Author: Himanshu Mishra

  • Online Gaming Scams in India: Free Fire, BGMI and Roblox Frauds

    Online Gaming Scams in India: Free Fire, BGMI and Roblox Frauds

    Akshay Kumar recently revealed that his own daughter was targeted by scammers while playing an online game. If it can happen to a celebrity’s child, it can happen to yours too.

    A 14-year-old boy from Panchkula was extorted for Rs. 4 lakh by people he met while playing an online game. A family in Ajmer lost Rs. 10.85 lakh after their child made a “friend” on Free Fire. And in Lucknow, a gang of teenagers ran a fake gaming operation that cheated over 2.5 lakh people out of Rs. 500 crore.

    Online gaming scams targeting kids and teens in India are rising faster than most parents realize. Gaming frauds have gone up by 300% since 2023 according to I4C data. And 65% of Indian kids between the ages of 8 and 15 play online games daily.

    This guide covers every scam type, real cases, and exactly what parents and kids need to do to stay safe.

    Why Are Kids Being Targeted?

    Scammers do not randomly pick victims. They specifically go after young gamers because:

    • Kids are trusting by nature and less likely to question an offer
    • They want to win badly and will take shortcuts for free diamonds or UC
    • They have access to their parents phones, UPI apps and bank accounts
    • They feel embarrassed to tell parents if something goes wrong
    • They do not fully understand what sharing an OTP or password means

    Most scams happen not because kids are careless, but because the traps are designed specifically for them.ss, but because the traps are designed specifically for them.

    Most Common Gaming Scams Targeting

    Indian Kids in 2026

    1. Free Diamonds and Free UC Generator Scams

    This is the most common trap. Your child is playing Free Fire or BGMI and comes across a YouTube comment, a WhatsApp forward, or an Instagram link that says something like:

    “Get 10,000 Free Diamonds instantly! No survey! 100% working!”

    They click it, type in their game ID, sometimes even their password. The site looks real enough. What they do not know is that it was built to steal exactly what they just typed in. Some of these sites go further and ask for an OTP to verify the diamond transfer. The moment your child shares that OTP, whoever is on the other end has access to the UPI app or bank account on that phone.

    Krafton, the company behind BGMI, ran an awareness campaign in 2025 specifically because thousands of players had fallen for fake UC generator sites designed to look identical to Codashop.

    2. Fake Codashop and Top-Up Sites

    Codashop is a legitimate platform where players buy BGMI UC and Free Fire diamonds. Scammers build copies of it that look almost identical.

    A kid searches for cheap UC India or Free Fire diamonds discount and lands on one of these fake pages. They pay via UPI. The money leaves their account and nothing arrives. Some of these sites also quietly save the UPI details and card numbers entered, and use them weeks later for transactions the family never notices until it is too late.

    3. The Fake Friend Scam

    This one does not happen overnight. A stranger sends a friend request on the game, on Discord, or on Instagram. They play together for days, sometimes weeks. They seem genuinely friendly. Then slowly things shift:

    • They mention a special method to get free UC or diamonds
    • They ask for the game account login to transfer the rewards themselves
    • They ask for an OTP claiming it is needed for verification
    • They start asking for small amounts of money, saying they are in trouble

    In the Ajmer case from December 2025, this is exactly how it started. A friendship on Free Fire. Weeks of playing together. Then access to the family’s phone and bank account. Rs 10.85 lakh gone.

    4. Fake Game Customer Support Scams

    The message comes on WhatsApp or Instagram and sounds urgent:

    “Your account has been flagged for suspicious activity. Share your login details within 24 hours or your account will be permanently banned.”

    A kid who has spent months building their account reads that and panics. They share what is asked. The scammer gets in, takes over the account, and in many cases comes back demanding money to return it or threatening to report the account themselves.

    No game company, whether it is Free Fire, BGMI or Roblox, will ever contact a player through WhatsApp or Instagram. Every real communication from these companies happens through the official app or the registered email address. Nothing else.

    5. Fake Mod, Skin, and Cheat Download Scams

    Kids searching for “Free Fire mod apk” or “BGMI unlimited UC hack download” end up downloading malicious files. These files infect the phone with malware that:

    • Steals saved passwords
    • Monitors banking apps
    • Sends all OTPs to the scammer without the user knowing
    • Accesses the camera and microphone

    Kaspersky research shows that over 3 million attack attempts were made on young gamers through malicious mod downloads in just one year.

    6. Gaming Tournament and Prize Scams

    Fake tournament announcements are sent through WhatsApp groups or Instagram pages. They promise cash prizes of Rs. 50,000 or more for winning a Free Fire or BGMI tournament.

    To register, kids are asked to pay a small “entry fee” of Rs. 100 to Rs. 500 via UPI. Once paid, the scammer disappears. There is no tournament. This scam runs on volume. If 1,000 kids each pay Rs. 200, the scammer makes Rs. 2 lakh in a day.

    7. Roblox Robux Generator Scams

    Roblox is extremely popular among kids below 14 in India. Scammers set up fake “Robux generator” sites promising free Roblox currency. These sites ask for the child’s Roblox username and password to “credit the Robux.”

    Once the scammer has the login details, they take over the account and steal any Robux or rare items the child has collected. In some cases, they access the email linked to the account and use it for further fraud.

    Warning Signs Your Child May Be Getting Scammed

    Watch out for these red flags:

    • Your child has become secretive about what they are doing on their phone
    • You notice UPI transactions or bank debits you never authorized
    • Your child seems anxious, scared or unusually emotional after gaming
    • They keep asking for money for game items more than usual
    • Their game account suddenly loses all progress or gets locked out of nowhere
    • They are receiving calls or messages from unknown numbers related to gaming
    • You find unfamiliar apps downloaded on your phone or theirs that nobody can explain

    How to Protect Your Child: A Step-by-Step Guide for Parents

    Step 1: Have an Open Conversation First

    Before you set any rules or take away any devices, just talk to your child. Ask them what games they play, who they talk to online, and what kind of rewards they are chasing. Kids who feel safe talking to their parents are the ones who come to them when something feels wrong. That conversation is worth more than any parental control app.

    Step 2: Disable In-App Purchases

    This one is simple and takes two minutes. On Android, open Google Play Store, go to Settings and turn on purchase authentication so every transaction needs a password. On iPhone, go to Screen Time and block in-app purchases from there. Do this today before you forget.

    Step 3: Never Link Your Main Bank Account to a Gaming App

    If your child wants to make a legitimate purchase, set up a separate prepaid card or wallet with a small fixed amount. Your primary salary account or main UPI ID should never be anywhere near a gaming app.

    Step 4: Teach Kids These Rules

    Sit down with your child and go through these one by one:

    • Free diamonds, free UC and free Robux do not exist. Every single site claiming otherwise is trying to steal something
    • Never share your game password with anyone online, even someone you have been playing with for months
    • Never share an OTP with anyone claiming to be from game support
    • Real game support never reaches out on WhatsApp or Instagram. Ever
    • Never download mod APKs or cheat tools from outside the official app store
    • If anything feels uncomfortable or wrong, come and tell us. No scolding, no lecture, just tell us

    Step 5: Check Suspicious Links Before Clicking

    Your child gets a link promising free rewards or entry into a tournament. Before anyone clicks it, run it through ScamDekho’s website Checker free. Takes five seconds and could save a lot of trouble.

    Step 6: Check Suspicious Messages

    Someone claiming to be from BGMI or Free Fire support slides into your child’s WhatsApp or Instagram. Before your child replies or clicks anything, put that message through ScamDekho’s Scam Message Checker first.

    Step 7: Enable Google Play Family Library and Parental Controls

    Google Play lets you set up a family group where every purchase your child tries to make needs your approval first. Set this up on every device they use for gaming and you will never get a surprise transaction again.

    What to Do If Your Child Has Already Been Scammed

    Act fast. Here is exactly what to do:

    Immediately:

    • Call your bank or open your banking app and block the UPI ID or card that was used
    • Change the passwords of every account your child may have shared, their game account, email and Google account
    • Check for any apps downloaded recently and uninstall them right away

    Within a few hours:

    • Call 1930, India’s national cyber crime helpline. The sooner you call the better the chance of freezing the transaction before the money is withdrawn
    • File a complaint on cybercrime.gov.in

    Within 24 hours:

    One last thing. Do not blame your child and do not let them feel ashamed. These scams are built to fool adults too. What happened is not their fault. What matters right now is moving fast.

    You can also read our complete guide on how to recover money lost in an online scam in India for a detailed recovery process.

    Safe Ways to Buy In-Game Currency in India

    If your child wants to buy diamonds, UC or Robux, here are the only safe ways to do it:

    • Free Fire Diamonds: Only through the official Free Fire app or Garena’s official website
    • BGMI UC: Only through the in-game store or the official Codashop website at codashop.com
    • Roblox Robux: Only through roblox.com or through the app on Google Play or the App Store
    • Google Play Gift Cards: Only from authorized retailers like Amazon, Flipkart or a physical store you trust

    Never buy from individual sellers on Instagram, no matter how cheap the price looks or how many positive comments their post has. That is where most of these scams begin.

    A Note for Parents

    Your child is not stupid for falling for these scams. These traps are designed by adults who spend hours studying what kids want and how they think. The 14-year-old in Panchkula, the child in Ajmer, and Akshay Kumar’s daughter were all targeted by professionals at manipulation.

    The best protection is not restrictions alone. It is trust. A child who knows they can come to you without being shouted at will come to you when something feels wrong. That conversation can save your family from serious financial and emotional damage.

    Frequently Asked Questions

    Q: Are free diamond generators for Free Fire real?

    Nope, never. They are all fake. Not a single one works. Only official game events give free stuff, nothing else.

    Q: How do scammers get into my child’s game account?

    Three ways mostly. Fake websites that look like the game login. Mod APKs with hidden malware. Or someone your child thinks is a friend slowly gains trust and asks for the password directly.

    Q: Can my child’s phone get hacked by just clicking a link?

    Yes. Some links start downloading malware without even asking. That malware sits quietly and reads OTPs, opens banking apps, tracks everything. Do not click random gaming links without checking first.

    Q: Where should I buy BGMI UC from?

    Only from Codashop.com. That is it. Any other website selling UC at a lower price is fake, period.

    Q: My child spent from my account without telling me. What now?

    UPI payment? Call your bank right now and raise a dispute. Google Play or App Store? Go to their refund page and apply today. Every hour you wait makes it harder.

    Q: My child is 10. Should I let them play online games?

    Most games allow 13 and above. Below that, stay away from online multiplayer. Even at 13, keep checking who they talk to and what they share in-game chats.

    Q: What if someone in a game asks my child for money?

    Block immediately. Report inside the game. And tell you. That is the only right answer. Anyone asking a child for money online is not a friend, they are a scammer.

  • Identity Theft in India: What It Is, How It Happens and What to Do

    Identity Theft in India: What It Is, How It Happens and What to Do

    A 34 year old man from Rajasthan woke up one morning to find police at his door. It was not a one time thing. Over the next six years, law enforcement teams from 33 different states showed up at his home. FIRs worth crores of rupees in cyber fraud had been filed against him from across the country.

    He had never committed a single crime.

    Years earlier his email had been hacked. Inside that email were scanned copies of his Aadhaar card, PAN card and voter ID. Fraudsters used those documents to open bank accounts, register fake businesses and cheat hundreds of people across India. Everything was done in his name, with his documents, while he had no idea any of it was happening.

    Six years of police visits, legal battles and a ruined reputation. All because of files sitting in a hacked email inbox.

    This is what identity theft in India actually looks like. Not just financial loss. A completely innocent person’s life turned upside down while the real criminals are never found. And it can happen to anyone who has ever scanned and shared their documents online.

    What Is Identity Theft?

    Most people think identity theft means someone hacks into your bank account and transfers money out. That is one version of it. But honestly, it can get much worse than that.

    When someone gets hold of your Aadhaar number, PAN card, phone number or date of birth, they do not need all of it. Two or three of these details together is enough for a fraudster to open a bank account in your name, apply for a loan you never asked for, or run a fake business using your identity. You find out months or years later when a recovery agent shows up at your door or an FIR gets filed against you for something you never did.

    That is the part nobody talks about. The damage is not always financial. Sometimes it follows you around for years.

    How Common Is Identity Theft in India?

    More common than most people realize.

    According to a 2025 report by U.S. cybersecurity firm Entrust, India’s PAN card is now the most-forged identity document globally, appearing in over 27% of all identity and tax document fraud cases worldwide.

    In April 2025, Indian authorities uncovered a fraud ring that had exploited loopholes in UIDAI’s enrollment software to illegally update the personal and biometric data of over 1,500 Aadhaar card holders. Fraudsters changed names, birthdates, and linked phone numbers using tools like cloned iris scans and silicone fingerprints.

    And it is not just targeted attacks. In one of India’s largest alleged data breaches, a hacking group claimed to have stolen records of 815 million Indian residents, including Aadhaar details, passport information, names, phone numbers, and addresses, reportedly sourced from ICMR’s Covid-19 testing database.

    Your data may already be out there. The question is whether you know how to protect yourself.

    How Do Fraudsters Steal Your Identity?

