https://old.reddit.com/r/UKPersonalFinance/comments/z1uvo8/this_felt_like_a_scam_how_did_my_bank_know_what/ jump to content my subreddits edit subscriptions * popular * -all * -random * -users | * AskReddit * -funny * -worldnews * -news * -pics * -gaming * -movies * -todayilearned * -mildlyinteresting * -explainlikeimfive * -Jokes * -videos * -dataisbeautiful * -tifu * -Music * -nottheonion * -aww * -space * -TwoXChromosomes * -science * -sports * -LifeProTips * -IAmA * -Art * -books * -Showerthoughts * -OldSchoolCool * -Futurology * -askscience * -gifs * -food * -DIY * -GetMotivated * -nosleep * -history * -UpliftingNews * -Documentaries * -EarthPorn * -photoshopbattles * -WritingPrompts * -InternetIsBeautiful * -philosophy * -gadgets * -creepy * -announcements * -listentothis * -blog more >> reddit.com UKPersonalFinance * comments * other discussions (3) Want to join? Log in or sign up in seconds.| * English [ ][] [ ]limit my search to r/UKPersonalFinance use the following search parameters to narrow your results: subreddit:subreddit find submissions in "subreddit" author:username find submissions by "username" site:example.com find submissions from "example.com" url:text search for "text" in url selftext:text search for "text" in self post contents self:yes (or self:no) include (or exclude) self posts nsfw:yes (or nsfw:no) include (or exclude) results marked as NSFW e.g. subreddit:aww site:imgur.com dog see the search faq for details. advanced search: by author, subreddit... this post was submitted on 22 Nov 2022 285 points (97% upvoted) shortlink: [https://redd.it/z1uv] [ ][ ] [ ]remember mereset password login ATF Submit a new text post Get an ad-free experience with special benefits, and directly support Reddit. get reddit premium UKPersonalFinance joinleave831,496 readers 3,536 users here now Discuss, learn and request advice on how to obtain, budget, protect, save and invest your pounds and pence. --------------------------------------------------------------------- Please read our rules before posting You can find out how to get the most out of our subreddit --------------------------------------------------------------------- First time poster? Your first post will be automatically filtered - you can self-approve your post by reading the instructions left in your post. --------------------------------------------------------------------- Reputation System We have a reputation system. If you post and a response helps you, please reply to their comment with !thanks you will see a PSx flair by regular commenters' names - this is the number of times they've been thanked for their comments. Only the thread poster and mods can use the !thanks command --------------------------------------------------------------------- Discord Official UKPF Discord Server - Discuss your pounds and pence in real-time. --------------------------------------------------------------------- DEBT PROBLEMS? Speak to StepChange, a debt-management charity, or Citizen's Advice Useful Resources Wiki UKPersonalFinance Flowchart Overwhelmed? Start with our Recommended Resources Exchange Rate and Market Timing Questions (and why they're banned) --------------------------------------------------------------------- Important Information This subreddit is not a source of regulated financial advice. Treat any information, recommendations or "advice" that you read here with caution and always do your own research. For financial advice, consider seeking out a professional. Look for Chartered and/or Certified Financial Planners: https://www.moneyadviceservice.org.uk/en/articles/ choosing-a-financial-adviser --------------------------------------------------------------------- a community for 9 years BTF MODERATORS * message the mods * Moderator list hidden. Learn More discussions in r/UKPersonalFinance <> X 336 * 37 comments Careful with Black Friday: 98% of last year's deals were cheaper or the same price at other times in the year, says "Which?". 285 * 118 comments This felt like a scam? How did my bank know what software was running on my computer? 97 * 48 comments Guardian article: Taking pay through a company and getting it out as a capital gain @10% rate? 421 * 264 comments Friends mortgage agreement was revoked over PS63 anything we can do?? 62 * 109 comments Interest only mortgage to pay more into pension 27 * 10 comments Santander opens new Edge account 26 * 33 comments Is this retirement home deal terrible? 9 * 25 comments I was scammed through HMRC. Am I Fu**ed? 3 * 20 comments My in-laws are offering to loan us 100k to pay off our mortgage, what am I missing? 4 * 9 comments Buying a new vehicle, best finance routes? Welcome to Reddit, the front page of the internet. Become a Redditor and join one of thousands of communities. x 284 285 286 .This felt like a scam? How did my bank know what software was running on my computer? (self.UKPersonalFinance) submitted 8 hours ago by wally2k160[5izbv4fn0m] I recently was paying for an upcoming holiday to Kenya via international bank transfer. It's a sizeable amount and shortly after I made the payment I had a missed call and voicemail from the bank (Barclays) asking me to call them. Clearly I called back on the number I found on the back of my card but they confirmed it was their fraud department who were checking the payment. All well and good and reasonable. What transpired in the conversation with the fraud department is that they'd notice I am running TeamViewer (a Remote Desktop