam: just received this one - full headers of email msg included---------- Original Message ----------Return-Path: <*** Email address is removed for privacy ***>Received: from mx03.dca.untd.com mx03.dca.untd.com [10.171.44.33]by maildeliver10.vgs.untd.com with SMTP id...
  8. Windows defender keeps showing these trojans/phishing threats that need actions. But when I...

    in Windows 10 Gaming
    Windows defender keeps showing these trojans/phishing threats that need actions. But when I...: I have gotten a few of these trojan warnings from IO Bit malware fighter and windows defender. Malware fighter says quarantined and deleted. defender has them still in the threats and says they need actions. When i try nothing happens. I am afraid to do anything with this new...
  9. Windows defender keeps showing these trojans/phishing threats that need actions. But when I...

    in Windows 10 Software and Apps
    Windows defender keeps showing these trojans/phishing threats that need actions. But when I...: I have gotten a few of these trojan warnings from IO Bit malware fighter and windows defender. Malware fighter says quarantined and deleted. defender has them still in the threats and says they need actions. When i try nothing happens. I am afraid to do anything with this new...
  10. Phishing Scam

    in Windows 10 Gaming
    Phishing Scam: Hi team, Wondering what to do since I clicked on the link provided in this email. I entered my phone number and password. BUT I did change my outlook account password after I realized that it was a scam and did a virus scan which came up clean. I'm still concerned as I gave...