    There is no single method. Scammers use whatever works.

    1. Phishing messages and fake websites You get a message saying your KYC is expiring. The link looks real, the website looks real, and you enter your details without a second thought. That is it. The fraudster has your information and you have no idea it happened.

    2. Hacked email accounts Open your sent folder right now. There is a good chance you have emailed scanned documents to a bank, an employer or an insurance company at some point. If someone gets into your email, they do not need to do anything else. Everything is already sitting there waiting for them.

    3. SIM swap fraud The fraudster calls your telecom provider pretending to be you and gets a new SIM issued on your number. Your phone goes silent. They start receiving your OTPs. By the time you figure out what happened, your bank account has already been accessed.

    4. Data breaches You signed up for an app or filled a form somewhere. That company got hacked. Your Aadhaar number, phone number and date of birth are now being sold on the dark web for less than the cost of a meal.

    5. Fake KYC calls A calm, professional sounding person calls from what seems like your bank or UIDAI. They just need your Aadhaar number and a quick OTP for verification. They are not from your bank. They never were.

    If you receive a suspicious message asking for personal details, run it through our Scam Message Checker before doing anything.

    What Can Fraudsters Do With Your Identity?

    Once someone has your details, here is what they can misuse:

    • Open bank accounts or take loans in your name
    • Apply for credit cards using your PAN and Aadhaar
    • File fake GST returns or income tax refunds using your PAN
    • Activate SIM cards in your name (used for scam calls)
    • Create fake social media profiles to scam your contacts
    • Commit crimes and leave your documents as the trail

    In the Rajasthan case, investigators discovered that the victim’s documents had been used to open fraudulent bank accounts across multiple states. These accounts were used for GST-linked transactions worth crores of rupees. When victims of those scams filed complaints, the trail kept pointing back to this one innocent man’s documents.

    Clearing your name after this kind of theft can take years.

    Warning Signs That Your Identity Has Been Stolen

    Most people find out too late. Watch out for these red flags:

    • You get a loan rejection despite a clean credit history
    • Unknown loans or credit card entries appear on your CIBIL report
    • You receive OTPs for transactions you never initiated
    • A bank account you never opened shows up linked to your Aadhaar
    • Police or legal notices arrive at your address for crimes you did not commit
    • Friends receive messages or calls from “you” asking for money

    Check: Fake Aadhaar and PAN Update Scam: How It Works

    What to Do If Your Identity Is Stolen: Step by Step

    Step 1: Freeze Your Bank Accounts and Aadhaar

    Call your bank first. Tell them what happened and ask for a temporary hold on all transactions.

    Do not wait until you have more information. While you are at it, open the mAadhaar app and lock your biometrics. This means nobody can use your fingerprints or iris scan to authenticate anything until you unlock it yourself. You can also do this on uidai.gov.in if you do not have the app.

    Step 2: Check Your Credit Report

    Go to cibil.com, experian.in, equifax.in or crif.in and download your credit report. Go through it carefully and look for loans, credit cards or enquiries you never made.

    Even one unfamiliar entry is worth investigating. Raise a dispute on the bureau’s website and they have to respond within 30 days by law.

    Step 3: File a Complaint on cybercrime.gov.in

    Go to cybercrime.gov.in and file under Other Cyber Crimes. Write down what happened as clearly as you can, attach whatever evidence you have and submit. You will get a tracking number within 48 hours and your complaint gets sent to the local cyber cell automatically.

    Step 4: File an FIR at Your Local Police Station

    Do not stop at the online complaint. Go to your nearest police station and file a physical FIR. Section 66C of the IT Act covers identity theft and the punishment goes up to three years in prison.

    If the police say it is not their jurisdiction, tell them about Section 154 of CrPC. Any station can register a Zero FIR regardless of where the crime happened.

    Step 5: Report to UIDAI and Your Telecom Provider

    Aadhaar misused? Email help@uidai.gov.in or call 1947.

    SIM swapped? Go to your telecom store with your ID and ask them to block the fake SIM and restore your original number on the spot.

    Step 6: Inform Your Contacts

    If someone created a fake profile in your name, report it to the platform. Facebook, Instagram and LinkedIn all have impersonation reporting tools. Also tell your close contacts directly so nobody sends money to someone pretending to be you.

    What Laws Protect You in India?

    India has clear laws that cover identity theft. Here is what you should know.

    • IT Act 2000, Section 66C Someone used your Aadhaar to open a fake account? That falls under this section. Three years in prison and a Rs 1 lakh fine for whoever did it.
    • IT Act 2000, Section 66D This one covers impersonation through a phone or computer. Think fake profiles, fake customer care calls, someone pretending to be you online. Most identity theft cases end up with both 66C and 66D applied together.
    • Aadhaar Act 2016 Touch someone’s Aadhaar without permission and the law comes down hard. Misusing biometric data carries three years in prison. Breaking into UIDAI’s central system carries ten. These are not small penalties.
    • Digital Personal Data Protection Act 2023 Here is the part most people miss. If a company lost your data because they did not protect it properly, and that data was then used to steal your identity, that company is legally responsible. You can go to the Data Protection Board and claim compensation from them directly. The burden is not yours alone to carry.

    How to Protect Yourself Before It Happens

    Prevention is always better than trying to fix the damage later. Here are practical steps you can take today:

    • Lock your Aadhaar biometrics on the mAadhaar app when not in use. Most people do not even know this feature exists. Use it
    • Never share your OTP with anyone calling you. It does not matter how official they sound. The moment someone asks for your OTP on a call, hang up
    • Pull your CIBIL report every three months and look for loans you never took. Catching something early is the difference between fixing it and fighting it for years
    • Stop sending scanned Aadhaar and PAN copies over WhatsApp to people you barely know. Once that image leaves your phone you have zero control over it
    • Your email inbox is probably full of sensitive documents you forgot you sent. Put a strong password on it and turn on two factor authentication today
    • Any message asking you to update your KYC or Aadhaar through a link is a scam. Close it and go to the official website yourself if you think something needs updating
    • Before you open any link claiming to be from your bank or a government portal, paste it into our URL Checker first

    Last thing. Go to your social media profiles right now and check what is publicly visible. Your date of birth, phone number and home address sitting open on your profile is all a fraudster needs to start building a case against you.er together are enough for a fraudster to start building a fake identity using your name.

    Also read: How Smart People Lose Money to Scams in India

    Real Case: A Six-Year Identity Theft Nightmare

    A man from Rajasthan had his email hacked. Inside that inbox were scanned copies of his Aadhaar, PAN and other identity documents. The hackers used those documents to open bank accounts and run fraud operations across multiple states. All of it in his name, without him knowing any of it was happening.

    Then the police started showing up at his door. FIRs from different states kept getting linked to his name. Officers who had no reason to doubt the paperwork treated him as a suspect in crimes he had never heard of, let alone committed. This went on for years.

    He eventually managed to get an FIR registered that acknowledged his identity had been misused. But getting his name removed from multiple records across different states is still an ongoing process.

    This is what identity theft can actually cost a person. Not just money. Years of your life spent proving you are not a criminal for something someone else did using your name.

    Source: The420

    Frequently Asked Questions

    Can someone misuse my Aadhaar just by knowing the number?

    Not easily. Just the number on its own is not enough. To actually authenticate anything, they would also need your OTP, biometrics or linked phone number. That said, your Aadhaar number combined with your PAN and date of birth can be enough to get through verification on platforms that do not check as carefully as they should.

    How do I check if my Aadhaar has been used somewhere without my knowledge?

    Go to myaadhaar.uidai.gov.in and look for the Aadhaar Authentication History section. It shows the last 50 times your Aadhaar was authenticated, where and for what purpose. Worth checking every few months.

    What if a loan is taken in my name without my knowledge?

    Go to the lending institution directly with a copy of your FIR and tell them what happened. At the same time raise a dispute on the credit bureau’s website. RBI rules require banks to investigate fraud loan complaints within 90 days.

    Can I get compensation if a company’s data breach exposed my details?

    Yes. Under the Digital Personal Data Protection Act 2023 you can file a complaint with the Data Protection Board of India if a company’s negligence caused your data to be exposed. The company is not off the hook just because it was a hack.

    Is identity theft only a financial crime?

    Not at all. Someone can create a criminal record in your name, build fake social media profiles, use your health insurance for medical fraud or file taxes using your PAN. The financial damage is just one part of it.

  • How Law Enforcement Investigates Cyber Scams in India: The Complete Process

    How Law Enforcement Investigates Cyber Scams in India: The Complete Process

    You filed a complaint. The police took your details. And then… silence.

    Most scam victims have no idea what happens after they report a cybercrime. Does anyone actually look into it? Are the police tracing the fraudster? Will they ever catch him?

    The short answer is: yes, investigations do happen. But the process is nothing like what you see in movies. This guide breaks down exactly how Indian law enforcement investigates cyber scams, step by step, in plain language.

    Understanding this process helps you know what to expect, how to help your own case, and why fast reporting matters so much.

    Step 1: Your Complaint Triggers an Immediate Bank Alert

    When you call 1930 or file a complaint on cybercrime.gov.in, your report does not just sit in a queue somewhere.

    The moment your complaint goes in, the operator contacts the banks and payment platforms involved in the transaction. This happens through a system called CFCFRMS which directly connects over 85 banks, UPI platforms and digital wallets to the cyber crime backend. Think of it as a direct hotline between the helpline and your bank.

    The only goal at this point is to freeze the money before the scammer gets to it. Call within the first hour and there is a real chance the funds in the fraudster’s account get locked before they can touch it. Wait longer and that window starts closing fast.

    Speed is everything here. The sooner you report, the better your chances. And this is also where the official investigation begins.

    Step 2: The FIR Is Filed and a Case Is Assigned

    Once your online complaint is verified, it goes straight to the nodal officer of your state cyber crime cell.

    If your loss is above Rs 10 lakh, something important happens automatically. As of May 2025, complaints above this amount trigger a Zero FIR with the e-Crime Police Station of Delhi. This is a new initiative by the Ministry of Home Affairs under I4C and it means your case gets registered immediately without any back and forth about which police station has jurisdiction.

    This matters because cyber crimes do not follow state boundaries. The scammer could be sitting in a different state or a different country entirely. A Zero FIR cuts through all of that and gets the case moving right away.

    After this an Investigating Officer gets assigned to your case. This is the person who takes charge of the investigation from here.

    Step 3: Tracing the Digital Trail

    This is where the actual detective work begins. Once an Investigating Officer is assigned to your case, they start tracing the scammer through multiple digital channels at the same time.

    • Bank account trail Your UTR number is the starting point. Police use it to request the full transaction history from the bank. They can see exactly which accounts the money passed through and where it ended up. Banks have to share this by law.
    • Mobile number trace Police request the call records for the phone number the scammer used. The telecom company has to provide this under Section 91 of CrPC. Those records show every call made, every tower the phone connected to, and the time of each activity. Location starts becoming clear from here.
    • IP address analysis Every fake website or phishing link runs on a server that has an IP address. Police contact the internet service provider associated with that IP and request the name and address registered to it at the time of the fraud.
    • Device fingerprinting Every phone has a unique IMEI number that does not change even when the SIM card is replaced. If police can identify the device used in the scam, they can keep tracking it regardless of how many numbers the scammer switches to.
    • UPI handle and wallet data Every UPI account on PhonePe, Google Pay or Paytm is linked to a KYC verified identity. Police send a legal notice to the platform and within days they have the real name and details behind that UPI handle.

    Step 4: Mule Account Investigation

    Here is something most people do not know.

    Scammers rarely use their own bank accounts. They use what are called “mule accounts.” These are accounts opened by innocent people who were either tricked or paid to lend their account details. The money lands in these accounts first, then gets moved quickly to other accounts or converted to cash.

    When police trace the first account, they often find it belongs to a person who had no idea their account was being misused. This person then becomes a witness, not the main accused, and helps investigators trace the actual scammer.

    This is why it sometimes takes weeks before you hear news of an arrest. Police are following a chain of accounts, sometimes across 5 to 10 different states.

    You can read more about how mule accounts work in our blog on mule account scams in India.

    Step 5: Digital Forensics at the Cyber Lab

    If a device gets seized during the investigation, it is sent to a cyber forensic lab. India has a National Cyber Forensic Laboratory in New Delhi that has already assisted state police in over 12,000 cases.

    At the lab, forensic experts do the following:

    • Recover deleted messages, call logs and files from the seized device that the scammer thought were permanently gone
    • Pull out transaction records and app data to build a clear picture of what happened
    • Read the metadata hidden inside images and documents, which reveals the exact location and time a photo was taken
    • Go through WhatsApp, Telegram and other chat histories through legal data requests to the platforms
    • Check whether any screenshots or payment proofs submitted as evidence were digitally edited or manipulated

    If you ever suspect someone sent you a fake payment screenshot, our Fake Payment Screenshot Checker can help you verify it before you take any action.

    The forensic report prepared at this stage becomes the primary technical evidence used in court. This is not just a formality. Under Section 63 of the Bharatiya Sakshya Adhiniyam 2023, which replaced Section 65B of the Indian Evidence Act, digital records are only accepted as valid evidence in court if they come with a proper certificate from a certified forensic expert. Without that certificate, even genuine digital evidence can be challenged and thrown out entirely.

