Gave Remote Access in a Tech Support Scam? Do This Immediately
TL;DR: If you gave a fake tech support caller remote access to your computer, disconnect from the internet immediately, then work through securing accounts from a different, clean device — banking first, then email, then everything else. Don't reconnect the affected computer until it's been properly checked or wiped.
👉 See if your data's already leaked — free 30-second check →
Tech support scams typically start with a pop-up warning, an unsolicited call claiming to be from Microsoft, Apple, or your internet provider, and end with the caller asking you to install a remote access tool "to fix the problem." If that happened, here's what to do right now.
Right now: disconnect
- Turn off Wi-Fi or unplug the ethernet cable on the affected computer immediately — this cuts the scammer's active access.
- Don't restart the computer yet; some remote access tools are configured to reconnect automatically on startup.
- Uninstall the remote access software (TeamViewer, AnyDesk, or similar) once you're confident the connection is fully cut, or have someone technical do this for you.
From a different, clean device
Do the following from a phone or another computer that was never connected to the scam call:
- Banking first. Log into your bank account and check for unauthorized transactions. If you entered banking credentials while the scammer had access, change your password and PIN immediately and consider calling your bank to flag the account.
- Email second. Change your email password — email access is often the key that unlocks password resets for everything else.
- Payment apps and saved cards. Check any browser-saved payment methods or apps for unauthorized charges.
If you paid the "tech support" fee
Whatever payment method was used, follow the matching guide: wire transfer, gift card, or contact your card issuer to dispute the charge if paid by credit or debit card — card payments generally have stronger chargeback protections than wires or gift cards.
Cleaning up the affected computer
A computer that had remote access granted to a scammer should be treated as potentially compromised beyond just the visible session — run a full malware scan with updated antivirus software, and if you're not confident the machine is clean, a factory reset is the safer option, especially if you store financial or sensitive information on it. It's also worth understanding how a single compromised credential can cascade into other accounts — see Credential Stuffing Explained.
Report it
- US: FBI IC3 (ic3.gov) and FTC (reportfraud.ftc.gov)
- UK: Action Fraud
- Canada: Canadian Anti-Fraud Centre
- Australia: Scamwatch
For remote access scams that happened outside a "tech support" framing specifically, see Remote Access Scam Recovery for the broader version of this checklist, and the complete international recovery guide for what comes next.
Frequently Asked Questions
What's the very first thing I should do after giving remote access to a scammer?
Disconnect the computer from the internet immediately — turn off Wi-Fi or unplug the ethernet cable — to cut the scammer's active connection before doing anything else.
Should I restart my computer right away?
Not immediately. Some remote access tools reconnect automatically on startup, so disconnect from the internet first and uninstall the remote access software once you're confident the connection is fully severed.
Is my banking information at risk if I only let them access my screen?
If you entered any banking credentials, PINs, or payment details while they had access — or if they could see your screen during that time — treat those accounts as potentially compromised and change the passwords immediately from a different device.
Do I need to wipe my whole computer?
Not always, but if you're not confident the machine is fully clean after a malware scan, a factory reset is the safer option, especially for a computer that stores financial or sensitive personal information.
Can I dispute a payment made during the scam call?
If you paid by credit or debit card, contact your card issuer to dispute the charge — these payment methods generally have stronger built-in fraud protections than wire transfers or gift cards.
Curious what's already out there about you? Scan My Shadow checks your phone number and email across 1,500+ sources and sends you a clear report — no guesswork, just facts. Start your scan.
- Results within about 5 minutes
- Clear, plain-English report
- Delivered straight to your inbox
- No login or passwords required
- Scan data deleted after report is generated