program) in my computer. I'm comfortable with that as I use it for IT support to my parents. This is all good but how on earth can they track that I'm using TeamViewer when I've made the payment on their website. That seems beyond the bounds of cookies! Any ideas? * 118 comments * share * save * hide * report all 118 comments sorted by: best topnewcontroversialoldrandomq&alive (beta) [ ] Want to add to the discussion? Post a comment! Create an account [-]JohnLewisham1 539 points540 points541 points 7 hours ago*[gold_48] (27 children) Websites can see what fonts your computer has installed and teamviewer installs a font that it doesn't use whatsoever but the font is called teamviewer something Source * permalink * embed * save * report * give award * reply [-]afurtivesquirrel3 80 points81 points82 points 5 hours ago (2 children) There's a lot of people guessing here, but this is 100% the answer. TeamViewer installs a font to fingerprint itself on its own website, but other websites now use it too. * permalink * embed * save * parent * report * give award * reply [-]anomalous_cowherd0 22 points23 points24 points 5 hours ago (1 child) Be a shame if someone made another silly font with the same name that millions of people could install without TeamViewer... Havng said that this seems like a white hat use of it to protect the more vulnerable users so maybe not. * permalink * embed * save * parent * report * give award * reply [-]JohnLewisham1 7 points8 points9 points 4 hours ago (0 children) There wouldn't be much point to this and people who install it will become easier to track which is what the font is being used for by most. * permalink * embed * save * parent * report * give award * reply [-]barbar_bar 89 points90 points91 points 6 hours ago (9 children) wow, of course they can fingerprint you like that! neat * permalink * embed * save * parent * report * give award * reply [-]Chippiewall2 62 points63 points64 points 3 hours ago (7 children) I've seen an elderly person get scammed out of a large amount of money from their bank account thanks to teamviewer. I can see why a bank would take advantage of that for fraud detection. * permalink * embed * save * parent * report * give award * reply [-]wally2k160[S] 11 points12 points13 points 3 hours ago (3 children) !Thanks. I can see why they highlight it but I'm a little perturbed that they almost refused to make the transaction even after significant security hurdles for me. * permalink * embed * save * parent * report * give award * reply [-]peanut887 [score hidden] 1 hour ago (1 child) Banks are in a tough spot. This kind of fraud is rampant right now, and as a sensible person you can't conceive of how keen a lot of people are to lose all their money. I've listened to tapes of calls where customers lie, then yell and demand that transfers are put through and point blank refuse to accept the operator telling them they're trying to send their money to a known scammer. In the end the bank just has to refuse the instruction to execute the transfer to try and protect the customer from themself. * permalink * embed * save * parent * report * give award * reply continue this thread [-]-Rokk-1 [score hidden] 30 minutes ago (0 children) I'd rather their fraud prevention be too tough than too soft. * permalink * embed * save * parent * report * give award * reply [-]Lorraine527 0 points1 point2 points 3 hours ago (2 children) How did it happen?Should i remove teamviewer from parents and family pc's? * permalink * embed * save * parent * report * give award * reply [-]ShirtedRhino2 10 points11 points12 points 3 hours ago (0 children) Check Jim Browning's Youtube channel, he has loads of videos showing how scams like these work. * permalink * embed * save * parent * report * give award * reply [-]KingBallache1 [score hidden] 1 hour ago (0 children) If you're concerned they will get scammed then yes, then it just removes potential for remote access software. * permalink * embed * save * parent * report * give award * reply [-]TWeaKoR 0 points1 point2 points 2 hours ago (0 children) Lots of websites also direct you to fonts.google.com for no reason other than tracking. It's straightforward to block this. * permalink * embed * save * parent * report * give award * reply [-]GiediPrime3128 27 points28 points29 points 6 hours ago (2 children) Jesus... * permalink * embed * save * parent * report * give award * reply [-]ThrowawayTrainee7492 33 points34 points35 points 5 hours ago (0 children) Scammers will use things like teamviewer to look at your computer. At work we have to delete it and reinstall it after every use because people can use it to access your computer. I'd be happy they'd noticed to be honest * permalink * embed * save * parent * report * give award * reply [-]Mesheybabes 1 point2 points3 points 3 hours ago (0 children) This is a good thing * permalink * embed * save * parent * report * give award * reply [-]OdBx7 8 points9 points10 points 3 hours ago (0 children) Genuinely fascinating, and I work in tech. * permalink * embed * save * parent * report * give award * reply [-]MacaronNo8954 5 points6 points7 points 3 hours ago (0 children) You even added a source. What a legend * permalink * embed * save * parent * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) !Thanks. Top work and both fascinating and terrifying. Good for Barclays but I might still look for TeamViewer alternatives * permalink * embed * save * parent * report * give award * reply [-]Zealousideal_Club_42 1 point2 points3 points 4 hours ago (6 children) The bank may also run a local port scan on your network when you access there website. TeamViewer will use specific ports. * permalink * embed * save * parent * report * give award * reply [-]Zealousideal_Club_42 4 points5 points6 points 2 hours ago (0 children) Read this if your downvoting me https://www.bleepingcomputer.com/news/security/ ebay-port-scans-visitors-computers-for-remote-access-programs/ * permalink * embed * save * parent * report * give award * reply [-]michaelmior 0 points1 point2 points 2 hours ago (4 children) It's rather difficult to do accurate port scanning from within a website. https://incolumitas.com/2021/01/10/browser-based-port-scanning/ * permalink * embed * save * parent * report * give award * reply [-]Zealousideal_Club_42 2 points3 points4 points 2 hours ago (2 children) This analysis was done Ubuntu not Windows. * permalink * embed * save * parent * report * give award * reply [-]Environmental_Push57 0 points1 point2 points 2 hours ago (1 child) Indeed, but I don't imagine it would be a much different situation on Windows. * permalink * embed * save * parent * report * give award * reply continue this thread [-]Zealousideal_Club_42 0 points1 point2 points 2 hours ago (0 children) https://www.bleepingcomputer.com/news/security/ ebay-port-scans-visitors-computers-for-remote-access-programs/ I am sure the Bank is doing the same. * permalink * embed * save * parent * report * give award * reply [+]Dewi-G- [score hidden] 1 hour ago (0 children) "The TeamViewer font is used to implement a smooth user experience from web to the native client, e.g., when connecting via an invitation link, to offer an installation or initiate the connection directly. This has proven to be helpful to improve the user experience for all user groups; nevertheless, based on the raised concern, we have decided to review and change this approach within one of the next releases to prevent potential detection of a TeamViewer installation via the font" From the link you posted * permalink * embed * save * parent * report * give award * reply [-]fortuitous_monkey10 168 points169 points170 points 6 hours ago (10 children) The amount of teamviewer scams out there is unbelievable. Frankly it's pretty cool they checked it! * permalink * embed * save * report * give award * reply [-]TMillo11 36 points37 points38 points 6 hours ago (7 children) This. With how many vulnerable people get taken advantage of through these type of scams, this is a great innovation. * permalink * embed * save * parent * report * give award * reply [-]gundog480 -3 points-2 points-1 points 4 hours ago (6 children) I don't really like the way this all seems to be headed. Windows is slowly locking itself down and treating the user like an idiot, taking away choices and forcing updates because some people get malware due to not maintaining their machine. Then we're seeing privacy violations like this being considered 'okay' because of scammers. It reminds me of some of the massive data breaches that occurred during the start of Covid in the scramble to inform individuals they were at risk, and in the process made private medical data available to people who neither needed to know, nor were qualified to handle sensitive data. I get that the online landscape and the average user is a lot different than it was 10-20 years ago, but I do miss when companies and software would just let you get on with things and leave you alone. I'm very dubious when anyone gets too involved 'for my own safety'. * permalink * embed * save * parent * report * give award * reply [-]Lucrumb1 19 points20 points21 points 3 hours ago (3 children) I disagree. I remember being a kid in the early 2000s. A windows xp computer could get AIDS just from visiting the wrong website once. Android and iOS are virtually indestructible in comparison. I'm happy that everything is locked down and more secure these days. If you're desperate to install some dodgy software on windows it'll still let you do it, they've just made it so your nan doesn't get her pension and the deeds to her house nicked by some Romanian teenagers because she clicked on a funny advert. * permalink * embed * save * parent * report * give award * reply [-]emezeekiel 4 points5 points6 points 3 hours ago[gold_48] (0 children) Full blown AIDS. * permalink * embed * save * parent * report * give award * reply [-]Adversement3 2 points3 points4 points 2 hours ago (0 children) This. Though before the SP2, you did not even need to visit a dodgy website. At its peak, the good old MS Blaster was rampant enough to infect my fresh install in under 30 seconds from the first boot. Things have since got a lot better. (Though, I have to disagree on the ability to install software. The ability to install random software is no longer there, and has not been for a long while. For example, in any reasonably modern Windows, I am not aware of any method to install any open source tool to create a virtual serial port device (as one cannot install any unsigned device drivers on the latest Windows operating systems). One needs to run a (Linux in a) virtual machine inside for such tasks. Or, just use Linux or Mac... like quite a few people working with hardware devices do, for obvious reasons.) * permalink * embed * save * parent * report * give award * reply [-]gundog480 [score hidden] 1 hour ago (0 children) I mean, I also grew up on XP, 98, 95, I don't remember it being quite