    Step 6: Surveillance and the Pratibimb Tool

    India’s I4C has developed an analytics tool called Pratibimb that gives investigators a live map of criminal activity across the entire country. It shows where fraud is happening, where the people behind it are located, and how different scam operations are connected to each other.

    Using Pratibimb, investigators can spot clusters of fraud activity, link multiple complaints back to a single criminal network, and coordinate arrests across different states at the same time without waiting for paperwork to travel between jurisdictions.

    Since its launch the tool has led to over 12,987 arrests and uncovered more than 1.5 lakh criminal linkages across India according to the Ministry of Home Affairs.

    When Pratibimb data is combined with CCTV footage and cell tower records, investigators can often narrow down the exact location of a scam operation, even if it is running out of a compound in a completely different state from where the victim is.

    Step 7: Arrest and Cross-State Operations

    Cyber crime rarely happens in one place. A scammer sitting in Rajasthan might be targeting someone in Mumbai using a phone number registered in UP and a bank account opened in West Bengal. The pieces are deliberately scattered to make investigations harder.

    Indian cyber crime units now coordinate regularly through I4C’s Cyber Crime Coordination Centres. Special Task Forces are put together for larger cases. In 2025 alone, the UP Cyber Crime police froze Rs 325 crore across thousands of complaints. Recovery rates have also improved, going from 11% in 2024 to 24% in 2025, which shows the system is getting better at acting fast.

    When a fraudster is identified, a team is physically sent to arrest them. For cases connected to international scam networks like digital arrest scams that trace back to Cambodia or Myanmar, Indian agencies coordinate with Interpol and partner agencies in those countries.

    But international cases are genuinely difficult. Once the money crosses the border or IP addresses point to servers in another country, the trail usually goes cold. A real case covered by Bloomberg in 2025 showed exactly this. A major digital arrest scam was traced back to Cambodia but the person running it was never caught. The investigation hit a wall the moment it crossed international borders.

    What Are the Realistic Chances of Recovery?

    Between April 2021 and September 2025, only 6.7% of total cyber fraud money was recovered across India. That number is hard to read but it is the reality. However for people who reported within the first hour, the recovery rate was significantly better, reaching up to 24% in 2025.

    Your chances depend on a few specific factors:

    • How fast you reported. Within the first hour gives you the best shot. Every hour after that reduces your chances considerably
    • Whether the money stayed in India. Domestic transfers can still be traced and frozen. Once the money leaves the country, recovery becomes extremely difficult
    • How many accounts the money passed through. A single transfer to one account is much easier to freeze than money that has hopped through five different accounts across three states
    • What the fraudster did with the money at the end. If they withdrew cash or converted it to cryptocurrency, getting it back becomes nearly impossible. These two methods are specifically used by scammers because they know how hard they are to reverse

    Why Do So Few Cases Result in Arrests?

    In 2025, India recorded 28.15 lakh cyber crime complaints. But only 55,484 FIRs were filed. That means most complaints never became formal police cases.

    There are real reasons for this:

    • Volume: Police are overwhelmed. Small-value cases (below Rs. 50,000) often get logged but do not receive dedicated investigation resources.
    • Jurisdiction complexity: Crime in one state, money in another, fraudster in a third. Coordinating between three state police forces takes time.
    • VPNs and anonymization: Fraudsters increasingly use VPNs, encrypted messaging apps, and anonymous SIM cards, making IP tracing difficult.
    • Mule accounts: By the time police trace the full chain of mule accounts, the actual perpetrator may have disappeared.

    This does not mean you should not report. Serial fraudsters are eventually caught through the pattern of cumulative complaints. Your single complaint contributes to a larger picture that helps police dismantle entire networks.

    How You Can Help Your Own Investigation

    The police can only work with what you give them. Here is what you should do immediately after a scam:

    • Do not delete any messages, calls, or screenshots from the fraudster
    • Note down the exact time of every transaction
    • Save the UTR number and transaction ID from your banking app
    • Take screenshots of any URLs, WhatsApp messages, or emails
    • If you clicked a suspicious link, use our URL Checker and report the link to police
    • Write down everything that happened in order, before memory fades

    Also, if you received suspicious messages or calls, check them using our Scam Message Checker before taking action.

    Real Case: Digital Arrest Scam in India

    A Noida based woman received a call from someone claiming to be a Delhi Police official. Nothing about the call felt suspicious at first. The person spoke like an authority figure, used the right language and made the situation sound extremely serious.

    She was told her Aadhaar number had shown up in a money laundering case and that she needed to cooperate immediately or face arrest. Then came the video call. The scammers kept her on a continuous WhatsApp call and told her she was under digital arrest. She could not hang up. She could not talk to her family. She could not leave the room.

    For the next several days she was pressured into transferring money to different bank accounts, each one described as a safe account or a verification account. The calls never stopped. The threats never stopped. She had no space to think, no moment to step back and question what was happening.

    By the time it was over she had transferred more than Rs 11 crore.

    What makes this case important to understand is how little the victim did wrong. She did not click a suspicious link. She did not ignore obvious warning signs. She was systematically isolated, threatened and controlled until she had nothing left to transfer. That is what digital arrest scams actually look like. Not a obvious fraud but a carefully constructed situation designed to make a normal person feel like they have no choice.

    Source: NDTV

    Frequently Asked Questions

    How long does a cyber crime investigation take in India?

    Simple financial fraud cases can result in account freezing within hours. Full investigations leading to arrest can take weeks to months, depending on how many states and accounts are involved.

    Can police recover money after a UPI scam?

    If reported within the first hour, there is a chance of freezing the funds before withdrawal. After that, recovery depends on whether the money is still in a traceable Indian bank account.

    What law is used to prosecute cyber scammers in India?

    Cases are filed under the Information Technology Act 2000, the Bharatiya Nyaya Sanhita 2023 (which replaced IPC), and relevant banking fraud provisions. Digital evidence must comply with Section 63 of the Bharatiya Sakshya Adhiniyam 2023.

    Do police investigate small fraud cases below Rs. 10,000?

    These cases are logged and contribute to pattern analysis, but dedicated investigation is less likely. Filing a complaint still matters because serial fraudsters are often identified through cumulative reports.

    What is a Zero FIR in cyber crime cases?

    A Zero FIR can be filed at any police station regardless of where the crime occurred. For financial cyber fraud above Rs. 10 lakh, this is now automatic under the e-Zero FIR initiative launched in May 2025.

  • Cyber Crime Helpline Number India: Call 1930 to Report Online Fraud

    Cyber Crime Helpline Number India: Call 1930 to Report Online Fraud

    Got scammed online? Call 1930 immediately. Seriously, do not wait even five minutes. This is India’s official cyber crime helpline and the moment you call, there is a real chance the authorities can freeze the transaction before that money is completely gone.

    Every second matters here. Scammers move fast and once the money leaves your account, getting it back becomes extremely difficult. One phone call can make all the difference.

    In this guide you will find out exactly how to call 1930, what to say, what documents to keep ready, and what happens after your complaint goes in. No confusing terms, no wasted time. Just the stuff that actually helps you get your money back.

    What Is the Cyber Crime Helpline Number in India?

    1930 is India’s national cyber crime helpline number, and it exists for one simple reason. When someone scams you online, you need to report it fast and you need to reach the right people. This is that number.

    The Ministry of Home Affairs set it up through the Indian Cyber Crime Coordination Centre and it stays open all day, all night, every single day of the year. Whether someone tricked you through a fake UPI request, a job offer that turned out to be fraud, or straight up stole money from your bank account, this is the number you call.

    Before 2021 things were honestly quite confusing. Each state had its own cyber crime number. So if you got scammed you had to first figure out which number belongs to your state, then hope it actually worked. Most people just gave up. The government saw this problem and replaced all those different numbers with one single helpline for the entire country. Simple, clean, no confusion.

    One small thing before we move forward. Save 1930 in your phone right now. Seriously, just do it. Because when you actually need this number you will be stressed and panicking and the last thing you want to do is search for it online.

    When Should You Call 1930?

    Call 1930 if any of these have happened to you:

    • Money was transferred from your bank account or UPI without your permission
    • You paid someone online and got cheated (fake product, fake job, fake investment)
    • You received a fake call from someone pretending to be a bank, police officer, or government official
    • Your OTP was stolen and your account was accessed
    • You clicked a suspicious link and your money was debited
    • You fell for a digital arrest scam or a parcel fraud call

    The golden window is the first 30 to 60 minutes after a fraud. If you call within this time, the cyber crime team can alert the receiving bank and put a hold on the money before the scammer withdraws it.

    What Happens When You Call 1930?

    Here is what happens once you dial 1930:

    Step 1: You call 1930 Someone picks up and asks you three basic things. Your name, your mobile number, and what happened. Do not panic, do not ramble. Just tell them clearly that you got scammed, how much money was taken, and through which app or platform.

    Step 2: They log your complaint They put your details into the system and hand you a reference number. Please write this down on paper, not just a mental note. This little number is the only proof that your complaint exists and you will need it more than once going forward.

    Step 3: They alert the bank This is where things move quickly. The operator gets in touch with the bank or the payment app where your money landed, PhonePe, Google Pay, Paytm, wherever it went. They flag the transaction right there on the call.

    Step 4: Bank puts a hold If the scammer has not already moved the money out, the bank can freeze their account immediately. This is honestly the most important step in the entire process and the only reason it works is because you called fast enough.

    Step 5: You file an online complaint The call gets the ball rolling but it does not close the case. After hanging up you need to go to cybercrime.gov.in and submit a full written complaint using that reference number. The phone call stops the bleeding. The online complaint is what actually builds your case.

    What to Keep Ready Before You Call

    Do not panic and call empty-handed. Have these things ready:

    • Your bank account number or UPI ID The one from which the money was sent. This is the first thing they will ask you.
    • The fraudster’s details Whatever you have. Their UPI ID, bank account number, or phone number. Even one of these is enough to get things moving.
    • Transaction ID or UTR number Open your banking app or payment app and find the transaction. That reference number is proof the payment actually happened.
    • The exact amount and time Do not guess. Check your app and note down the exact figure and the timestamp of the transaction.
    • Screenshots Any messages, fake links, suspicious calls, or chats related to the fraud. Take screenshots of everything before you call.
    • Your Aadhaar or PAN number Just for identity verification. They need to confirm who is filing the complaint.

    Now here is the thing. If you do not have all of this right now, do not let that stop you from calling. The operator will guide you through whatever you are missing. Having everything ready just speeds things up and increases your chances of freezing the transaction in time. Call first, gather more details later if needed information ready will make the process much faster.

    How to File an Online Complaint on cybercrime.gov.in

    Calling 1930 is your first step. But you also need to file a written complaint online. Here is how:

    1. Go to cybercrime.gov.in
    2. Click on “File a Complaint”
    3. Select “Financial Fraud” as the category
    4. Fill in your personal details and the complaint details
    5. Upload screenshots and any evidence you have
    6. Submit and save your complaint number

    You can also track your complaint status on the same website using your registered mobile number.

    If you are unsure whether a message or payment screenshot is fake, use ScamDekho’s Scam Message Checker or Fake Payment Screenshot Checker before you call.

    State-Wise Cyber Crime Helpline Numbers (Backup Options)

    While 1930 works across India, some states also have their own cyber cells. These can be useful if your local case needs follow-up:

    All numbers are sourced from the National Cyber Crime Reporting Portal (cybercrime.gov.in). For the latest updates, visit cybercrime.gov.in directly.

    #State / UTGrievance Phone NumberHow to Report
    1National (All India)1930Call 1930 or visit cybercrime.gov.in
    2Andaman & Nicobar03192-232334Contact DIGP (Intl.)
    3Andhra Pradesh8331043255SP Cyber Crimes, CID
    4Arunachal Pradesh9436040703IGP Crime
    5Assam0361-2521618IGP CID
    6Bihar0612-2238098SSP Cyber Cell
    7Chandigarh0172-2700056IGP-UT
    8Chhattisgarh0771-2511989DIG Technical Services
    9Dadra & Nagar Haveli / Daman & Diu0260-2220140DIGP
    10Delhi011-20892633JT. CP, IFSO Special Cell
    11Goa0832-2420883DIGP
    12Gujarat079-23250798IGP, CID
    13Haryana0172-2524058DIG SCB
    14Himachal Pradesh0177-2620331DIGP/Crime
    15Jammu & Kashmir0191-2582292ADGP CID
    16Jharkhand0651-2220060SP Cyber Crime, CID
    17Karnataka080-22942475DIG Cyber Crimes, CID
    18Kerala0471-2300042ADGP Cyber Operations
    19Ladakh9541902324AIG CIV PHQ
    20Lakshadweep04896-262258SP L&O
    21Madhya Pradesh0755-2770248ADG State Cyber Police
    22Maharashtra022-22160080SP, Cyber Crime Branch
    23Manipur0385-2444888DIGP (Intl.)
    24Meghalaya9402519391SP Cyber, PHQ
    25Mizoram0389-2334682DGP
    26Nagaland6009308003ADGP L&O
    27Odisha0674-2913100ADGP CID CB
    28Puducherry0413-2231313IGP
    29Punjab0172-2226258ADGP Cyber Crime
    30Rajasthan0141-2821741Inspector General of Police
    31Sikkim8695622134Police Inspector CID
    32Tamil Nadu044-29580300SP, Cyber Crimes Division
    33Telangana040-27852000Director, TSCSB
    34Tripura0381-2415501ADGP/IGP Crime
    35Uttar Pradesh0522-2304954ADGP Cyber Crime
    36Uttarakhand0135-2655900IGP/DIG Crime
    37West Bengal033-22143000ADGP CID

    For national financial fraud, always start with 1930 first. The state numbers are for cases that need local police follow-up.

