Bottom line: A latest warning from Malwarebytes explains that customers trying to find tech support phone numbers can encounter fake contact info, even when visiting the official web sites of main manufacturers. Users ought to rigorously study textual content showing in support website search bars and strategy sponsored Google search outcomes with warning, if in any respect.
Many folks doubtless perceive that they need to confirm URLs when visiting websites for banks, tech corporations, and different crucial providers to keep away from fraudulent hyperlinks. While steering away from hyperlinks in suspicious emails is a widely known safety precaution, hackers additionally often buy sponsored Google adverts that lead to fake web sites designed to steal private info.
However, the newest rip-off is even sneakier. Instead of making fake web sites, scammers inject false tech support numbers into legit websites by modifying parameters in sponsored search hyperlinks. Search engines do not show the added textual content within the URLs, and official support pages do not block it, making the rip-off seem extra convincing.
The scheme begins when customers search Google for tech support numbers for main manufacturers. Clicking on a prime sponsored outcome leads to an precise support web page, however the scammer’s phone quantity seems within the website’s search bar.
Unsuspecting customers who name the quantity, considering they’ve reached the corporate’s name middle, are as a substitute related to scammers making an attempt to steal account credentials or banking info. Malwarebytes experiences that attackers have focused support pages for Netflix, PayPal, Apple, Microsoft, Facebook, Bank of America, and HP. These hijacked search outcomes are hardest to spot on Apple’s web site.
Malwarebytes says its Browser Guard extension can detect this tactic as a search hijack and warn customers. Other pink flags embrace phone numbers showing on the finish of legit URLs, extreme use of alarming language, encoded characters like “%20,” and search pages exhibiting outcomes earlier than customers enter a question.

To keep secure, customers ought to lookup support numbers in beforehand verified communications, akin to previous emails or direct messages from the corporate, and examine them with present search outcomes. If a support consultant asks for private or banking info unrelated to the difficulty, cling up instantly.
Manually navigating to an organization’s web site and accessing the support part (with out counting on search engines like google and yahoo) may assist keep away from hijacked sponsored hyperlinks. Verified hyperlinks can usually be present in trusted communications or on the corporate’s official social media profiles and Wikipedia web page.
