Remote Access Scam UK: What the Software Can Expose
Remote-access software is legitimate; the danger is granting control to an unexpected or unverified caller.
What the scam looks like
A caller, pop-up or message claims to be from a bank, technology company, investment firm or service provider and asks the target to install or open screen-sharing or remote-control software. The tool may be genuine, but the person receiving access is not.
The FCA describes this pattern and lists tools such as AnyDesk, TeamViewer, Teams and Zoom as examples that can be misused.
What access can mean
Capabilities vary by tool, permission and device. Google warns that a person granted Chrome Remote Desktop support access can have full access to apps, files, email, documents and history. Microsoft says a Quick Assist helper can see the screen or control the PC if control is allowed.
Do not reduce the risk to “someone can see your screen”, but also do not claim every session automatically grants every permission. Read each consent prompt and deny unexpected requests.
Verify the helper
Microsoft says to allow a Quick Assist helper only if you initiated the interaction by contacting Microsoft Support directly. TeamViewer says it does not itself provide remote-support services; a caller claiming to be “TeamViewer support” is not providing a service from TeamViewer.
Hang up and contact the organisation through a number on a bank card, statement or independently found official site. For a bank, 159 can connect callers to participating banks, but use the number on the card if in doubt.
If access was granted
1. End the session and disconnect the affected device from the network. 2. Contact the bank immediately from a different device if banking, cards or money may be affected. 3. Remove the remote-access application or disable any unattended-access configuration. Follow the software vendor’s official removal instructions. 4. Run current security scans and install operating-system and application updates. If there is evidence of malware or persistent access, seek trusted technical help and consider a full reset using vendor guidance. 5. From a clean device, change exposed passwords, beginning with email and financial accounts, and revoke unfamiliar sessions and recovery methods.
A one-time support code may expire, but that does not prove the device is safe: the scammer may have changed settings, installed another tool or created persistent access.
Reporting
If money or sensitive data was affected, report at reportfraud.police.uk or on 0300 123 2040 in England, Wales or Northern Ireland; in Scotland, call Police Scotland on 101. TeamViewer has a report form at teamviewer.com/en/report-a-scam/. Contact the bank first where money may be at risk.
Related guides are available at Microsoft Support Scam UK: Spot Fake PC Virus Calls, Apple Tech Support Scam UK: Spot a Fake Pop-up and Printer Support Scam UK: Spot a Fake HP Contact.
Frequently asked questions
Is remote-access software itself malware?
Not necessarily. Legitimate tools are widely used. Risk depends on who receives access, the permissions granted and any changes made during the session.
Is uninstalling the visible app enough?
Not always. Check for unattended access, unfamiliar accounts, startup items and other software, and use trusted recovery guidance if compromise is suspected.
Should I change passwords on the affected computer?
Prefer a separate clean device until the affected machine has been assessed.
Sources checked
- FCA — Screen-sharing scams
- Google Chrome Help — Access another computer with Chrome Remote Desktop
- Microsoft Security Blog — Threat actors misusing Quick Assist in social engineering attacks
- TeamViewer — TeamViewer and scamming
- Report Fraud — reporting a fraud, and who the service covers
- Police Scotland — contact us: non-emergencies on 101