    Real Case: How 1930 Saved Someone’s Money

    Here is a real example shared by a Mumbai resident on a consumer forum:

    It started with a phone call. Someone claiming to be from TRAI told this person that their number was about to be blocked because it was linked to illegal activity. That one line was enough to make them freeze.

    Before they could even process what was happening, they were transferred to a WhatsApp video call. On the other end was a man in uniform, introducing himself as a CBI officer. He was aggressive, authoritative, and gave them no room to think. Pay Rs 2.8 lakh right now or face arrest. So they paid.

    The moment the money left their account, something felt wrong. They started putting the pieces together and realised they had just been played. No TRAI. No CBI. Just scammers who knew exactly how to make a person panic and act without thinking.

    What they did next is the reason this story does not end terribly. They called 1930 within 40 minutes. The team flagged the receiving account and managed to freeze it before everything was gone. Three weeks later Rs 1.9 lakh came back to them out of the Rs 2.8 lakh they had lost.

    Not a full recovery. But nearly 70 percent returned because they picked up the phone and called in time.

    Common Mistakes People Make After Getting Scammed

    Most people do not lose their money because of the scam alone. They lose it because of what they do in the hour after it happens.

    • Waiting too long to call People sit with it. They feel embarrassed, they second guess themselves, they hope maybe the payment will reverse on its own. It will not. And while you are sitting there the fraudster is at an ATM. Once that cash is out, no helpline in the world can bring it back.
    • Not saving the transaction details You are going to be flustered when you call. That is completely normal. But before you dial, open your payment app and screenshot that transaction. The UTR number on it is the one thing that tells the operator exactly which payment to freeze. Without it the complaint still gets filed but it moves much slower.
    • Calling the wrong number Fake helpline numbers travel fast on WhatsApp. Some of them are run by the exact same people who scammed you, waiting for a second bite. 1930 is the only number that is real. Any other number you see floating around on social media or forwarded messages, ignore it completely unless you have confirmed it on cybercrime.gov.in yourself.
    • Forgetting what actually happened Panic does strange things to memory. Before you call, take sixty seconds and write down the basics. How much, which app, what time, what the person said to you. You do not need to have everything figured out but a clear two minute explanation on the call makes a real difference.
    • Trusting someone who calls you back to help This happens more than you think. A scammer calls you pretending to be a cyber crime official, says they saw your case, and offers to help recover your money. Then they ask for an OTP or tell you to download an app. That is the second scam. Genuine 1930 operators do not call you back out of nowhere and they will never ask for your OTP or any kind of remote access Ever

    Is 1930 Available 24 Hours?

    Yes. The 1930 helpline operates 24 hours a day, 7 days a week, including weekends and public holidays. You can call at any time.

    However, response time may vary. If the line is busy, keep trying. Do not wait and give up.

    What If Your Money Is Not Recovered?

    This is the hard truth. Not every case leads to a recovery. But here is what else you can do:

    • File an FIR at your nearest police station A phone call to 1930 starts the process but an FIR makes it official. It creates a legal record of what happened and without it you cannot move forward with insurance claims or bank disputes. It feels like a lot of effort when you are already exhausted but it is worth doing.
    • Contact RBI’s SACHET portal If the fraud involved a bank or any kind of financial company regulated by RBI, head to sachet.rbi.org.in and file a complaint there. It is a separate channel and it applies pressure from a different direction.
    • Call the National Consumer Helpline at 1915 Got scammed through an e-commerce website or an online shopping platform? This is the number for that. It does not replace 1930 but it is the right place to escalate if a platform was involved.
    • Go back to your bank and ask for a chargeback If the payment went through a credit or debit card, your bank is legally required to investigate it. Walk in, raise a chargeback request, and follow up. They have 90 days to look into it and a surprising number of these do get resolved in the customer’s favour.

    Also check our guide on how to recover money lost in an online scam for a full step-by-step breakdown.

    How to Protect Yourself from Cyber Fraud in the Future

    Reporting is important. Prevention is better. A few habits that actually help:

    • Never share OTP, PIN, or Aadhaar details on a call, even if the caller sounds official
    • Always verify a UPI QR code before paying. Use ScamDekho’s UPI QR Checker when in doubt
    • Do not click links sent via WhatsApp, SMS, or email from unknown contacts
    • If you receive a job offer, verify the offer letter before paying any fees. Use our Fake Offer Letter Checker
    • Turn on transaction alerts for your bank account so you know immediately if something unexpected happens

    Summary: What You Need to Know

    • The cyber crime helpline number in India is 1930
    • Call immediately after any online fraud, the first hour is critical
    • Keep your transaction ID, bank details, and screenshots ready before calling
    • After calling, file a written complaint at cybercrime.gov.in
    • Real operators will never ask for your OTP or ask you to install apps
    • Recovery is possible, especially if you act fast

    Frequently Asked Questions

    What is the cyber crime helpline number in India?

    1930. Save it right now. Seriously, stop reading for two seconds and save it. Because when you actually need this number you are going to be panicking and searching for it is the last thing you want to be doing.

    Can 1930 recover my money?

    If you call quickly and the fraudster has not touched the money yet, there is a real chance. Some people get most of it back. Others get nothing despite doing everything right. What I can tell you is that every single person who got even a rupee back made that call fast.

    Is there a time limit to file a cyber crime complaint?

    There is no strict legal deadline, but the sooner you report, the better. Within 24 hours is ideal for financial frauds.

    What if my state police does not take action?

    You can escalate on the national cyber crime portal at cybercrime.gov.in or contact the National Cyber Crime Reporting Portal directly.

    What is the difference between calling 1930 and filing online?

    Calling 1930 triggers immediate bank-level action to freeze accounts. Filing online creates a formal legal complaint. You should do both.

  • Screen Sharing Scam in India: AnyDesk Fraud That Can Empty Your Bank Account

    Screen Sharing Scam in India: AnyDesk Fraud That Can Empty Your Bank Account

    A senior citizen in Mumbai lost ₹9.26 lakh in a single phone call. The caller said he was from a telecom company. He asked the man’s father to download a “small app” for verification. That app was a screen sharing tool. Within minutes, every rupee was gone.

    A businessman in Karnataka lost over ₹50,000 after downloading a screen sharing app called Rust Desk, just because he wanted help operating his PhonePe account.

    A Hyderabad-based doctor lost ₹1.41 lakh while sharing her Google Pay screen with a stranger who promised to send “advance payment” for a medical checkup.

    These are not rare cases. Screen sharing scam is one of the fastest-growing cyber frauds in India right now. The Reserve Bank of India (RBI), NPCI, and police departments across multiple states have all issued warnings against it.

    If someone on a phone call is asking you to download AnyDesk, TeamViewer, QuickSupport, or Rust Desk, stop right there. That person is a scammer.

    This guide explains exactly how this scam works, who gets targeted, and what you should do if you’ve already fallen for it.

    What Is a Screen Sharing Scam?

    A screen sharing scam is a type of cyber fraud where a scammer tricks you into downloading a remote access app on your phone or computer. Once installed, the scammer can see everything on your screen in real-time, including your OTPs, UPI PIN, banking apps, passwords, and personal messages.

    The most commonly misused apps in these scams are:

    • AnyDesk
    • TeamViewer
    • QuickSupport
    • Rust Desk
    • Google Meet screen share

    These are legitimate apps used by IT professionals for remote support. But in the hands of a scammer, they become tools to drain your bank account.

    The RBI issued its first public advisory about AnyDesk fraud back in February 2019. NPCI followed with its own warning. Since then, police departments in Kerala, Meghalaya, Gurugram, Hyderabad, and many other cities have issued similar alerts, but the scam is still growing because most people have never heard of it.

    How Does the Screen Sharing Scam Work? (Step-by-Step)

    Here is the exact playbook scammers follow. Every step is designed to build trust and create urgency.

    Step 1: The Fake Call

    You receive a phone call. The caller claims to be from:

    • Your bank (SBI, HDFC, ICICI, etc.)
    • A telecom company (Airtel, Jio, Vi)
    • A payment app (PhonePe, Google Pay, Paytm)
    • Amazon, Flipkart, or any e-commerce platform
    • The “Electricity Board” or “Insurance Company”

    They sound professional. They may already know your name, phone number, or even partial account details (collected from data leaks or social media).

    Step 2: Creating Panic or Excitement

    The scammer creates urgency using one of these stories, and if you receive such messages, you can verify them using a scam message checker:

    • “Your KYC is expired. Your account will be blocked in 2 hours.”
    • “A suspicious transaction of ₹48,000 has been detected on your account.”
    • “You are eligible for a refund of ₹3,500. Let me help you process it.”
    • “Your credit card application is approved. Let me complete the verification.”
    • “Your electricity bill is overdue. Pay now or your connection will be cut.”

    The goal is to make you act fast without thinking.

    Step 3: “Download This Small App”

    Once you’re worried (or excited), the scammer says:

    “Don’t worry, I will help you fix this. Just download a small app from Play Store. Search for AnyDesk (or TeamViewer or QuickSupport).”

    You download the app. It generates a 9-digit code on your screen.

    Step 4: Sharing the Code

    The scammer asks you to share this code. You share it, after all, it is just a number, right?

    Wrong. That 9-digit code gives the scammer complete remote access to your phone or computer.

    Step 5: Granting Permissions

    The app asks for certain permissions like display over other apps and accessibility access. The scammer guides you through all of them, saying things like “just tap Allow, it’s a routine security check.”

    Step 6: Your Money Disappears

    Now the scammer can see everything on your screen. They can:

    • Watch your OTPs as they arrive via SMS
    • See your UPI PIN as you type it
    • Open your banking app and initiate transfers
    • Install a UPI app on their own device using your phone number and the OTP visible on your screen
    • Copy your saved passwords and card details

    In the Hyderabad doctor case, the scammer installed a UPI app on their own device using the victim’s phone number. The activation OTP appeared on her shared screen. The scammer typed it in on their end and started making transactions from her ICICI Bank account without her even knowing.

    All of this can happen within 5 to 10 minutes.

    Real Cases of Screen Sharing Scam in India

    Case 1: Mumbai Senior Citizen, ₹9.26 Lakh Lost

    A Colaba-based senior citizen received a call from someone pretending to be a telecom company representative. The caller asked him to download a screen sharing app. Once access was granted, the scammer transferred ₹9.26 lakh from his account. An FIR was registered under IPC and IT Act, but no arrests were made at the time of reporting.

    Case 2: Karnataka Businessman, ₹50,000+ Lost

    A village-based businessman in Karnataka was having trouble with his PhonePe app. He searched Google for customer care numbers and called one. The person asked him to install Rust Desk, a screen sharing app. After he shared access, the scammer scanned his credit cards through the phone camera and made transactions worth ₹57,801 from two different credit cards. FIR was registered on July 31.

    Case 3: Hyderabad Doctor, ₹1.41 Lakh Lost

    A 49-year-old doctor received a WhatsApp message from a man claiming to be an army officer. He said he wanted to send 90 women cadets for medical examination and would pay in advance. During the payment process, he asked her to share her Google Pay screen. While her screen was shared, the scammer installed a UPI app using her mobile number and made unauthorized transactions of ₹1,40,972 from her ICICI account.

    Case 4: Pune Resident, ₹3.2 Lakh Lost

    A man in Pune received a call from someone claiming to be a bank officer. The caller said his KYC was expiring and asked him to install AnyDesk for quick verification. Within 10 minutes of sharing his access code, ₹3.2 lakh was transferred out of his account.

    Case 5: Delhi Woman, ₹85,000 Lost (Amazon Refund Scam)

    A woman in Delhi received a call from a supposed Amazon refund team. She was told to install AnyDesk to process her refund. Instead, ₹85,000 was transferred from her account while she was still on the call with the scammer.

    Who Gets Targeted the Most?

    Screen sharing scams do not discriminate, but some groups are targeted more frequently:

    • Senior citizens, Less familiar with app permissions and remote access concepts
    • Small shopkeepers and businessmen, Often search Google for customer care numbers when facing issues
    • First-time smartphone users, Trust anyone who sounds professional on the phone
    • People searching for help online, Google is full of fake customer care numbers posted by scammers
    • Salaried professionals, Targeted with credit card upgrade or insurance renewal scams

    If your parents or grandparents use smartphones, please share this article with them. Most victims never realize what went wrong until their bank balance shows zero.