that bad. Were things really so bad with something like Windows 7, for example? Built-in security is pretty good these days, while being unintrusive. These days I have to run some obscure Windows distro just to feel like I own my computer. The other day I rented a film from Amazon, because I couldn't be arsed to download it, and they did it in UHD. After I'd paid the money, the fucking thing would only play in something like 480p because it 'couldn't validate my monitor', and had zero manual resolution options. Like, who could that possibly benefit? As I say, I understand why we are where we are, but I can still miss treating computers like tools and companies just rendering their services and leaving me alone. Though I'm probably just still salty after HSBC fucked up a transfer I did and cost the company a massive contract. They intercepted a transfer I made to a company in Poland we deal with every few months. We placed an order with them for the materials for this big contract, sent the money and waited. About a month passed before they said that they hadn't been paid. Called HSBC, they asked who my personal banker was (correctly), answered correctly, they hung up. Repeated this several times until somebody answered who found the whole situation baffling, told me it had been held due to 'anti-terorrism', and someone would be in touch. They grilled me over a load of details, asking what the reference number meant (the fucking invoice number, obviously). They said we'd hear from them in 40 days. They wouldn't honour any additional transfers. Lost the contract, wasted all the other materials we bought for it. We had an ongoing relationship with the company who contracted us which has now ended as a result, and we would technically be liable for lost profits if they pursued it. They then finally released it, said they couldn't reverse it, then we had to get the money back from the company we were originally paying, who weren't happy with us for our non-payment. All these protections just make me feel so damn safe! * permalink * embed * save * parent * report * give award * reply [-]RainbowDissent6 3 points4 points5 points 3 hours ago (0 children) Windows is slowly locking itself down and treating the user like an idiot The vast majority of people are idiots from a computing perspective. They're not innately familiar and can be confusing to older generations, and the younger generations now grow up on smartphones, consoles and tablets; there are people now entering the workforce who don't so much as know what a file structure is. Given how cybercrime has absolutely exploded in sophistication and prevalence, locking down machines as far as possible is sensible even if it's frustrating to those who know what to do. * permalink * embed * save * parent * report * give award * reply [-]Engineering-Neither1 [score hidden] 10 minutes ago (0 children) treating the user like an idiot If you've ever worked in IT, you know this to be a daily go to. * permalink * embed * save * parent * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (1 child) True, but I was a bit miffed by their implication that I must / ought to remove the software to keep using their website. * permalink * embed * save * parent * report * give award * reply [-]blazito1 [score hidden] 1 hour ago (0 children) Was that explicitly stated or did you just come up with that yourself? * permalink * embed * save * parent * report * give award * reply [-]Ian_M871 39 points40 points41 points 8 hours ago (6 children) There are loads like that, certain streaming platforms won't run if you have snippit (or any form of screen capture) open. Some will detect VPN as well (though some just blacklist known VPN IPs such as Nord) * permalink * embed * save * report * give award * reply [-]CupResponsible797 13 points14 points15 points 5 hours ago (0 children) But those are both very different. First relies on HDCP, not any sort of fingerprinting. The second just involves looking at your IP-address. * permalink * embed * save * parent * report * give award * reply [-]LooselyBasedOnGod5 2 points3 points4 points 6 hours ago (2 children) Why is that? * permalink * embed * save * parent * report * give award * reply [-]uiolc 16 points17 points18 points 6 hours ago (1 child) Screen capture prevention stops you from making your own copy of the media and uploading it to sites where others can view it for free. VPN prevention is to stop users getting around licensing restrictions based on region. I imagine part of the contracts between IP owners and streaming platforms have some requirements on the streaming platform's part to make a genuine effort to only stream to users in the agreed upon regions. * permalink * embed * save * parent * report * give award * reply [-]LooselyBasedOnGod5 2 points3 points4 points 6 hours ago (0 children) That makes total sense !thanks * permalink * embed * save * parent * report * give award * reply [-]NotYourAccountantUK12 1 point2 points3 points 5 hours ago (0 children) Yeah I have this problem running MicroSnitch and one of the UK streaming services, thinks I'm using capture software. * permalink * embed * save * parent * report * give award * reply [-]Rave_With_Dave 1 point2 points3 points 4 hours ago (0 children) That's why you use smart-dns. * permalink * embed * save * parent * report * give award * reply [-]dasrofflecopter 8 points9 points10 points 4 hours ago (1 child) I was on the Octopus energy website earlier and a little pop up