Increasingly I'm finding clients are responding to these calls from "Windows" where they say a computer is sending out corrupt signals, etc. etc. The scammer talks the client into a Logmein123 or Teamviewer sign-in, takes over the computer, shows them error codes, then charges them to fix it.
I've handled a few of these so far, mostly getting them to cancel the credit card charge, then looking over the computer and doing some virus/malware scans, etc. I remove the icons they and programs they usually place on the computer and whatever I find.
I've got one tomorrow. My question: is there a file or setting you'd recommend I look for particularly? Not sure how to prove that no one can access the computer anymore.
Thanks...looking for ideas.