    Warning Signs: How to Spot a Screen Sharing Scam

    Ask yourself these questions. If the answer to even one is “yes”, it is a scam.

    1. Did someone call YOU first?

    Real banks and companies rarely call customers. They send emails, app notifications, or SMS. An unsolicited call asking you to verify or update something is almost always fake.

    2. Are they asking you to download an app?

    No bank, no payment company, and no government agency will ever ask you to download AnyDesk, TeamViewer, QuickSupport, or any screen sharing app. Period.

    3. Are they asking for a code from your screen?

    That 9-digit code is the key to your entire device. Sharing it is like handing over the keys to your house.

    4. Are they creating urgency or fear?

    “Your account will be blocked in 1 hour.” “A fraud transaction has been detected.” “Act now or lose your refund.” These are pressure tactics. Real companies give you time.

    5. Did you find their number on Google?

    Many customer care numbers on Google are fake, and before trusting any link or website, you should always verify it using a URL checker. Scammers pay for Google Ads or post numbers on websites that look official. Always get the customer care number from the official app or website.

    What Should You Do If Someone Asks You to Share Your Screen?

    Immediately hang up the call.

    Then follow these steps:

    1. Do NOT download any app they mentioned. If you already downloaded it, uninstall it immediately.

    2. If you shared the code but no money was taken yet:

    • Uninstall the screen sharing app right away
    • Change your UPI PIN immediately
    • Change your internet banking password
    • Call your bank and ask them to temporarily block transactions

    3. If money has already been taken:

    • Call the national cybercrime helpline 1930 within the first hour (this is the golden hour, your chances of recovery are highest if you act within 1 to 3 hours)
    • File a complaint at cybercrime.gov.in
    • Call your bank’s fraud helpline and request an account freeze on the recipient’s account
    • Visit your nearest police station and file an FIR
    • Save all evidence like call recordings, screenshots, transaction IDs, and the scammer’s phone number

    Final Words

    Screen sharing scams work because they exploit trust. You trust the person on the phone because they sound professional. You trust the app because it is on Google Play Store. You trust the process because it seems simple.

    But here is the truth. No real bank, company, or government agency will ever ask you to share your screen or download a remote access app over a phone call.

    If you remember just one thing from this entire article, let it be this:

    Phone pe koi app download karne bole → Scam hai. Phone kaat do.

    Share this article with your family, especially your parents and grandparents. One share can save someone’s life savings.

  • Fake Customer Care Scam in India: One Google Search Can Cost You Lakhs

    Fake Customer Care Scam in India: One Google Search Can Cost You Lakhs

    Your UPI payment just failed. Your flight got rescheduled. Your new washing machine stopped working two days after delivery. What do most of us do? We pull out our phone, open Google, and type something like “XYZ customer care number.” A number pops up right at the top. Looks legit. We call it. That one call ends up costing us lakhs.

    The fake customer care number scam plays out thousands of times every month across India. And it does not target careless people. It targets frustrated people who trust Google. This guide breaks down exactly how it works, shares real cases, and gives you a clear action plan so you never fall for it.

    How Does the Fake Customer Care Number Scam Work?

    The scam runs like a well-oiled machine. Here is the typical playbook, step by step.

    • Step 1: Plant the number. Scammers create fake helpline numbers for SBI, HDFC, PhonePe, Paytm, Airtel, Uber, and Swiggy. These get pushed through Facebook pages, blog posts, Google Ads, and increasingly through Google AI Overviews.
    • Step 2: You Google and call. You search “PhonePe customer care number.” The fake number appears at the top, sometimes sitting right above the real one. You tap and call without thinking twice.
    • Step 3: A trained agent answers. They know the company’s terminology, product lineup, and refund procedures. They sound more helpful than most real agents. Then the trap begins.
    • Step 4: Your money vanishes. Once they have screen access or your credentials, funds are siphoned through UPI, wallets, or card transactions within minutes. The money bounces through multiple mule accounts and becomes nearly impossible to recover.

    What Tricks Do Fake Agents Use?

    • Ask you to download AnyDesk, TeamViewer, or Rust Desk for “remote help”
    • Send a UPI collect request disguised as a “refund verification step”
    • Request your OTP, card number, or CVV for “account verification”
    • Ask you to make a small “test transaction” to confirm your account is active

    The Numbers Behind the Scam: What CloudSEK Found

    Bengaluru-based cybersecurity firm CloudSEK ran a deep investigation using their XVigil platform. The findings are genuinely alarming.

    FindingData
    Total fake numbers detected31,179
    Indian numbers (% of total)56% (17,285 numbers)
    Still active when discovered80% of Indian numbers
    Primary distribution channelFacebook (88%)
    Most impersonated sectorBanking and Finance (59.4%)
    Top scam hub stateWest Bengal (23%)
    Biggest single victim lossRs 16 lakh

    Why Is 2025 and 2026 Especially Dangerous?

    Scammers have cracked a new channel: Google AI Overviews. These AI-generated summaries at the top of search results sometimes pull phone numbers from scammer-controlled websites without verifying whether the number is legitimate. That is a massive vulnerability, and fraudsters are exploiting it aggressively right now.

    Real Cases: How Ordinary People Lost Lakhs Over One Call

    Case 1: Rs 100 Uber Overcharge Turned Into a Rs 5 Lakh Nightmare

    Delhi resident Pradeep Chowdhary was charged Rs 318 for a ride that should have cost Rs 205. He Googled “Uber customer care number,” called the top result, and was asked to download the Rust Desk app. Within minutes, Rs 83,760 was transferred out. Four more transactions followed. Total loss: over Rs 5 lakh. Delhi Police filed an FIR under Section 420 IPC and Section 66D of the IT Act.

    Think about that for a second. The man was trying to recover Rs 100 and ended up losing Rs 5 lakh.

    Case 2: Defective Flour Machine Led to Rs 1.29 Lakh Gone

    A Panchsheel Park resident searched for a manufacturer’s helpline after his flour machine stopped working. Scammers extracted his bank details and Rs 1,29,000 disappeared from his account. Delhi Cyber Cell traced the funds to Patna and made three arrests, with links uncovered to the Jamtara cybercrime network.

    Case 3: The Swiggy Scam That Should Never Have Been Possible

    A user searched for “Swiggy customer care number” after a missing Instamart order. The number that appeared, reportedly through Google AI Overviews, was fake. The scammer asked the victim to share their screen and approve a UPI collect request.

    Here is the thing: Swiggy Instamart has no phone-based customer support at all. They only offer in-app chat. So if you are calling a Swiggy phone number, it is automatically a scam. Full stop.

    The Indian Cyber Crime Coordination Centre (I4C) removed 4,200 fake customer care pages from Google in Q2 2026 alone. That is just what they caught.

    Why Smart People Still Fall for the Fake Customer Care Number Scam

    • We over-trust Google. If a number appears near the top of search results, most people assume it is real. That assumption is the single biggest vulnerability scammers exploit.
    • The callers are trained professionals. They know company terminology, refund timelines, and complaint procedures. They often sound more helpful than real customer care agents, which is both ironic and terrifying.
    • They manufacture urgency. You will hear things like “your account will be suspended in 10 minutes” or “this refund link expires today.” Panic shuts down critical thinking.
    • Screen sharing is brutal. The moment you install AnyDesk or TeamViewer, the scammer can see your entire phone screen in real time. Every OTP that pops up, every banking app you open, everything becomes visible to them.

    Check: WhatsApp Wedding Invite Scam: One Tap Can Empty Your Bank

    How to Spot a Fake Customer Care Number Before You Call

    Before you call any helpline number, go through this checklist.

    • Go to the official website or app directly. Type the company URL yourself. Do not use a number from search results, Facebook posts, or blog articles.
    • Check if the company even offers phone support. Swiggy, Zomato, and many fintech apps only offer in-app chat. A phone number for these companies is automatically suspicious.
    • If they ask you to download any app, hang up immediately. No legitimate customer support team will ever ask you to install AnyDesk, TeamViewer, Quick Support, or Rust Desk.
    • No real agent will ask for your OTP, UPI PIN, CVV, or card number. If someone claiming to be from customer care asks for these, it is a scam. Period.
    • Run suspicious messages through a verification tool before acting on any helpline number sent via WhatsApp or SMS.
    • Never trust a number from Google AI Overviews. Documented cases show fake numbers appearing for Swiggy, Royal Caribbean, and British Airways. Always verify on the company’s official website.

    Already Got Scammed? Here Is Your Exact Action Plan

    The Golden Hour: First 60 Minutes

    • Call 1930 immediately. This is the national cyber fraud helpline run by the Ministry of Home Affairs. It is toll-free, available 24/7, and operators can freeze suspicious transactions in real time. The faster you call, the better your chances.
    • Block your bank account and cards through your bank’s official app or by calling your branch directly.
    • Do not delete anything. Keep all call logs, SMS messages, WhatsApp chats, and transaction notifications. These are your evidence.

    Within 24 Hours

    • File a detailed complaint on cybercrime.gov.in with screenshots, transaction IDs, and any recordings.
    • Visit your nearest police station and file an FIR. Under the Bharatiya Nyaya Sanhita (BNS), cyber fraud is a cognizable offense, which means police are legally required to register it.
    • Send a written complaint to your bank about the unauthorized transaction. Under the RBI’s zero-liability policy, reporting within 3 working days may qualify you for a complete refund.

    If the scammer sent you any link during the call, do not click it. Paste it into a URL checker tool first. This can prevent further damage.

    How Big Is This Problem in 2026?

    • Online scams caused losses of roughly Rs 7,000 crore ($789 million) in just the first five months of 2025, according to the Ministry of Home Affairs.
    • India’s National Cyber Crime Reporting Portal logged 22.68 lakh incident reports in 2024. That is nearly five times the 2021 figure.
    • The RBI’s 2024 to 2025 Annual Report flagged a 34% year-on-year jump in digital payment fraud cases.
    • Cybersecurity firm Aurascape found that scammers are now injecting fake numbers into Google AI Overviews and Perplexity, not just traditional search results.

    Who Runs These Fake Customer Care Operations?

    These are not lone wolves working from a bedroom. Investigations by Delhi Cyber Cell and state police units have exposed organized fraud rings operating from specific hubs:

    • Jamtara, Jharkhand has earned the nickname “India’s phishing capital” and even inspired a Netflix series.
    • Patna and Bihar districts are known for mule bank accounts that are bought and sold openly.
    • West Bengal accounts for 23% of all fake customer care numbers registered, according to CloudSEK data.
    • Delhi and Uttar Pradesh each account for 9.3% and serve as both operational and money laundering hubs.

    These operations are structured like small businesses. One team creates and distributes fake listings online. Another handles calls using rehearsed scripts. A third manages money movement through chains of mule accounts.

    The Google AI Overviews Problem Nobody Talks About Enough

    When Google rolled out AI Overviews in 2024, the idea was simple: put an AI-generated summary at the top of search results so users get quick answers. Great concept. Terrible execution when it comes to phone numbers.

    Here is what happens. Scammers create cheap websites filled with content that mentions well-known brands alongside fake phone numbers. Google’s AI scrapes these pages, treats the number as a valid answer, and displays it prominently at the very top of search results. The user sees a clean, Google-branded box with a phone number in it and naturally assumes it is reliable.

    Android Authority, Digital Trends, and the Washington Post all documented multiple cases of this happening. One widely reported incident involved Alex Rivlin, a real estate developer who searched for Royal Caribbean’s customer service number. The number shown in Google’s AI Overview was fraudulent. He shared his credit card information with the scammer before realising the mistake.

    Google has said they are aware of the problem and working on fixes. Until those fixes are fully in place, the rule is simple: never trust a phone number from any search engine result or AI summary. Open the company’s official website or app and find the number there yourself.

    Final Thoughts

    This scam is not going away anytime soon. As long as millions of people rely on Google to find phone numbers instead of going directly to official company websites and apps, scammers will keep exploiting that habit. The technology changes, the delivery channels evolve, but the core trick stays the same: plant a fake number where people are searching for help and wait for the calls to come in.

    The single most powerful thing you can do right now is share this information. Forward this article to your parents, your grandparents, your friends who are not very tech-savvy. Teach them one rule and make sure it sticks: never search for a customer care number on Google. Go to the company’s official website or app. Every single time.

    And if something feels wrong during a call, if they ask you to download software, share your OTP, or approve a payment request, just hang up. No real company will ever ask for those things. Trust that instinct.

    FAQ: Fake Customer Care Number Scam in India

    Q1: How do scammers get their fake numbers to show up on Google?

    They flood the internet with low-quality websites, blog posts, and social media pages that mention popular brand names alongside fake phone numbers. Google’s search algorithm and AI Overview feature sometimes pick these up and present them as legitimate. Scammers also run paid Google Ads and Facebook Ads pointing to fake helpline pages, which gives them even more visibility.

    Q2: Can Google AI Overviews actually show a scam phone number?

    Yes, and it has happened multiple times. Documented cases from 2025 and 2026 show Google AI Overviews displaying fake numbers for companies like Swiggy, Royal Caribbean, Southwest Airlines, and British Airways. Aurascape published detailed research explaining how scammers manipulate AI-generated results to surface fraudulent contact details.

