Scam Defence

Tech Support Scams: What Legitimate Support Will Not Do

Unexpected pop-ups and calls may impersonate Microsoft, Apple or an ISP. Learn the requests legitimate support should never make.

Muhammad Azhar August 14, 2026 Reviewed August 14, 2026 3 min read

A browser pop-up cannot scan the entire computer and know that a paid support number must be called. Tech support scams manufacture a crisis, then request remote access, payment or account credentials.

Requests that should end the conversation

  • Buying gift cards or cryptocurrency to pay a refund fee
  • Installing remote-control software after an unsolicited call
  • Sharing a password or one-time security code
  • Moving money to a “safe” account
  • Disabling antivirus so the technician can connect

Close the warning safely

Do not click buttons inside the page. Close the tab or browser; if it refuses, use the operating system's task manager. Reopen the browser without restoring the suspicious tab, then update and scan the device.

If remote access was granted

Disconnect the network, uninstall the remote tool and seek trusted technical help. From a clean device, secure email and financial accounts, end active sessions and contact the bank. Keep receipts, phone numbers and remote-session records.

Contact support through the official product or a known website. Legitimate companies do not monitor random personal computers and call to announce an infection.

Refund scams reverse the story

The caller may claim a refund was issued incorrectly, alter numbers shown on screen and demand that the “extra” money be returned. Confirm balances using a separate device or direct call to the bank. Screen content controlled through remote-access software is not reliable evidence.

For older or less technical relatives

Agree in advance that unexpected support calls are ended and checked with one trusted person. A simple family process is more useful than expecting someone under pressure to diagnose remote-access software.

Remote-control software changes the risk

Once connected, a scammer can view documents, copy saved browser data and show fabricated system warnings. Some ask the victim to black out the screen or log into online banking while the session continues. End the connection at the network if the application will not close.

Do not trust cleanup performed by the caller

Use a known technician or vendor support channel to inspect installed remote tools, startup items, browser extensions and security exclusions. Change important credentials from a different clean device and contact financial institutions before reconnecting the affected computer.

Legitimate support may use remote access after you initiate a case, but it should identify the case, explain the tool and never ask for gift cards, secrecy or movement of money.

Sources and further reading

Use the right privacy tool for the task

A browser proxy changes the network path for one session. Review the Privacy Policy and use a trusted direct connection for sensitive accounts.