Home
Blog
Tech Support Scams: The Fake "Microsoft" Call That Costs Victims Thousands

Tech Support Scams: The Fake "Microsoft" Call That Costs Victims Thousands

Reviewed by
Table of Contents

Key Takeaways

The phone rings. The caller ID says "Microsoft." A professional-sounding voice tells you that your computer has been hacked, that they've detected unauthorized access to your device and your personal data is at risk. They sound calm. They sound official. They know your operating system. They have an employee ID number.

And they're about to steal everything.

Tech support scams impersonating Microsoft are one of the fastest-growing forms of cybercrime in the United States. In 2024 alone, the FBI's Internet Crime Complaint Center (IC3) recorded $1.464 billion in losses from tech support scams, a staggering jump of roughly $500 million over 2023. More than 36,000 victims filed reports that year. And experts warn the actual number of victims is far higher, because most people who get scammed never report it, out of embarrassment, confusion, or simply not knowing where to go.

Here's the truth: if someone is calling you claiming to be from Microsoft, they are almost certainly not from Microsoft. And if you don't know exactly how this scam works, you're already at a disadvantage.

This post walks you through the entire playbook, how the fake call unfolds, how to spot every warning sign, and exactly what to do if you (or someone you love) has already picked up.

The numbers are staggering, and growing

Before diving into the mechanics, it's worth understanding just how widespread this problem has become.

According to the FBI's 2024 IC3 Annual Report, internet crime losses hit a record $16.6 billion across more than 859,000 complaints, a 33% increase from the prior year. Tech support scams were among the top contributors to that total. By 2025, losses reported to IC3 surpassed the $20 billion mark.

Older Americans bear the heaviest burden. The FBI has identified tech support scams as the #1 most-reported type of elder fraud. In 2023, nearly 18,000 victims aged 60 and older reported tech support scams to IC3. By 2025, tech support scams alone cost victims aged 60+ more than $1.04 billion, out of $7.7 billion in total elder fraud losses reported to IC3 that year.

These aren't small numbers. These are life savings. Retirement accounts. Money that will never come back.

How the scam actually works (step by step)

There's a reason this scam is so effective: it's been refined over years, it exploits real fears, and it's meant to keep you on the phone and compliant before you have time to think.

Here's how it typically unfolds.

Step 1: They make contact

Scammers reach you through one of several channels:

  • A phone call out of the blue. They claim to be from "Microsoft Technical Support," "Windows Security," or a related department. Their caller ID may even display a number that looks like it belongs to Microsoft, a technique called caller ID spoofing.
  • A terrifying pop-up. You're browsing the web when your screen fills with a blaring alarm sound and a message that looks like a Microsoft Security Alert. It says your computer has been locked due to a virus, and you must call a phone number immediately to avoid data loss.
  • A phishing email. You receive a message claiming your Microsoft license has expired or that suspicious activity has been detected on your account, urging you to call a support number.
  • A fake search ad. You Google "Microsoft support phone number" and the first result is a paid ad leading to a scammer's fake support site.

Step 2: They create panic

Once they have you on the line, the goal is to make you feel like you have a serious emergency on your hands. Common scripts include:

  • "We've detected that your computer is sending out error signals to our servers."
  • "Hackers in Eastern Europe have accessed your IP address and are downloading your files right now."
  • "Your Windows license has been flagged for suspicious activity and will be deactivated in 24 hours."

The urgency is deliberate. A panicked person doesn't pause to verify. A panicked person follows instructions.

Step 3: They "prove" the problem

This is where the scam gets clever. To make the threat feel real, the caller will often ask you to open Windows Event Viewer, a built-in tool that logs system activity. Here's the thing: Event Viewer always shows thousands of "errors" and "warnings" on every Windows computer, even perfectly healthy ones. It's completely normal. But scammers use it as fake evidence.

"See all those errors? That's proof your system has been compromised."

It's a lie, but it's convincing if you don't know better.

Step 4: They ask for remote access

Next comes the most dangerous step. The scammer will ask you to download a remote access application, tools like TeamViewer, AnyDesk, or even Microsoft's own Quick Assist. These are legitimate programs used by real IT professionals, which makes the request sound reasonable.