    Q3: What should I do if I already shared my OTP or UPI PIN with a fake agent?

    Call 1930 immediately. Block your bank account through your bank’s official app. File a complaint on cybercrime.gov.in. Change your UPI PIN and all banking passwords from a completely different device. If you report within 3 working days, you may be covered under the RBI zero-liability policy for unauthorized transactions.

    Q4: Which brands do scammers impersonate the most in India?

    CloudSEK’s data shows banking and finance companies are the top targets at 59.4%, followed by healthcare at 19.2% and telecom at 10.5%. In terms of specific brands, SBI, HDFC, PhonePe, Paytm, Airtel, Uber, and Swiggy are among the most frequently impersonated names in India.

    Q5: Is the 1930 cyber fraud helpline available round the clock?

    Yes. The 1930 helpline, operated under the Ministry of Home Affairs, is toll-free and runs 24 hours a day, 7 days a week. It is connected to major banks and payment platforms, which allows operators to initiate transaction freezes in real time. The faster you call after a fraud, the higher the chances of recovering your money.

    Disclaimer: This blog is published for informational and educational purposes only. Nothing here should be treated as legal, financial, or professional advice. If you have been a victim of cyber fraud, please reach out to law enforcement and a qualified legal professional for guidance specific to your situation. Always report cyber crimes immediately through the official channels mentioned above.

  • WhatsApp Wedding Invite Scam: One Tap Can Empty Your Bank

    WhatsApp Wedding Invite Scam: One Tap Can Empty Your Bank

    It is peak wedding season in India, and your WhatsApp is flooded with shaadi cards from relatives, old college friends, and distant cousins. One morning, a new message pops up from an unknown number with a familiar tagline: “Welcome. Shaadi mein zarur aana. 30/04/2026. Love is the master key to happiness.” Attached is a neat little file that looks like a PDF invite. You tap it once, the screen flickers for a second, and nothing happens. You think it is broken and move on.

    Twelve hours later, your bank account is empty. This is not a hypothetical situation. It is exactly how a Maharashtra government employee lost ₹1.9 lakh and how Rajasthan Police recently warned the entire state. Welcome to the fake wedding invitation APK scam, one of the sneakiest cyber frauds spreading across India right now. This guide breaks down how the scam works, the red flags, and the exact steps to take if you or someone in your family has already tapped that file.

    What Is the Fake Wedding Invitation APK Scam?

    The fake wedding invitation scam is a malware-based cyber fraud where scammers send a file on WhatsApp that looks like a wedding card but is actually an APK (Android installer file).

    When you tap it, a hidden app gets installed on your phone. This app then:

    • Reads your SMS inbox (including banking OTPs)
    • Accesses your UPI and banking apps
    • Copies your contact list to send the same scam to your friends
    • Can take screenshots or record your screen in the background

    This scam is also known as:

    • Shaadi card scam
    • Wedding card APK fraud
    • WhatsApp malware scam
    • Fake e-invite scam

    How Big Is the Problem? (Data You Should Know)

    This is not a one-off scam. State police departments across India have officially flagged it as a wedding-season epidemic.

    State / AuthorityWarning IssuedReported Incident
    Rajasthan PoliceOfficial X (Twitter) advisory, November 2024₹4.5 lakh lost by single victim
    Himachal Pradesh CIDPublic warning by DIG Mohit ChawlaMultiple family accounts drained
    Gujarat PoliceState-wide social media advisoryFake cards auto-install malware
    Telangana Cyber BureauOfficial warning via XBank accounts compromised
    Maharashtra (Hingoli Dist.)FIR filedGovt employee lost ₹1.9 lakh
    HDFC BankCustomer advisory issuedWarned users against APK files

    According to cybersecurity firm EY, these attacks are significantly more common on Android devices compared to iPhones because Android permits installation of apps from outside the Play Store. The scam peaks between October and February, which coincides with India’s wedding season when 4.8+ million weddings take place annually.

    How the Scam Actually Works Step by Step

    Here is the exact chain of events scammers follow, reconstructed from police FIRs and cybersecurity advisories.

    Step 1: The Unknown Number

    You receive a WhatsApp message from a number not saved in your contacts. The profile picture often shows a smiling couple or a floral wedding design to lower your guard.

    Step 2: The Sweet Message

    The message looks emotionally warm and urgent, usually in Hindi or English:

    “Namaste 🙏 Shaadi mein aapka swagat hai. Please open the card and bless the couple. 30/04/2026”

    Sometimes the sender even uses a name similar to a known relative, making you assume it is a cousin or distant family member.

    Step 3: The Disguised File

    Attached is a file named:

    • Wedding_Invite.apk
    • Shaadi_Card.apk
    • Invitation_30-04-2026.apk
    • Rahul_weds_Priya.pdf.apk (double extension trick)

    On some Android phones, WhatsApp hides the .apk extension, making the file look like a normal PDF.

    Step 4: The Silent Install

    The moment you tap the file and press “Install” (even once), the malware:

    • Installs a hidden app with no visible icon
    • Requests permissions for SMS, contacts, and accessibility
    • Starts forwarding every OTP to the scammer’s server

    Step 5: The Drain

    Within hours, the scammer:

    • Initiates a UPI or bank transfer from your account
    • Intercepts the OTP silently
    • Transfers money to mule accounts before you notice
    • Uses your WhatsApp to forward the same fake card to your 100+ contacts

    Real Case Studies

    Case 1: Rajasthan Victim Loses ₹4.5 Lakh (2024) A Rajasthan resident received a WhatsApp message with a file named as a wedding invitation. After opening the file, malware accessed their bank account and drained ₹4,50,000 within hours. Rajasthan Police issued an official public warning afterwards.

    Case 2: Maharashtra Govt Employee, Hingoli District (2025) A government employee in Hingoli received a wedding invite from an unknown WhatsApp number with the message “Welcome. Shaadi mein zarur aye. 30/08/2025.” The attached file was an APK disguised as a PDF. Once installed, the malware gave scammers access to his bank account. Loss: ₹1,90,000. An FIR was registered at Hingoli Cyber Cell. Source: NDTV.

    Case 3: Kerala Family Loss (2024) Four members of a single family in Kerala received similar wedding APK files and each lost money. Police traced the malware to a remote-access tool based in a different state.

    8 Red Flags to Identify a Fake Wedding Invitation APK

    If any ONE of these appears, do not open the file.

    1. The sender is an unknown number not saved in your contacts.
    2. The file extension is .apk (or looks like .pdf.apk).
    3. The file size is bigger than 3 MB (real PDF invites are usually under 2 MB).
    4. The message has urgency: “Please open immediately” or “Just one day left”.
    5. The sender uses a familiar-sounding name but the phone number is new.
    6. The profile photo is a generic wedding couple image, often stock photo style.
    7. The message is forwarded, and shows the “Forwarded” tag on WhatsApp.
    8. After opening, your phone asks to “Allow installation from unknown sources”.

    Important: No legitimate wedding invitation in 2026 is shared as an APK file. Real invites come as PDF, JPG, PNG, or links to Canva/Google Drive/WedMeGood.

    Why Android Users Are More at Risk

    APK (Android Package) files only run on Android phones, which is why iPhone users are largely safe from this specific scam.

    Android allows app installations from outside the Play Store through a feature called “Install from Unknown Sources”. Scammers exploit this feature by:

    • Telling users to approve the permission “just this once”
    • Using Android’s trust in familiar file icons
    • Hiding the .apk extension behind .pdf naming

    If you want to check whether any suspicious link or file source you received is safe before tapping it, you can quickly verify it through our URL Checker tool. It cross-checks against databases of known malware and phishing domains.

    What to Do If You Already Opened the File

    Speed matters more than anything. If you realise you opened a suspicious APK, follow this immediately.

    Within 0 to 2 minutes

    1. Turn on airplane mode immediately. This cuts off the malware’s ability to transmit data or OTPs.
    2. Remove the SIM card from your phone.
    3. Do not use internet banking or UPI on this phone.

    Within 30 minutes

    1. Go to Settings → Apps, find any unfamiliar app, and uninstall it.
    2. If you cannot find the app, factory reset your phone. This is the only guaranteed way to remove all traces.
    3. Call your bank’s 24/7 helpline and freeze your accounts and cards temporarily.
    4. Change all banking, UPI, and email passwords from a different device.

    If Money Has Already Been Transferred

    1. Call 1930, the National Cyber Helpline, within the first 60 minutes (Golden Hour).
    2. File a detailed complaint at cybercrime.gov.in with all transaction IDs.
    3. Visit your bank branch with a written complaint to dispute the fraudulent transaction.
    4. File an FIR under IT Act Sections 66C, 66D, and IPC Section 420. For a full recovery walkthrough, read our step-by-step money recovery guide.

    Disclaimer: This information is for awareness only. For legal action, specific recovery procedures, or financial advice, consult a qualified cybercrime lawyer or certified professional. Recovery of funds is not guaranteed and depends on how quickly you act.

    Real Wedding Invite vs Fake APK Invite: Quick Comparison

    FactorFake APK InviteGenuine Wedding Invite
    File Type.apk (or hidden .pdf.apk).pdf, .jpg, .png, or link
    File Size3 MB to 15 MBUsually under 2 MB
    SenderUnknown number, often +92/+84Saved contact or close family
    Message ToneUrgent, generic, forwardedPersonal, often includes voice note
    Asks for permissionsYes, “Install from unknown sources”Never
    DesignerNone, basic iconMade on Canva, WedMeGood, or designer cards
    LinkNo link, direct fileOften a Google Drive / Canva link

    How to Check a Suspicious Message Before Opening

    If you are ever unsure whether a WhatsApp message is safe, there are three quick safety checks you can do before tapping the file.

    1. Ask the sender directly by calling them. Never reply on WhatsApp itself, as that account may already be compromised.
    2. Cross-verify the mobile number with known family members. Most weddings have a single contact person for invites.
    3. Paste the message text into our scam message checker. It analyses wording patterns, known fraud templates, and urgency markers used in such scams.

    Who Is Most at Risk?

    Based on police reports and cybersecurity advisories:

    • Working professionals (25 to 45 years) receiving genuine wedding invites daily, making fakes harder to spot
    • Homemakers and senior citizens less familiar with APK vs PDF difference
    • Job seekers and freshers who frequently download files on Android (also covered in our guide on spotting fake offer letters)
    • Small business owners whose WhatsApp doubles as a customer channel

    This scam specifically targets the emotional trust built around Indian weddings. Nobody wants to offend a distant relative by ignoring their shaadi card, and scammers weaponise exactly this instinct.

    Internal Safety Checklist (Print or Save This)

    • Never open files ending in .apk on WhatsApp
    • Check the file size before opening any invite
    • Disable “Install from unknown sources” in Android settings
    • Never tap “Allow” when an app requests SMS or Accessibility permissions
    • Keep Google Play Protect turned ON at all times
    • Never share OTPs, even with people who claim to be from your bank
    • Back up your phone regularly so factory reset is not painful
    • Teach elderly family members this single rule: if it ends in .apk, do not tap

    Final Word

    The fake wedding invitation APK scam works because it hijacks the purest part of Indian culture, community, celebration, and shaadi invitations. Scammers know that no Indian wants to be rude to a distant cousin’s wedding invite, and they exploit that social pressure perfectly.

    The good news is that this scam has exactly one fatal weakness. It only works if you tap that file. The moment you see an .apk extension on WhatsApp, the entire scheme collapses.

    One simple rule to remember: real wedding invitations are never app files. If the filename ends in .apk, it is not a wedding card, it is a thief at your door.

    Share this guide with your family WhatsApp group today, especially with parents and older relatives who receive the most wedding invites. That one forward could save someone lakhs.

    This article is for educational and awareness purposes only. It does not constitute legal or financial advice. If you are a scam victim, please consult a qualified cybercrime lawyer and your bank immediately.

  • FedEx & DHL Parcel Scam in India: How “Your Parcel Is Stuck” Call Steals Your Money

    FedEx & DHL Parcel Scam in India: How “Your Parcel Is Stuck” Call Steals Your Money

    Imagine this. You are in the middle of a normal workday and your phone rings. A robotic voice says, “Your FedEx package has been blocked, press 1 to speak to an officer.” You press 1 out of curiosity. A person on the other end tells you that a parcel booked in your name is stuck at Mumbai customs, and it contains narcotics, fake passports, and illegal SIM cards. Before you can process what is happening, the call is transferred to a man in police uniform on Skype who says you are now under “digital arrest” and must transfer money to prove your innocence.

    This is not a movie plot. This is the FedEx and DHL parcel customs scam, and it has already stolen over ₹1,806 crore from Indians in just one year, according to Bengaluru City Police data. The scary part is how real it feels, because the caller already knows your Aadhaar number. This guide explains exactly how the scam works, the red flags to catch in the first 30 seconds, and what to do if you or a family member has already picked up the call.

    What Is the FedEx / DHL Parcel Customs Scam?

    The FedEx parcel scam is a phone-based impersonation fraud where criminals pretend to be courier company employees and accuse you of sending or receiving an illegal international parcel.

