A tech-support scam usually opens with a fright. A full-screen pop-up warns of a virus, freezes the computer, and displays a phone number to call for urgent help. The number does not reach Microsoft or Apple; it reaches a scammer who charges for repairs the machine never needed or talks the caller into granting remote access that exposes every password and account on the device. Older adults are a favored target, and the Federal Trade Commission warns that the newest versions of the scheme steer victims well past a bogus repair fee and toward draining entire savings accounts.
The pop-up is the whole con
The alarming screen is not a symptom of a real problem; it is the scam itself. The FTC’s guidance on tech-support scams explains that these pop-ups impersonate well-known companies and display a number to call, and it stresses that legitimate firms do not reach out by phone, email, or text to announce a virus, nor do genuine security warnings ever instruct a user to dial a number. A message that combines a dire threat with a phone number to call is, by that single measure alone, a reliable marker of fraud rather than a real alert from the operating system.
What the operator wants becomes clear the moment the call connects. According to the FTC, tech-support scammers try to sell useless services, capture a credit card number, or gain access to the computer in order to install malware that can then read everything on it, including saved passwords and banking logins. The friendly technician on the other end of the line is working steadily to convert a moment of panic into a payment, a stolen card, or a quiet foothold inside the machine that can be used long after the call ends.
Urgency is the lever throughout the encounter. The FTC has warned that seemingly urgent security messages are a common gateway to these scams, using a locked screen and dire, ticking-clock language to short-circuit the pause that would otherwise expose the ruse. The pressure to act now is doing the same work the fake virus warning started, keeping the target reacting instead of thinking, and discouraging the simple step of checking with someone trusted before doing anything at all.
Free retirement updates: Enrollment and claim windows come and go, and missing one can cost you real money. The free Retirement Shield newsletter keeps you ahead of the deadlines that matter. Sign up free.
From a small fee to the whole account
The damage rarely stops at a one-time charge for a phantom repair. The FTC has documented a newer wave in which tech-support scammers pursue a victim’s life savings, often by claiming that the computer or a bank account has been hacked and insisting the money must be moved somewhere safe to protect it. The initial repair fee becomes a foot in the door for a far larger theft, one dressed up convincingly as an act of protection rather than the robbery it actually is.
Remote access is what makes that escalation possible. Once a scammer persuades someone to install a support tool, the machine and everything on it are exposed, from banking logins to personal files, and the operator can guide transactions in real time while the victim watches the cursor move on its own. For a retiree with savings visible inside a single banking app, that level of access can translate directly and quickly into emptied accounts before anyone thinks to hang up the phone.
The payment demands follow familiar, hard-to-reverse channels for a reason. Victims are steered toward gift cards, wire transfers, or cryptocurrency, and are sometimes told to withdraw cash or buy cards in person and read off the numbers to avoid a bank’s questions. Each method is chosen because it moves money quickly and offers almost no chance of recovery once the transfer is complete, which is exactly why a genuine company would never request payment in those forms.
The right move when the screen locks
The correct response to a threatening pop-up is to ignore its instructions entirely. The FTC advises against calling the number or clicking anything inside the message, and recommends closing the browser or restarting the computer to clear the screen, since a real security alert never depends on the user telephoning a stranger for help. Treating the pop-up as the attack itself, rather than a warning about some other problem, reframes the whole encounter correctly and defuses the urgency it was built to create.
Trusted help should come from a known source rather than the screen. Instead of the number in the pop-up or the first result in a hurried search, the FTC points people toward a person or company already known and trusted, reached through a number verified independently, and it directs anyone contacted by a tech-support scammer to report the incident at the agency’s fraud site. That habit keeps the choice of whom to trust firmly out of the scammer’s hands.
The scam endures because it turns a person’s own caution about security into the weapon used against them. A fake warning about a threatened computer produces exactly the alarm that makes a victim compliant, and the more careful someone tries to be about protecting a device, the more persuasive the counterfeit alert can become. Recognizing that a genuine security message never arrives with a phone number attached is the single distinction that reliably separates a harmless pop-up from the opening move of an emptied account.
This article was researched and drafted with the assistance of artificial intelligence.
More Financial Reading