Once they have remote access to your computer, they can:

  • See everything on your screen, including banking sites and passwords
  • Install malware that survives even after the call ends
  • Silently drain bank accounts while keeping you distracted
  • Steal credentials, documents, and personal data

Step 5: They demand payment

Having "fixed" your imaginary problem, the scammer demands payment, typically through methods that are difficult or impossible to reverse:

  • Gift cards (Google Play, Apple, Amazon, Walmart), by far the most common method, since they're untraceable
  • Wire transfers
  • Cryptocurrency
  • Zelle or Venmo

They may also instruct you to go to a physical store to buy the gift cards, coaching you over the phone on what to tell the cashier.

The AI upgrade: it's getting harder to tell

In 2025, tech support scams got a dangerous upgrade. Artificial intelligence has made it easier than ever for scammers to impersonate trusted voices and institutions with chilling accuracy.

AI voice-cloning technology allows fraudsters to mimic the speech patterns, tone, and cadence of real professionals, or even people you know. According to Adaptive Security, AI-powered scams surged 1,210% in 2025. Deepfake vishing (voice-phishing using AI-generated voices) is now being identified as a top enterprise risk, and the technology is increasingly accessible to criminal networks.

The result: the "Microsoft call" of 2025 may sound more legitimate, more natural, and more authoritative than ever before.

9 warning signs you're talking to a scammer

Microsoft is unequivocal on this point: "Microsoft will never proactively reach out to you to provide unsolicited PC or technical support." If you get an unsolicited call, pop-up, or email about your computer, that is itself the red flag.

Beyond that, here are nine warning signs to know:

  1. An unsolicited call claiming to be from Microsoft or Windows Support. Real tech companies don't call you out of the blue.
  2. A pop-up with a phone number you're urged to call. Legitimate Microsoft security warnings never include a phone number to call.
  3. Caller ID shows "Microsoft." Caller ID can be spoofed, this means nothing.
  4. A request to download remote access software. No legitimate company will ask for remote access during an unsolicited call.
  5. Payment requested in gift cards. No real company accepts gift cards as payment for technical services.
  6. Extreme urgency and pressure. Phrases like "your account will be locked in 2 hours" are meant to override your judgment.
  7. Being told not to tell family or your bank. This isolation tactic is a hallmark of all financial fraud.
  8. Being "shown" errors in your Event Viewer. Normal computers show these errors. It is not proof of anything.
  9. Claims your Windows license has expired. Microsoft doesn't call to inform you of license issues.

Who gets targeted (and why)

While anyone can become a victim, scammers specifically target people who:

  • Are older adults, who may be less familiar with how tech companies actually operate and more trusting of authority figures
  • Are actively searching for tech support online and encounter fake search ads
  • Have limited tech literacy and don't know what "normal" computer behavior looks like
  • Run small businesses that depend heavily on their computers, creating a higher-stakes environment that makes urgent calls feel more credible

The shame factor is also real and intentional. Scammers cultivate feelings of embarrassment in their victims, which is why so many people never report what happened to them. According to the FBI, reported figures represent only a fraction of actual incidents.

What to do if you've already been scammed

If you realize mid-call that something is wrong, hang up. Right now. You don't owe a scammer a polite goodbye.

If the call has already ended and you're worried you were compromised, act fast:

  1. Disconnect your device from the internet (turn off Wi-Fi, unplug ethernet). This cuts off any remote access.
  2. Call your bank immediately. Ask them to freeze your accounts and reverse any unauthorized transactions. Time is critical.
  3. Contact your credit card company if you gave card information.
  4. Call the gift card company if you shared gift card codes. Google, Apple, and Amazon all have fraud lines, and acting quickly may recover some funds.
  5. Uninstall any remote access software the caller had you install (TeamViewer, AnyDesk, Quick Assist, etc.).
  6. Change all passwords on a separate, clean device.
  7. Run a full antivirus or anti-malware scan on the affected computer.
  8. Consider a factory reset if you believe the device was deeply compromised.
  9. Report it to the FTC at ReportFraud.ftc.gov.
  10. File a complaint with the FBI at IC3.gov.

You are not the first person this has happened to. You are not alone, and you are not stupid. These operations are run by sophisticated criminal organizations that refine their scripts constantly. Reporting helps law enforcement build cases and protect the next potential victim.