appeared suggesting I unplug my laptop to save money because it knew it was over 80% charged. * permalink * embed * save * report * give award * reply [-]KingBallache1 [score hidden] 55 minutes ago (0 children) Octopus are doing saving sessions where they reward the consumer for using less energy at random peak times, today was between like half 5 to half 6 I think. But strange that they knew you were at 80% * permalink * embed * save * parent * report * give award * reply [-]exile_1019 27 points28 points29 points 6 hours ago (3 children) At some point your bank may have asked you to download an app / browser extension such as Trusteer Rapport which would be able to monitor for apps like TeamViewer. NatWest used to and I think Santander still offer it. * permalink * embed * save * report * give award * reply [-]SpongederpSquarefap2 3 points4 points5 points 3 hours ago (0 children) God that software is such shit * permalink * embed * save * parent * report * give award * reply [-]daxamiteuk 1 point2 points3 points 4 hours ago (0 children) Yeah I was asked to do so for NatWest * permalink * embed * save * parent * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) !Thanks but not in this instance * permalink * embed * save * parent * report * give award * reply [-]jarlrmai2- 11 points12 points13 points 8 hours ago (1 child) Does it have a browser extension installed? * permalink * embed * save * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) Nope * permalink * embed * save * parent * report * give award * reply [-]GingerFurball2 4 points5 points6 points 6 hours ago (0 children) Used to work for Lloyds and we had software that was able to detect programs like TeamViewer, as well as analytical software that compared how Internet banking was used against previous sessions by the same customer. It's one of the reasons why there's been a huge increase in APP fraud, because bank systems have evolved to the point where they're really good at detecting where the customer isn't making a payment. * permalink * embed * save * report * give award * reply [-]BennyInThe18thArea22 12 points13 points14 points 7 hours ago* (1 child) Screen capture apps (even the snippet tool) can be detected via apps (sky player is a typical one that won't load unless you close them). Edit: realised teamviewer has a browser extension and this is probably what they detected. * permalink * embed * save * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) Not this case * permalink * embed * save * parent * report * give award * reply [-]fitzct1 9 points10 points11 points 8 hours ago (1 child) Most banks use this as a fraud prevention rule, due to people being scammed (fraudsters call pretending to be from 'Microsoft' or 'American express' etc) and allowing fraudsters access to their computers. * permalink * embed * save * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) I know why they do it I was curious as to how they do it. * permalink * embed * save * parent * report * give award * reply [-]Jopling95 8 points9 points10 points 6 hours ago (4 children) Banks can see all sorts of information about the device you used to make payments on, including your IP address, rough location (ie city), which browser you made the payment with, the OS of the device as well as a unique device ID that can only be changed by a factory reset. Having teamviewer (or any remote access software) is a huge red flag for banks due to the massive amount of fraud that occur through it. All transactions are assigned a number, the higher the risk of fraud, the higher the number. The higher the number, the more likely it is that they block the transaction. Source: Worked as a manager in Fraud Prevention for several UK banks * permalink * embed * save * report * give award * reply [-]MyCodesCompiling- 3 points4 points5 points 3 hours ago (0 children) That doesn't answer the question though. The question is "HOW" the bank knew TeamViewer was installed specifically * permalink * embed * save * parent * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (1 child) Yes but the question was how they did this. * permalink * embed * save * parent * report * give award * reply [-]ObligationOrdinary81 [score hidden] 1 hour ago (0 children) Fonts, screen resolution change, virtual keyboard detection and biometric changes to how the website/ app is navigated by the user compared to previous genuine activity. That combined with a higher risk destination for the payment and it creates a fraud trigger. Not one element is a red flag on its own. * permalink * embed * save * parent * report * give award * reply [-]jenn4u2luv -1 points0 points1 point 4 hours ago (0 children) Yup. This. They normally will flag because if the transaction is paying to a merchant in an international country, that could be akin to what a spoofed transaction would look like. * permalink * embed * save * parent * report * give award * reply [-]alwinaldane5 1 point2 points3 points 4 hours ago (1 child) This is really interesting. It feels like antifraud measures cause some loss of privacy. Want to use a VPN because you don't trust wifi in your Chinese hotel? Want to run Gmail in an incognito browser session? Expect inconvenience down the line. * permalink * embed * save * report * give award * reply [-]Plorntus 2 points3 points4 points 4 hours ago (0 children) The amount of fingerprinting fraud detection scripts use is insane. Everything your browser /could/ give up they take and score it. This is also