    Once they have your attention, the call is transferred to a fake police officer, NCB agent, or customs official who demands a “security deposit” or “verification payment” to clear your name.

    This scam is also known as:

    • “Your parcel is stuck at customs” fraud
    • Fake courier call scam
    • Digital arrest parcel scam
    • Narcotics parcel scam

    How Big Is the Problem? (Data You Should Know)

    The parcel scam is not a fringe crime. It is one of the fastest-growing cyber frauds in India.

    RegionCases ReportedLosses / StatusSource
    Bengaluru1,417 cases in 2024 (up 251% from 2023)Part of ₹1,806 crore total cyber losses in 2024Bengaluru City Police
    Telangana645 cases in 2023 vs 64 in 2022₹18.24 crore lost; ₹4.77 crore recoveredTelangana State Cyber Security Bureau
    Krishnagiri (TN)337 cases in 2024Zero cases in 2023The New Indian Express
    All India7.4 lakh+ cyber complaints in 2024₹11,333 crore+ lost overallI4C, Ministry of Home Affairs

    What makes this scam especially dangerous is the psychology behind it. Over 70% of victims in reported cases have said they initially sensed something was off. But the moment the scammer correctly recited their Aadhaar number, their doubt collapsed. This is the real weapon of the scam: leaked personal data combined with fear.

    How the Scam Actually Works Step by Step

    Here is the exact playbook scammers follow, reconstructed from FIRs, FedEx’s official advisory, and verified news reports.

    Step 1: The IVR Call

    You receive an automated call in English or Hindi saying:

    “Your FedEx package has been blocked. Press 1 to speak to customer care.”

    The moment you press 1, you are connected to a live “agent”.

    Step 2: The Hook

    The “agent” claims a parcel booked in your name is stuck at Mumbai or Delhi airport and contains one or more of the following:

    • MDMA or other narcotics
    • Fake passports
    • Illegal SIM cards
    • Foreign currency
    • Expired credit cards

    They quote your full name and Aadhaar number, obtained from data leaks, to appear legitimate.

    Step 3: The Transfer to “Police”

    The call is transferred to a fake officer from the “Mumbai Cyber Cell” or “Narcotics Control Bureau”. They instruct you to download Skype, Zoom, or a custom app for a “digital statement”.

    Step 4: The Digital Arrest

    On video, you see a man in police uniform, often with a fake police station backdrop. He tells you:

    • You are under “digital arrest” and cannot contact anyone
    • Your Aadhaar is linked to a money-laundering case
    • You must transfer money to a “verification account” for clearance

    Step 5: The Drain

    Victims are kept on the call for hours or even days, sometimes forced to check into hotel rooms to isolate them. Money is transferred in multiple tranches to mule accounts, from where it moves through UPI chains to Dubai, Cambodia, or Myanmar.

    Real Case Studies

    Case 1: Bengaluru Journalist (2023) A 70-year-old journalist received a WhatsApp call from someone claiming to be FedEx Mumbai. The caller alleged her parcel contained 240 grams of MDMA. After being transferred to a fake NCB officer on Skype, she transferred ₹1,20,36,246 to four different accounts. Source: The News Minute.

    Case 2: Hyderabad IT Employee (2023) A 36-year-old software engineer, Yashaswi, lost ₹8,74,998, her entire savings including a recurring deposit, after being told her FedEx parcel to Taiwan was flagged for “identity theft”. Source: The Hindu / Hyderabad Cyber Crime.

    Case 3: Retired Delhi Couple (2025) A retired doctor couple in Greater Kailash lost nearly ₹15 crore after being held on a two-week “digital arrest” video call by fraudsters pretending to be TRAI and Mumbai Police officials. Source: Times of India.

    9 Red Flags to Identify a FedEx / DHL Parcel Scam Call

    If any ONE of these appears, it is a scam:

    1. The call starts with a recorded (IVR) message asking you to “press 1”
    2. The caller claims your parcel contains drugs, passports, or SIM cards
    3. They know your Aadhaar number but still ask you to “confirm” it
    4. You are asked to download Skype, Zoom, or any “official police app”
    5. A police officer in uniform appears on video call
    6. You are told you are under “digital arrest” and cannot inform anyone
    7. They ask for money transfer to a “RBI verification account” or “government account”
    8. The urgency is extreme, you must pay within minutes or hours
    9. Caller ID shows +92, +84, +855, +1, or an unusual +91 prefix

    Important: Indian law does not recognise any concept of “digital arrest”. The Ministry of Home Affairs and PIB have officially confirmed this is a complete fabrication used only by scammers. (Source: PIB Fact Check.)

    How Scammers Get Your Aadhaar & Personal Details

    This is the part most articles skip. Scammers get your data from:

    • Data leaks from telecom operators, e-commerce sites, and loan apps
    • Cyber cafés and photocopy shops that store Aadhaar copies
    • Resold CRM databases sold on Telegram for ₹500 to ₹5,000 per 10,000 records
    • Phishing links sent through SMS and fake job portals

    If you have ever uploaded your Aadhaar to an unverified job site or loan app, your data is already on a list somewhere. A safer habit is to run any suspicious link through our free URL Checker tool before clicking. It instantly flags known phishing and scam domains.

    What to Do If You Receive Such a Call (Step by Step)

    Within 0 to 5 minutes

    1. Disconnect the call immediately. Do not say anything, do not press any number.
    2. Do not download any app they recommend (Skype, AnyDesk, TeamViewer, or custom apps).
    3. Block the number on WhatsApp and your dialler.

    Within 30 minutes

    1. Call your family and tell them. Isolation is the scammer’s main weapon.
    2. Verify the parcel claim by visiting the official FedEx, DHL, or Blue Dart tracking websites. Never use any link the caller sent.
    3. Take screenshots of the call log, WhatsApp chat, and any SMS received.

    If You Have Already Transferred Money

    1. Call 1930, the National Cyber Helpline, within the Golden Hour (first 60 minutes). This is the window during which banks can freeze the receiving mule account.
    2. File a complaint at cybercrime.gov.in
    3. Visit your bank branch and file a written dispute for the specific transaction IDs.
    4. File an FIR at your local police station under IT Act Sections 66C, 66D, and IPC Section 420. For a full walkthrough, read our step-by-step money recovery guide.

    FedEx, DHL & Blue Dart: What the Companies Officially Say

    According to the official FedEx India advisory (fedex.com/en-in/trust-center/report-fraud.html):

    • FedEx never solicits personal information through unsolicited calls, email, or SMS.
    • FedEx has no affiliation with any law enforcement agency.
    • FedEx will never ask you to transfer money for “parcel clearance” or “fines”.

    DHL and Blue Dart have issued identical advisories on their official websites. If you are unsure whether a message from any courier is genuine, you can paste the suspicious text into our scam message checker. It analyses wording, sender patterns, and known fraud templates instantly.

    FedEx Parcel Scam vs Genuine Courier Call: Quick Comparison

    FactorScam CallGenuine Courier Call
    SourceRandom mobile/VoIP number, +92/+84 codesRegistered landline of courier branch
    LanguageIVR + hostile “police” toneNormal customer-care tone
    Asks for moneyYes, immediatelyNo. Payments only at delivery or on official portal
    Mentions narcotics / Aadhaar / NCBYesNever
    Asks you to install appsYes. Skype, AnyDesk, custom appsNo
    TrackingNo valid AWB number visible on official websiteAlways matches official courier website

    Who Is Most at Risk?

    Based on case data, the highest-risk groups are:

    • Senior citizens (60+), emotionally vulnerable and less familiar with digital tools
    • NRIs and families of NRIs, international parcels sound plausible
    • Students and job seekers, often share Aadhaar with fake recruiters (see our detailed guide on spotting fake job offers)
    • Small business owners using international logistics

    If your parents or elderly relatives use smartphones, keep two of our free tools bookmarked on their phones for quick safety checks.

    Internal Safety Checklist (Print or Save This)

    • Never press “1” on unknown IVR calls claiming to be a courier
    • Never share Aadhaar, PAN, or OTP on phone/video calls
    • Never download Skype, AnyDesk, or “police apps” on someone’s instruction
    • Never transfer money to verify innocence. That concept does not exist in Indian law
    • Always verify courier claims on the official company website
    • Always report scams within the 60-minute Golden Hour
    • Always tell an elderly family member this scam exists. Prevention is 10x better than recovery

    Final Word

    The FedEx and DHL parcel customs scam works because it attacks three human instincts at once: fear of law, trust in brands, and urgency under pressure. The moment you understand the pattern, the scam loses all power.

    If you ever get that “your parcel is stuck at customs” call, remember one sentence: no genuine courier company, police officer, or customs agent will ever demand money over a phone or video call. Hang up, check the official website, and report it.

    Share this guide with at least one senior citizen in your family today. That single forward can save someone ₹1 crore.

    FAQs: People Also Ask

    Q1: Is the FedEx parcel scam call real or fake?

    It is 100% fake. FedEx India has officially confirmed it does not make such calls or accept money for “parcel clearance”. Any call claiming your parcel contains drugs or illegal items is a scam. Real customs enforcement in India does not happen over phone calls or Skype.

    Q2: What is “digital arrest” and is it legal in India?

    Digital arrest is not a legal concept in Indian law. The Ministry of Home Affairs and PIB Fact Check have repeatedly confirmed that no Indian police, CBI, NCB, or court ever conducts “arrests” over video calls. Anyone claiming this is a fraudster.

    Q3: Can I recover money lost in a FedEx or DHL parcel scam?

    Recovery depends on speed. If you report within the 60-minute Golden Hour on 1930 or at cybercrime.gov.in, banks can sometimes freeze the mule account before the money moves further. Telangana’s TSCSB, for example, recovered ₹4.77 crore out of ₹18.24 crore lost. After 24 hours, recovery chances drop significantly.

    Q4: How did scammers get my Aadhaar and personal details?

    Most parcel scammers buy data in bulk from leaks, telecom breaches, loan app leaks, e-commerce data dumps, and Telegram database sellers. Them knowing your Aadhaar does not mean the call is real.

    Q5: Should I answer unknown international calls in India?

    Avoid answering calls starting with +92, +84, +855, +1, or any unusual international code unless you are expecting one. TRAI has officially advised citizens to disconnect and report such calls through the Sanchar Saathi portal (sancharsaathi.gov.in).

    Q6: Can FedEx or DHL themselves reimburse me if I fall for the scam?

    No. The companies are not liable because the scammers only impersonate them and are not their employees. Your only legal route is reporting to cybercrime authorities and your bank.

    This article is for educational and awareness purposes only. It does not constitute legal or financial advice. If you are a scam victim, please consult a qualified cybercrime lawyer and your bank immediately.

  • Fraud Pattern Alert: Multiple Complaints Reported Across Maharashtra, Karnataka and Goa

    Fraud Pattern Alert: Multiple Complaints Reported Across Maharashtra, Karnataka and Goa

    Multiple individuals have reported being cheated by someone following the same pattern of behavior. The alleged fraud involves building false trust, using social engineering tactics, and requesting large UPI transfers before cutting off contact. This post is published purely for public awareness. No victim identities are disclosed anywhere in this report.

    Reported Loss: ₹1,95,000 | States Mentioned in Complaints: 3 | Reported Victims: 2 or more

    Important Notice

    This blog post is published purely for public awareness. All victim identities are kept strictly private. The pattern described here is based on complaints reportedly filed with cybercrime authorities. If you have had a similar experience, please report it immediately at cybercrime.gov.in or call 1930.


    1. About This Case

    Complaints have been received regarding an individual allegedly operating from one region of India. According to victims, this person presents themselves as trustworthy and well-connected, building a false sense of credibility before making financial requests.

    Complaints have come from victims across Maharashtra, Karnataka, and Goa, suggesting the individual may deliberately target people who are geographically distant, making it harder for them to take immediate action.

    The individual is reportedly reachable through multiple phone numbers and social media profiles. Victims claim that complaints have been filed with authorities, and the matter is reportedly under legal process.

    2. The Alleged Pattern — As Reported by Victims

    The following pattern has been described consistently across multiple complaints.

    Stage 1 — Building trust Contact is reportedly made through social media or mutual acquaintances. Victims describe the person as charming, responsive, and attentive. This phase reportedly continues for days or weeks before any financial request is made.

    Stage 2 — Creating a believable situation A situation is presented that appears to require urgent financial help, such as a business opportunity, a personal emergency, or a favour. Victims describe the story as specific and emotionally compelling.

    Stage 3 — Requesting large UPI transfers Victims report being asked for large transfers via UPI, often in amounts close to ₹1 lakh, sometimes in multiple transactions within the same day.

    Before sending money, you can verify suspicious requests using our UPI QR checker tool

    Stage 4 — Communication changes after payment Victims reported that communication changed significantly after payment was made. Responses became infrequent, excuses were offered, and in some cases contact stopped entirely.

    Stage 5 — Pattern repeats The same pattern of behavior has reportedly been described by more than one victim, with similar amounts and similar methods mentioned across separate complaints.

    A Closer Look at the Reported Incident

    In one complaint, two separate UPI transactions of ₹97,000 and ₹98,000 were reportedly made within the same evening, approximately 24 minutes apart, to the same recipient account (as per complaint). The total reported loss in this single incident is ₹1,95,000. A cybercrime complaint has reportedly been filed and acknowledged. Legal proceedings are said to be ongoing.

