Domain Host: GoDaddy
Domain IP: 2a02:4780:b:841:0:8b9:11bc:10
Carrier: Digitorzo
Call Center Location: India
Answers as: “Suppoat” or "HP
Falsely Claims: Driver/Software Issues, then “network contamination”
Remote Access Software: QuickAssist (Nickname: “HP Secure Server”) or UltraViewer (ID: 98980197/DESKTOP-3E8Q55B)
Once remotely connected to my virtual machine,. the incredibly-impatient bhenchod ran MSInfo32 so he can falsely claim a hacker stopped most of my drivers. then the “dir/s” command in the Command Prompt to run a “scan” and falsely claim my computer was infected by “the csrss.exe virus”
- In order to “cancel the csrss.exe trojan”, the bhenchod ran Task Manager to try and close it to no avail, then the “netstat -sp -tcp” command so he can falsely claim multiple connections were established on my network and computer, then whatismyipaddress.com before I intercepted.
*I was then asked to hire a “network technician” from “wedevelope” for $199.99. I opted to pay with the bhenchod song, and he responded by going to whatismyipaddress.com to no avail.
Outside of the printer scam, the call center appears to largely facilitate travel scams under the names of “TheSouthSky,” in which they falsely claim to operate from the same fake address as InfoServ/Webustuc and Nitin Tour and Travels from Near Rajiv Chowk & Beri Wala Bagh, Shanti Nagar Sector-11, Gurugram.
Associated Phone Numbers:
- (866) 991-3411 (Mayfair, parked for the Medial Alert Center)
- +91 9810973833