How to protect yourself going forward

Prevention is far easier than recovery. Here are the habits that will protect you:

  • Bookmark the real Microsoft support page. If you ever genuinely need help, go there directly, never call a number from a pop-up or unsolicited email.
  • Use a reputable security suite that blocks malicious pop-ups and phishing sites before they reach your screen.
  • Talk to older family members about this scam. Forewarned is forearmed. A quick conversation about "Microsoft will never call you" can prevent a devastating financial loss.
  • Pause before you act. Scams run on urgency. If someone is demanding you act right now, that urgency itself is the scam.
  • Hang up and verify independently. If you're ever unsure whether a call is legitimate, hang up. Look up the company's official phone number on their website and call that number directly.

Get started with a free scan and see exactly where you may be exposed before a scammer finds it first.

Conclusion

The fake "Microsoft" call is not a new scam, but it is a growing one, an evolving one, and a devastatingly effective one. In 2024, it cost Americans nearly $1.5 billion. In 2025, losses only climbed higher. With AI now in the toolkit, these impersonation calls are becoming harder to detect and easier to fall for.

The single most important piece of knowledge you can carry: Microsoft will never call you first. Not about a virus. Not about a license. Not about a security breach. If a call comes in (no matter how official it sounds, no matter what the caller ID says) hang up.

And then tell someone else who might not know.

Think you or a family member may have been targeted? Report it to the FTC at ReportFraud.ftc.gov and the FBI at IC3.gov. If you need help securing your device or protecting your identity after a potential compromise, get a free security scan with Guardio today and stay protected from the fake sites and malware these scams push.

CMS-based CTA:
Add Guardio to BrowserTake Security Quiz
Default CTA:
Smart protection, built for how you live online
Stay ahead of threats with real-time insights and proactive protection.
Add Guardio to BrowserTake Security Quiz
CMS-based "Did you know?" block
Did you know?
Default "Did you know?" block
Did you know?

Make sure you have a personal safety plan in place. If you believe someone is stalking you online and may be putting you at risk of harm, don’t remove suspicious apps or confront the stalker without a plan. The Coalition Against Stalkerware provides a list of resources for anyone dealing with online stalking, monitoring, and harassment.

Guardio Security Team
Guardio’s Security Team researches and exposes cyber threats, keeping millions of users safe online. Their findings have been featured by Fox News, The Washington Post, Bleeping Computer, and The Hacker News, making the web safer — one threat at a time.
Tips from the expert

Related articles

FAQs

Will Microsoft ever call me about a problem with my computer?

No. Microsoft will never proactively call you to provide unsolicited PC or technical support. If you receive a call claiming to be from Microsoft about a virus, license issue, or security breach, it is a scam. Microsoft's official policy states it does not make unsolicited outbound calls to customers for support purposes.

How do tech support scammers get my phone number?

Tech support scammers typically buy lists of phone numbers in bulk from data brokers or the dark web, where personal information from past data breaches is sold. They also use automated dialers to call numbers randomly. Your number being called doesn't mean the scammer has any other information about you.

What should I do if I gave a tech support scammer remote access to my computer?

Disconnect your computer from the internet immediately, then call your bank to flag any suspicious activity. Uninstall any remote access software (TeamViewer, AnyDesk, Quick Assist) the caller had you install, change all your passwords from a separate device, and run a full malware scan. Report the incident to the FTC at ReportFraud.ftc.gov and file a complaint at IC3.gov.

Can a tech support scammer really see my passwords?

Yes. Once a scammer has remote access to your computer, they can see everything on your screen in real time, including usernames and passwords you type into banking or email sites. They can also install keyloggers or other malware that continues recording your activity after the call ends, even if you think the problem has been resolved.

Why do tech support scammers ask for gift cards?

Scammers demand gift cards because they are nearly impossible to trace or reverse once the codes are shared. Unlike a bank transfer or credit card payment, gift card transactions offer victims almost no recourse. By the time you realize you've been scammed, the codes have already been redeemed and the money is gone.

How much money do tech support scams cost victims each year?

Tech support scams cost Americans $1.464 billion in losses in 2024, according to the FBI's Internet Crime Complaint Center (IC3). By 2025, total internet crime losses including tech support fraud surpassed $20 billion. Older adults are disproportionately affected, with victims aged 60 and over reporting average losses of more than $38,000 per incident.

Table of Contents
Can You Spot a Scam Text Message?
Test your skills and learn how to protect yourself from online scams.
Take the quiz now
Can You Spot a Scam Text Message?
Test your skills and learn how to protect yourself from online scams.
Take the quiz now