why some sites (anecdotally casinos) will not allow transactions if you are using an ad blocker because the payment gateway enforces they must include their anti-fraud script (which is usually listed on the privacy ad blocking lists). * permalink * embed * save * parent * report * give award * reply [-]adhalliday22 1 point2 points3 points 3 hours ago (0 children) Fun fact! When you click agree on the cookies it tracks a ton of shit. Most you never ever think of. When you click "I'm not a robot" it checks your history, websites visited and how you've acted on their site. It's all very interesting * permalink * embed * save * report * give award * reply [-]notafrogbutalmost 1 point2 points3 points 3 hours ago (0 children) Not sure on the specifics of how but i believe it's to do with device IDs. It doesn't specifically show as Team Viewer, but it would show as a RAT (or a remote access tool). It's likely that they noticed a remote access via an unrecognised device ID in the past, and due to the fraud risks associated with international transfers thought they'd give a call back. * permalink * embed * save * report * give award * reply [-]PM_ME_PRISTINE_BUMS3 1 point2 points3 points 2 hours ago (2 children) To everyone saying the bank had the IP and did a port scan: they 100% did not. Knowing someone's IP address isn't as powerful as CSI Miami makes it out to be. Besides: Team Viewer doesn't work like that (you both connect via Team Viewer's own servers, not a direct P2P connection that would require host firewall and Edge router configuration), also NAT'ing obscures entire households/building behind a single IP. * permalink * embed * save * report * give award * reply [-]smargh [score hidden] 1 hour ago (0 children) Teamviewer listens on 127.0.0.1:5939. Back in 2020 eBay checked some localhost ports for RATs as a counter-fraud measure. Dunno if Chrome since blocked that technique. * permalink * embed * save * parent * report * give award * reply [-]_Deleted_Deleted 4 points5 points6 points 8 hours ago (3 children) Did you pay for a TeamViewer subscription with the same card? * permalink * embed * save * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) It's a free subscription * permalink * embed * save * parent * report * give award * reply [+][deleted] 2 hours ago (1 child) [deleted] [-]ObligationOrdinary81 [score hidden] 1 hour ago (0 children) Well they do. You agreed to this in their privacy policy. The bank account belongs to the bank, not you I'm afraid * permalink * embed * save * report * give award * reply [-]anotherbozo4 1 point2 points3 points 7 hours ago (1 child) Do you have a TeamViewer browser extension? * permalink * embed * save * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (0 children) Not installed * permalink * embed * save * parent * report * give award * reply [-]Wallstkingpin80s 0 points1 point2 points 4 hours ago (0 children) They detect ports. So they can see remote access from any remote access company not just teamviewer * permalink * embed * save * report * give award * reply [-]nishy1234 -1 points0 points1 point 3 hours ago (4 children) Who tf pays off a holiday via bank transfer wtf * permalink * embed * save * report * give award * reply [-]wally2k160[S] [score hidden] 1 hour ago (2 children) Thanks for your really helpful comment. * permalink * embed * save * parent * report * give award * reply [-]nishy1234 [score hidden] 24 minutes ago (1 child) I didn't mean to come across like that, I'm sorry that this happened to you. I think this may have been a scam, I hope you get it sorted out. Best of luck * permalink * embed * save * parent * report * give award * reply [-]wally2k160[S] [score hidden] 1 minute ago (0 children) Thanks, it absolutely wasn't a scam, I verified it independently through the bank. I was just fascinated as to how they managed to do it. The money got there all ok once the fraud team approved it. * permalink * embed * save * parent * report * give award * reply [-]Redmarkred6 [score hidden] 34 minutes ago (0 children) Yeah, sure this wasn't actually a scam? * permalink * embed * save * parent * report * give award * reply [+]remarkablemayonaise260 comment score below threshold-9 points-8 points-7 points 8 hours ago (6 children) At a guess: If they have your IP address they can try and connect using the TeamViewer port. If they get "your firewall has blocked this port" then you probably don't have TeamViewer. If they get "TeamViewer would like your username and password" then they can conclude you have TeamViewer installed and the port open. * permalink * embed * save * report * give award * reply [-]TwentyCharactersShor6 15 points16 points17 points 7 hours ago (0 children) That would be a stretch. * permalink * embed * save * parent * report * give award * reply [-]elliptical-wing1 3 points4 points5 points 5 hours ago (0 children) A financially regulated organisation is highly unlikely to try to connect to services on a clients computer without permission. Aside from that, Teamviewer would be opening port 5938 or 443 for outbound (not inbound) connection, and it is most likely that the clients firewall has inbound traffic to 5938 blocked anyway. So a connection failure to that port doesn't indicate anything about Teamviewer not being installed. * permalink * embed * save * parent * report * give award * reply [-]HashDefTrueFalse12 1 point2 points3 points 5 hours ago (0 children) 100% they are not clobbering TV servers for all direct bank transfers