Home Malware Programs Adware 'Windows Troubleshooter' Technical Support Scam

'Windows Troubleshooter' Technical Support Scam

Posted: December 1, 2017

The 'Windows Troubleshooter' Technical Support Scam is a fraudulent scheme whose purpose is to take money from victims by convincing them to pay hundreds of dollars for a fake piece of software. Usually, technical support tactics like this one work by tricking victims into contacting a fake support agent, but the authors of 'Windows Troubleshooter' Technical Support Scam have taken a different approach. Instead of using a phone line, they propose a solution to the user – to purchase a security product from Microsoft that will supposedly fix the pending issues directly. However, the application they offer is fake, and you can rest assured that it is not affiliated with Microsoft or any other reputable company.

The peculiar thing is that this fraudulent scheme is not hosted on a website and, instead, it is executed with the help of a harmful application that may be distributed as a cracked software or other illicit digital content. Once launched, the file linked to the 'Windows Troubleshooter' Technical Support Scam may create and execute the following processes, which serve various purposes:

  • The process 'csrvc.exe' kills and disables the Windows Explorer, the Registry Editor and the Task manager
  • BSOD.exe displays a fake Blue Screen of Death and hides the desktop icons/Taskbar.
  • Troubleshoot.exe displays a fake Windows Troubleshooter, which initiates a fake scan.
  • Scshtrv.exe screenshots the desktop and uploads the image to a remote FTP server under the control of the cybercrooks.
  • Adwizz.exe serves as an adware that displays ads in the active Web browser windows.


One of the scary things about this tactic is that its authors want to be paid via PayPal or Credit Card transaction. However, the payment is completed through their fake Windows Troubleshooter, and it is entirely possible that they may use this to collect the payment information or other sensitive data from the victim. Never purchase security products that are advertised via such shady techniques and don't forget that companies like Microsoft would never promote their software via fear-inducing messages and alerts.

The removal of the files linked to the 'Windows Troubleshooter' Technical Support Scam should be completed with the help of a trustworthy and up-to-date anti-malware scanner that will ensure the full removal of all corrupted files automatically.

Loading...