Fake IT Support Ransomware Phone Call
Verdict: Suspicious | Risk Score: 7/10 | Severity: high
Category: UPI, WhatsApp, Job
How Fake IT Support Ransomware Phone Call Works
Overview: Fraudsters posing as IT support or government security teams are calling government staff, especially in hospitals and civic offices, claiming urgent ransomware threats. Under the guise of 'remote help,' they trick staff into sharing passwords or installing 'security updates' that are actually ransomware. This attack disrupts systems and demands payment while exploiting trust and lack of technical knowledge. How It Works: 1. Caller introduces themselves as a member of the official IT, CERT-In, or hospital cybersecurity team. 2. They warn of an 'active ransomware threat' and claim urgent action is needed to protect crucial data. 3. Staff are instructed to visit suspicious websites or download remote access tools for 'threat remediation.' 4. The fraudster then gains access, locks down files, and a ransomware message appears demanding payment. 5. Panic ensues, as staff fear job loss or legal trouble, making them more likely to comply or cover up. India Angle: These scams often exploit the current buzz around ransomware attacks on Indian public institutions. Government staff in hospitals, ministry branches, and municipal corporations are prime targets. Use of Indian names, localised references, and sometimes Hindi or local languages adds to the credibility of the call. Real Examples: - A Delhi hospital admin gets a call: "This is Rajiv from cyber cell. A ransomware attack is detected, please download this protection tool now." - State government health department staff receives WhatsApp voice note urgently instructing them to share root password. Red Flags: 1. Unsolicited calls claiming to be from government IT/security teams. 2. Urgent instructions to install unknown software or visit unfamiliar sites. 3. Requests for admin or root credentials over phone or WhatsApp. 4. Caller becomes aggressive or threatens consequences for not complying. Protective Measures: - Never share passwords or one-time access codes with anyone over the phone. - Verify all 'IT/security' calls by calling back official numbers independently. - Do not download or run software from links or instructions given on calls. - Train staff to detect social engineering and phishing attempts. If Victimised: - Disconnect the system and inform your workplace's IT/security team immediately. - Report the fraud to cybercrime.gov.in or by calling 1930. - Inform your department head and cooperate with authorities for damage control. Related Scams: - Fake RBI, bank, or UPI support calls with similar tactics. - Calls claiming to be from tech support offering 'virus removal'.
Visual Intelligence:
BharatSecure's AI has identified this as a used in scams targeting Indian users.
Who Does Fake IT Support Ransomware Phone Call Target?
General public across India
Red Flags — How to Identify Fake IT Support Ransomware Phone Call
- Unsolicited IT/security calls asking for passwords
- Instructions to download unknown 'security' tools
- Calls referencing recent ransomware incidents
- Aggressive or threatening tone from caller
What To Do If You Encounter Fake IT Support Ransomware Phone Call
- Do not click any links or share personal information
- Block and report the sender immediately
- Report at cybercrime.gov.in or call 1930
- Inform your bank if financial details were shared
How to Report Fake IT Support Ransomware Phone Call in India
- Call 1930 — National Cyber Crime Helpline (24x7)
- File a complaint at cybercrime.gov.in
- Contact your bank immediately if money was lost
- Call RBI helpline: 14440 for banking fraud
Frequently Asked Questions
- What is Fake IT Support Ransomware Phone Call?
- Overview: Fraudsters posing as IT support or government security teams are calling government staff, especially in hospitals and civic offices, claiming urgent ransomware threats. Under the guise of 'remote help,' they trick staff into sharing passwords or installing 'security updates' that are actually ransomware. This attack disrupts systems and demands payment while exploiting trust and lack of technical knowledge. How It Works: 1. Caller introduces themselves as a member of the official IT,
- How does Fake IT Support Ransomware Phone Call work?
- Overview: Fraudsters posing as IT support or government security teams are calling government staff, especially in hospitals and civic offices, claiming urgent ransomware threats. Under the guise of 'remote help,' they trick staff into sharing passwords or installing 'security updates' that are actually ransomware. This attack disrupts systems and demands payment while exploiting trust and lack of
- How to protect yourself from Fake IT Support Ransomware Phone Call?
- Do not click any links or share personal information Block and report the sender immediately Report at cybercrime.gov.in or call 1930 Inform your bank if financial details were shared
- How to report Fake IT Support Ransomware Phone Call in India?
- Report to cybercrime.gov.in or call 1930 (National Cyber Crime Helpline). You can also contact your local police station's cyber cell.
Verify Any Suspicious Message
Check any suspicious message, link, or call for free at bharatsecure.app. BharatSecure uses AI to detect scams in real-time and protect Indian users.