WEEKEND REWIND: Peninsula computer repair company identifies Skype vulnerability

SEQUIM — Quality Assured Computer Services — which has offices in both Port Angeles and Sequim — has identified a method that allows hackers to infiltrate personal computers through a popular application.

Hackers are able to infiltrate personal computers through Skype, an internet-based telephone service provider offering free calling between subscribers, said Jim Manderscheid, who co-owns Quality Assured Computer Services with Steve Saiz.

Skype enables file transfers, texting, video chat and videoconferencing.

Manderscheid said the hacking method was discovered when his company serviced a customer’s computer in Sequim.

Sheri Crain, Sequim Police Department deputy chief, said so far the Skype hack has not been widespread in the area.

“This is certainly a new spin but we have no reports of it happening here,” Crain said.

Chief Criminal Deputy Brian J. King of the Clallam County Sheriff’s Office said no reports of the scam have been given to his office.

And while this method of hacking has a new twist, similar scams have been ongoing for years, said Port Townsend Police Department Detective Luke Bogues.

“Many people leave Skype running in the background,” Manderscheid said.

“This allows friends and family to video or audio call — in most cases for free.

“But here is the new twist. The user may get an incoming video call from what looks like a Microsoft Support Tech.”

This method tricks the operator into believing the call is from a legitimate source, Manderscheid said.

“To be clear, Microsoft will never call you by Skype or regular landline,” he said.

Once the user accepts the call, “it initiates all kinds of problems for the user, personally, and the user’s computer,” Manderscheid said.

If the call is received, the computer’s antivirus program has been overridden by the user to allow the caller to send a malware packet into the computer unchecked, Manderscheid said.

The damage starts with a severe level virus called “Expiro,” Manderscheid said, which can steal the user’s personal information and lower the security settings on their internet browser.

“It can also give a malicious hacker access and control of the PC,” he said.

“This is just the beginning. The user’s Skype contacts, email contacts and login passwords are stolen.”

And Expiro isn’t the only malicious software, known as malware, that can infect the computer through this type of attack, Manderscheid said.

Other malware includes ransomware, trojans and worms, he said.

“Once the call is received, the user will see a person who will introduce themselves as being from Microsoft,” Manderscheid said.

“Behind this person will be wall posters and paraphernalia that creates the illusion of an actual Microsoft office. The tech person may even be wearing a Microsoft shirt with badge. It is all staged and a con.”

The tech person at the other end, Manderscheid continued, might start with some small personal chit-chat commenting on local weather, and might even make it seem that the call is coming from a local Microsoft Support Center.

“Skype provides callers with information that can tell them the user’s location,” Manderscheid said.

“From there it is easy to gather more information such as local weather, traffic and news — all to make it more convincing to win the user’s confidence.”

After the introduction, the tech will ease into a conversation about a free diagnosis or tune-up, Manderscheid said.

Once done, the tech will claim to have detected problems with the user’s computer, and asks if the user would like the tech to take care of the problem, he said.

“This is another turning point,” Manderscheid said.

“The tech will ask for a credit card or other form of payment. If payment is made, these con artists can now add your credit and identity to their list of loot.”

There is also a chance that while making small talk the tech might have installed a ransomware program.

“If they are not paid for a service, the ransomware program runs, encrypting files on the user’s hard drive,” Manderscheid said.

“The computer’s data files are now held hostage. There is little likelihood that the files will be recoverable, even if the ransom is paid. Unless the user has a current data backup.”

“If someone falls victim to such a scam and loses money, the victim may file a report with us in addition to reporting to the Federal Trade Commission, but we will not investigate the crime,” Bogues said.

“The perpetrators of these crimes are not in our jurisdiction or even the state, and in most cases aren’t even in the United States.”

The bottom line, Bogues said, “is don’t do business over the phone or internet with businesses and individuals who you did not initiate contact with using a verified phone number or reputable website.”

To file a complaint, see http://tinyurl.com/PDN-FTCcomplaint.

________

Reporter Chris McDaniel can be reached at 360-452-2345, ext. 56650, or cmcdaniel@peninsuladailynews.com.

More in News

Ellen White Face, left, and Dora Ragland enjoy some conversation after finishing a Christmas dinner prepared by Salvation Army Port Angeles staff and volunteers. The Salvation Army anticipated serving 120-150 people at its annual holiday meal on Tuesday. (Paula Hunt/Peninsula Daily News)
Hundreds served at annual Salvation Army dinner

Numbers represent growing need for assistance, captain says

Jefferson separates prosecutor, coroner roles

Funeral director hired on one-year basis

Public concerned about hospital partnership

Commenters question possible Catholic affiliation

Sylvia White of Port Townsend is making a major gift to the nonprofit Northwind Art. (Diane Urbani/Northwind Art)
Port Townsend artist makes major gift to Northwind

Artist Sylvia White, who envisioned an arts center in… Continue reading

Skaters glide across the Winter Ice Village on Front Street in downtown Port Angeles. The Winter Ice Village, operated by the Port Angeles Chamber of Commerce, is open daily from noon to 9 p.m. through Jan. 5. (Dave Logan/for Peninsula Daily News)
Fresh ice

Skaters glide across the Winter Ice Village on Front Street in downtown… Continue reading

Paranormal investigator Amanda Paulson sits next to a photo of Hallie Illingworth at Lake Crescent, where Illingworth’s soap-like body was discovered in 1940. Paulson stars in a newly released documentary, “The Lady of the Lake,” that explores the history of Illingworth’s death and the possible paranormal presence that has remained since. (Ryan Grulich)
Documentary explores paranormal aspects disappearance

Director says it’s a ’ Ghost story for Christmas’

Funding for lodge in stopgap measure

Park official ‘touched by outpouring of support’

Wednesday’s e-edition to be printed Thursday

Peninsula Daily News will have an electronic edition on… Continue reading

Joe Nole.
Jefferson County Sheriff Joe Nole resigns

Commissioners to be appoint replacement within 60 days

Residents of various manufactured home parks applaud the Sequim City Council’s decision on Dec. 9 to approve a new overlay that preserves manufactured home parks so that they cannot be redeveloped for other uses. (Matthew Nash/Olympic Peninsula News Group)
Sequim preserves overlay for homes

Plots can be sold, but use must be same

A ballot box in the Sequim Village Shopping Center at 651 W. Washington St. now holds two fire suppressant systems to prevent fires inside after incidents in October in Vancouver, Wash., and Portland, Ore. A second device was added by Clallam County staff to boxes countywide to safeguard ballots for all future elections. (Matthew Nash/Olympic Peninsula News Group)
Political party officials fine with Clallam’s loss of bellwether

With election certified, reps reflect on goals, security

For 20-plus years, Bob and Kelly Macaulay have decorated their boat and dock off East Sequim Bay Road for Christmas, seen here more than a mile away. However, the couple sold their boat earlier this year. (Doug Schwarz)
Couple retires Christmas boat display on Sequim Bay

Red decorations lit up area for 20-plus years