to check if the IP they're given (which may not be yours) has a listening TV instance. This would be very unreliable and slow compared to other means. * permalink * embed * save * parent * report * give award * reply [-]LuKeNuKuM 1 point2 points3 points 6 hours ago (2 children) I'm not sure why this has been downvoted. If you make a bank transfer they will have a log of your IP and it would be fairly trivial to have a monitoring process background scanning specific ports of an IP that has just made a large transaction. If it finds a match it could add that to a call list. * permalink * embed * save * parent * report * give award * reply [-]aactg4 4 points5 points6 points 5 hours ago (1 child) NAT. * permalink * embed * save * parent * report * give award * reply [-]LuKeNuKuM 0 points1 point2 points 5 hours ago (0 children) I must misunderstand it then. I always thought that you would open the firewall port and map that one back to the user's machine port, wouldn't that still give the server a log of an IP and open port? (even if it's not the final internal IP). * permalink * embed * save * parent * report * give award * reply [-]BogleBot106[M] -1 points0 points1 point 8 hours ago (0 children) Hi /u/wally2k16, based on your post the following pages from our wiki may be relevant: * https://ukpersonal.finance/scams/ --------------------------------------------------------------------- ^These suggestions are based on keywords, if they missed the mark please report this comment. * permalink * embed * save * report * give award * reply [-]Capital_Towel7690 -2 points-1 points0 points 4 hours ago (0 children) Could be from an open port in your router, different programs utilise open ports which they can see their end by scanning your ip address, there is a website I forgot the name of you can put in your ip and it'll tell you what ports are open and if you're open to any vulnerabilities. * permalink * embed * save * report * give award * reply [-]Black_raspberries -2 points-1 points0 points 2 hours ago (1 child) call Barclays themselves from their pages and tell them this ASAP * permalink * embed * save * report * give award * reply [-]Black_raspberries -1 points0 points1 point 2 hours ago (0 children) The number on the back of a card corresponding to a phone number is a trick scammers use. * permalink * embed * save * parent * report * give award * reply [+]freakierice3 comment score below threshold-7 points-6 points-5 points 7 hours ago (4 children) Because when you use the site to pay it opens a little window (in the webpage) which can capture almost any info about current running program, same as the im not a robot check box looks at your mouse movements, previous history on the page etc... (My best guess with some reasonable knowledge of IT systems) * permalink * embed * save * report * give award * reply [-]JohnLewisham1 5 points6 points7 points 7 hours ago (2 children) This is not true whatsoever. Recaptcha can track mouse movement for pages its integrated to. Websites cannot check your previous history but can track your history using cookies on pages that integrate their service such as integrating Google statistics or ads will allow Google to track you on those pages. But in no way can pornhub see that I have discord running or task manager or calculator. * permalink * embed * save * parent * report * give award * reply [-]BennyInThe18thArea22 0 points1 point2 points 7 hours ago (1 child) TeamViewer has a chrome add on, websites can detect that. * permalink * embed * save * parent * report * give award * reply [-]vaederspaenning4 2 points3 points4 points 6 hours ago* (0 children) That's not really what was being discussed here though. The original reply in this thread is just a mix of misunderstanding and plain wrong. * permalink * embed * save * parent * report * give award * reply [-]HashDefTrueFalse12 1 point2 points3 points 6 hours ago (0 children) This is 100% not possible, source: me, senior software eng who does front+back end and infrastructure. A webpage cannot see what processes are running on your computer by opening another page in a separate window. In fact, that's no different to the first window... The correct answer is the font heuristic above, or simply a browser extension detected via some clever JS. They don't even know for a fact. It's an informed guess based on common and innocuous side effects of using TeamViewer. Another possibility is simply that you've purchased a TeamViewer license with the account previously, which would be less likely IMO as you could've done so for any device, not necessarily the one you're using. * permalink * embed * save * parent * report * give award * reply [-]Efficient_Owl2468- -3 points-2 points-1 points 3 hours ago (0 children) Wow that is shocking. Thank fuck for Brave and a reminder to install it. (You get paid for using it too). https://i.imgur.com/Ek7Ni83.png * permalink * embed * save * report * give award * reply [-]mgajda -4 points-3 points-2 points 4 hours ago (0 children) You're right. Listing all fonts in your browser is illegitimate gathering of fingerprinting information. They have no legitimate reason to record so much data, and it costs to send and store it. If they really wanted to debug their website, it would suffice to just record whether you have fonts that they use. * permalink * embed * save * report * give award * reply [+]Sea_Willingness_5429 -4 points-3 points-2 points 5 hours ago (0 children) Chill out karen * permalink * embed * save * report * give award * reply [+]Comfortable_Pie_4334 comment score below threshold-8 points-7 points-6 points 7 hours ago (5 children) It's actually very easy for a website to get information about your computer such as installed software. If you granted permissions for a plug-in that is used on the site then they could scrape all kinds of information. * permalink * embed * save * report * give award * reply [-]JohnLewisham1 3 points4 points5 points 7 hours ago (3 children) What add on / plugin allows websites to do this? * permalink * embed * save * parent * report * give award * reply [-]Lostpollen 4 points5 points6 points 6 hours ago (2 children) I would too like to know what JS API is able to get installed software on a client. "JavaScript in browsers is highly sand-boxed for security purposes. There is no way to find out anything about the computer a website is running on other than a very limited subset of information which the browser makes available.Installed software is not one included in that information, nor are files on the computer." * permalink * embed * save * parent * report * give award * reply [-]DespizeYou 4 points5 points6 points 6 hours ago (0 children) You can't, the person that said this is incorrect. More likely via the teamviewer fingerprint font * permalink * embed * save * parent * report * give award * reply [-]HashDefTrueFalse12 0 points1 point2 points 5 hours ago (0 children) You are correct. The installed programs would have to deliberately make available something that webpages could see, such as the TV font mentioned above. Even that is a guess, informed maybe, but they know nothing for certain here. * permalink * embed * save * parent * report * give award * reply [-]cbzoiav39 3 points4 points5 points 6 hours ago (0 children) There is no API to list installed software from web content. You would have to install a browser extension. * permalink * embed * save * parent * report * give award * reply [+]BaldWithABeardTwitch1 comment score below threshold-7 points-6 points-5 points 4 hours ago (0 children) Oh my dear boy/girl, you have a lot to learn. * permalink * embed * save * report * give award * reply [+]TN_Cicada3301 0 points1 point2 points 4 hours ago (0 children) Need to be careful with teamviwer and anydesk * permalink * embed * save * report * give award * reply [-]HettySwollocks1 0 points1 point2 points 4 hours ago (1 child) It would be good if they'd asked your permission first (maybe they did in the TOS?) but I'd say that's a good thing. They've looked out for you. Maybe it could be an opt in. "security checkout" so they don't get posts like this * permalink * embed * save * report * give award * reply [-]ObligationOrdinary81 [score hidden] 1 hour ago (0 children) Its a regulatory requirement for Barclays. * permalink * embed * save * parent * report * give award * reply [-]arobsco 0 points1 point2 points 3 hours ago (0 children) They are using a couple of different tools to detect fraud etc. both of these tools have ability to detect a whole host of risks: https:// risk.lexisnexis.co.uk/products/threatmetrix and https:// www.biocatch.com * permalink * embed * save * report * give award * reply [-]AlbaTejas [score hidden] 1 hour ago (0 children) I like it. Usually I am exhorting banks not to phone me (or rather other customers) and ask for security info. The only institution I've experienced doibg it right is Amex. * permalink * embed * save * report * give award * reply [-]sanjay_82 [score hidden] 1 hour ago (0 children) Hello your computer has virus * permalink * embed * save * report * give award * reply [-]Wild_Honeysuckle3 [score hidden] 1 hour ago (1 child) This is off topic, but I need to find a better solution for IT support for my parents, and I was considering using TeamViewer. Is it nice and ease to use? I need something utterly foolproof for my Dad, as his IT skills are limited. * permalink * embed * save * report * give award * reply [-]theevildjinn2 [score hidden] 49 minutes ago* (0 children) It is pretty foolproof, I was able to talk my dad (who's nearly 80 and doesn't understand what a browser is) through downloading and launching the standalone version, enabling me to see for myself the problem he was having ("I can't go on my email"). EDIT: Although obviously having it present on their machine is a possible vector for scammers, so maybe instruct them to delete the executable each time. * permalink * embed * save * parent * report * give award * reply [-]popopopopopopopopoop [score hidden] 1 hour ago (0 children) If you're using Windows 10 and above, it now comes with Quick Assit that is a built in utilityike Teamviewer just safer and not as invasive... * permalink * embed * save * report * give award * reply [-]bonjour_merci_paris- [score hidden] 57 minutes ago (0 children) Imagine what porn sites know about you * permalink * embed * save * report * give award * reply * about * blog * about * advertising * careers * help * site rules * Reddit help center * reddiquette * mod guidelines * contact us * apps & tools * Reddit for iPhone * Reddit for Android * mobile website * <3 * reddit premium * reddit coins Use of this site constitutes acceptance of our User Agreement and Privacy Policy. (c) 2022 reddit inc. All rights reserved. REDDIT and the ALIEN Logo are registered trademarks of reddit inc. [pixel] p Rendered by PID 26 on reddit-service-r2-loggedout-598bc594b5-qz2nb at 2022-11-22 23:01:41.293596+00:00 running c36a85a country code: US.