Live data from Hacker News

Trolling a Windows support scammer

arstechnica.com

21–26 of 26 posts

Re: Trolling a Windows support scammer

#21
My favorite "nuke" of one of these scammers involved a guy who basically did the same thing, but set his VM up with a virus-ladened system image. The scammer of course got the virus, and it b0rked their system post-haste. They were not happy, according to the transcript. Oh well.

Re: Trolling a Windows support scammer

#23
post #21

My favorite "nuke" of one of these scammers involved a guy who basically did the same thing, but set his VM up with a virus-ladened system image. The scammer of course got the virus, and it b0rked their system post-haste. They were not happy, according to the transcript. Oh well.

A virus can infect someone remotely viewing a system through TeamViewer?

Re: Trolling a Windows support scammer

#25
post #8
post #2

2 hours? Amateur! A combination of VirtualBox, Twilio, a VPN and an old i5 laptop allows for far longer scammer frustration. Simply give them remote access (after hiding the VirtualBox tools) then turn down the core count, memory allocation and cap execution to 10%. Have the VM connected to the VPN at the Host end to give it Internet access without exposing your own network. Randomly disconnect the VPN for extra hila…

How and what for would you use the Twilio part of your setup?

It means you aren't missing any actual calls by keeping your PSTN line engaged, the call is recorded for hilarity, and you can take the call when you aren't at home.

You can make an otherwise boring car journey far more entertaining by having the scammer assist you rebooting your fictional router.

Also I've not tried this yet but supposedly it's now easy to log SIP devices in.

But now I'm wondering about putting them through to some ridiculous pre-recorded messages to hear the reaction...

Re: Trolling a Windows support scammer

#26
post #21

My favorite "nuke" of one of these scammers involved a guy who basically did the same thing, but set his VM up with a virus-ladened system image. The scammer of course got the virus, and it b0rked their system post-haste. They were not happy, according to the transcript. Oh well.

A virus can infect someone remotely viewing a system through TeamViewer?

I'm not sure what remote software they were using, but I do know they had spiked the filesystem with files the perps were downloading remotely (named in such a manner to make them seem like worthwhile targets). This was just something I read, so it may not be worth the electrons it was presented with...
Post reply on HN