    3. Warning Signs to Watch For

    If someone you have recently met online matches several of these patterns, exercise caution before transferring any money.

    Requests for large UPI transfers, particularly amounts close to ₹1 lakh per transaction, especially if asked for quickly or urgently.

    Multiple transfer requests within the same day or within a short period of time.

    Contact initiated through social media or indirect connections, with unusually fast emotional closeness followed by a financial request.

    A compelling story involving urgency, such as a business deal, emergency, or personal crisis, that specifically requires an immediate transfer.

    Communication that slows down, becomes evasive, or stops entirely after money has been sent.

    Use of multiple contact numbers or accounts that change over time.

    Requests coming from someone who is located far from you and whom you have never met in person.

    In many cases, scammers also send fake payment proofs. Learn how to detect them using our fake payment screenshot checker.

    4. How to Protect Yourself

    These simple habits can significantly reduce your risk.

    Always verify before transferring money. Regardless of how well you feel you know someone online, do a video call and confirm that the person, location, and situation match what they have described.

    Do not act under pressure or urgency. Creating urgency is a known tactic used in fraud. Most genuine situations can wait 24 hours while you verify.

    Search the person online before trusting them. Searching a name alongside words like “fraud” or “complaint” can sometimes surface prior reports. You can also check cybercrime.gov.in for registered cases.

    Trust your instinct. If the pace of emotional connection feels unusually fast or if a financial request arrives before a relationship is truly established, pause before acting.

    Avoid transferring money to anyone you have not met in person, especially if the account or contact details are new or unfamiliar.

    Talk about cases like this openly. Awareness is one of the most powerful tools against fraud. Share this post with people who may be vulnerable.

    5. If You Have Already Lost Money — Act Immediately

    Time matters greatly in UPI fraud cases. Here is what to do right away.

    Call 1930 immediately. This is India’s National Cybercrime Helpline. An early call can sometimes prompt banks to flag or hold the recipient account before funds are moved further.

    File a complaint at cybercrime.gov.in. Upload all evidence including screenshots, payment receipts, and chat records. Keep your acknowledgement number safe.

    Visit your nearest police station. File an FIR citing IT Act Section 66D and IPC 420. Bring printed copies of all evidence. An FIR is necessary for bank-level dispute processes.

    Contact your bank directly. Report the transaction to your bank’s fraud helpline and ask about raising a dispute. Provide your FIR number to the relevant bank as well.

    Preserve all evidence. Do not delete any messages, call logs, or transaction records. Every piece of communication is potentially useful in legal proceedings.

    Also Read: How to Report a Cyber Crime in India: Complete Step-by-Step Guide

    Disclaimer

    This blog post is published by ScamDekho for public awareness purposes only. The information presented is based on complaints reportedly submitted by victims and has not been independently verified by ScamDekho. All individuals are presumed innocent until proven guilty by a court of law. No victim identities have been disclosed. This post does not constitute legal advice. ScamDekho is a fraud awareness platform and is not responsible for any independent legal action taken by readers. If you recognise this pattern, please report directly to cybercrime authorities.

    Have you experienced something similar? Submit your report anonymously at support@scamdekho.in. Your identity will remain confidential. Report fraud at cybercrime.gov.in or call 1930.

  • Fake UPI Payment Apps in India: How to Spot Fake PhonePe & GPay

    Fake UPI Payment Apps in India: How to Spot Fake PhonePe & GPay

    Last month, a mobile shop owner in Bengaluru’s Rajajinagar handed over a phone to a customer who showed a “Payment Successful” screen. Three hours later, when he checked his bank account, the ₹76,000 had never arrived. The app on the customer’s phone looked exactly like PhonePe same colors, same success animation, same notification sound. It just wasn’t real.

    This isn’t a one-off case. Asianet News reported that an entire gang is active across Bengaluru targeting small shopkeepers with this exact method. In July 2025, two men were convicted in Arunachal Pradesh for running a similar scam using a fake PhonePe app, as reported by India Today NE. And during Diwali 2025, Gujarat Samachar reported a spike in fake payment app fraud targeting sweet shops and small traders across Gujarat.

    Running a tool that analyzes payment screenshots daily, I see this pattern constantly. The fake UPI app isn’t a theoretical threat, it’s in wallets right now, being used at petrol pumps, mobile shops, and vegetable stalls across India. This guide explains exactly how these apps work, how to spot them in seconds, and what to do if you’ve already been scammed.

    Disclaimer: This article is for informational and awareness purposes only. It is not legal or financial advice. If you have suffered a financial loss, consult your bank, local police, and the National Cyber Crime Helpline (1930) immediately. Laws and fraud patterns evolve, always verify current guidance with official sources like the Reserve Bank of India and NPCI.

    What Is a Fake UPI Payment App?

    A fake UPI payment app is a counterfeit Android APK built to look and behave exactly like a real UPI app – PhonePe, Google Pay, Paytm, BHIM, or any popular payment app in India. The fake app copies the real app’s color scheme, logos, success screen, and even the payment confirmation sound.

    The critical difference: a fake UPI app never connects to real UPI infrastructure. It doesn’t communicate with NPCI servers, your bank, or any actual payment network. It’s essentially a local animation on the scammer’s phone that produces a convincing illusion of payment.

    These are different from fake payment screenshots, which are static images edited with photo tools. A fake app is a live, interactive fraud, the scammer can type any amount, any recipient name, any UPI ID, and produce what looks like a real transaction. Some advanced versions even generate fake transaction IDs and play sounds that imitate the “ting” of a real payment.

    Launched by NPCI in 2016, UPI now processes over 21 billion transactions per month as of January 2026, according to official NPCI data.

    How Big Is the Problem? Real Numbers from Government Sources

    Let me put the scale of this issue in perspective using official numbers, not guesses.

    In December 2025, Union Minister of State for Finance Pankaj Chaudhary told the Lok Sabha that India saw UPI-related fraud worth ₹805 crore across 10.64 lakh incidents in just the first 8 months of FY26. For comparison, FY24-25 saw ₹981 crore across 12.64 lakh incidents, and FY23-24 recorded ₹1,087 crore in losses.

    A separate LocalCircles survey published in 2025 and covering 32,000+ respondents across 365 Indian districts found that 1 in 5 Indian families using UPI had experienced fraud at least once in the past three years. More worryingly, 51% of victims never reported the fraud meaning the real numbers are almost certainly higher than government records show.

    Fake payment apps aren’t the only category in this data, but they’re a growing share. NPCI advisories issued throughout 2025 and 2026 specifically flag counterfeit payment apps as a merchant-targeted fraud category requiring urgent awareness.

    The 5 Main Types of Fake UPI Apps Active in India

    Not all fake payment apps work the same way. After analyzing the reports flowing into our screenshot checker tool over the last year, I’ve grouped them into five distinct categories. Understanding each type helps you recognize the specific trick being used.

    1. Fake PhonePe APK Apps

    These are the most common variant in India. The fake PhonePe APK is distributed via Telegram groups, shady third-party app stores, and file-sharing links on WhatsApp. Once installed, the scammer can manually type the merchant’s UPI ID and an amount. The app then shows PhonePe’s signature purple success screen with a transaction ID that looks real but doesn’t exist in any bank’s records.

    Real PhonePe transaction IDs are exactly 12 digits and fully numeric. The fake app generates random 12-digit strings they look correct but won’t appear in your PhonePe merchant history or bank SMS.

    2. Fake Google Pay / GPay Clone Apps

    GPay clones are slightly harder to spot because Google Pay’s success screen is cleaner and less distinctive than PhonePe’s purple branding. The fake versions replicate the GPay logo, the payment confirmation checkmark, and the recipient name field.

    A genuine Google Pay transaction generates an alphanumeric UPI reference ID. Fake apps either generate all-numeric IDs (wrong format) or use random alphanumeric strings that don’t match Google’s actual transaction ID pattern.

    3. Fake Paytm Mod APKs

    According to a News9 report from 2022 (tracking an ongoing pattern that has only grown), Hyderabad police arrested two individuals specifically for using a fake Paytm “spoof app” against shopkeepers in Vanasthalipuram. The app let them enter the shopkeeper’s name, mobile number, amount, and other details then generate a fake payment success page.

    Some versions even send a fake SMS to the shopkeeper’s phone to add another layer of false confirmation. The only reliable way to detect these: open your actual Paytm for Business app and check whether the credit is there.

    4. Fake Payment Scanner Apps

    This is a category most people don’t recognize but it’s growing fast. A fake payment scanner app appears to “scan” a merchant’s QR code and then immediately displays a success screen. The shopkeeper sees the scanning animation and assumes a real transaction happened. No actual UPI network call is ever made.

    These scanner-style fake apps are particularly dangerous at petrol pumps and toll counters where staff rarely have time to double-check.

    5. Fake Payment Generator Websites (Browser-Based)

    Not technically apps, but they operate on the same principle. These are websites where a scammer can enter any amount, any UPI ID, any transaction ID, and generate a realistic-looking PhonePe, GPay, or Paytm screenshot. Some even produce fake sound files.

    Search traffic data shows tens of thousands of Indians search for these generator tools every month many innocently (curious or trying to detect fakes), others with clear fraudulent intent.

    Fake UPI App vs Real UPI App: Quick Comparison Table

    FeatureFake UPI AppReal UPI App
    Installation sourceAPK file from Telegram, WhatsApp, or third-party siteOfficial Google Play Store or Apple App Store
    Transaction IDRandomly generated, doesn’t exist in bank recordsValid UTR visible in sender’s and receiver’s bank
    Merchant-side notificationNone (only customer’s phone shows the “success”)Instant SMS, app notification, or SoundBox alert
    Bank account creditNever arrivesAppears in your account within seconds
    Settlement recordNo traceFull audit trail in NPCI and bank systems
    Internet requirementOften works offline (obvious red flag)Requires internet to connect to UPI servers
    UPI PIN prompt for senderFake prompt, no real authenticationReal PIN authentication against bank server

    If you can remember just one row of this table: the merchant-side notification. A real UPI payment triggers an alert on your phone or SoundBox. A fake payment only shows success on the customer’s phone.

    7 Ways to Spot a Fake Payment App at Checkout

    This is a practical checklist you can use in under 30 seconds at any transaction. I’ve ordered these from easiest to most thorough.

    1. Check Your Own Device for the Payment

    Open your merchant app Paytm for Business, PhonePe Business, or your bank’s UPI app. A real transaction appears instantly. If there’s no credit in your app, there’s no payment. Don’t release goods regardless of what the customer’s phone shows.

    2. Listen for the SoundBox Alert (Not Their App)

    If you have a Paytm SoundBox, PhonePe Smart Speaker, or any merchant audio device, the confirmation sound should come from your device. A fake app only plays sound from the customer’s phone. As the NDTV Tech coverage of the Hyderabad case pointed out, SoundBoxes are specifically effective against this scam because they’re tied to your actual bank credit.

    3. Verify the Bank SMS on Your Phone

    Every real UPI credit above ₹100 triggers an SMS from your bank. If your phone hasn’t buzzed with a credit message, the payment didn’t happen. Some fake apps send a fake SMS to the shopkeeper’s number always check that the sender ID matches your bank (e.g., “VK-SBIINB” for SBI, not a random 10-digit number).

    4. Look at the Transaction ID Format

    Each UPI app has a specific transaction ID format:

    • PhonePe: Exactly 12 digits, all numeric
    • Google Pay: Alphanumeric, specific pattern
    • Paytm: Long numeric string
    • BHIM: NPCI standard UTR format (12 digits)

    If the transaction ID looks too short, too long, or has letters where it should be numbers only it’s likely a fake.

    5. Check if the App Is Actually Online

    Ask the customer to show the transaction in their payment history, not just the screenshot of the success screen. Real apps sync with NPCI servers and will show the transaction. Fake apps have no history to sync.

    6. Refuse Urgency and Pressure Tactics

    Scammers consistently use phrases like “I’m running late,” “show this to your boss later,” or “the network is slow.” The Kerala Police advisory issued via Kerala Kaumudi specifically warned merchants that artificial urgency is one of the strongest indicators of fake payment fraud. A genuine customer will wait 60 seconds for you to verify.

    7. Never Enter Your UPI PIN to “Receive” Money

    This is critical and widely misunderstood. Entering a UPI PIN always authorizes money going OUT of your account, never IN. If someone says “scan this QR or approve this request to receive your payment,” they’re trying to debit your account, not credit it. The NPCI has issued repeated advisories on this, and RBI Q1 2026 data (as cited by the Nahar Blog analysis of UPI trends) flagged 18 lakh fake collect requests in a single quarter.

    Also Read: UPI QR Code Scam: How Fake QR Scanners Are Stealing Money in India (2026)

    Fake / Fraud Payment Apps List

    • Prank Payment APK
    • FakePay – Money Transfer Prank
    • FakePe APK
    • UPI Payment Generator APK
    • Fake Payment Screenshot App
    • Fake Pay Receipt Generator
    • UPI Screenshot Maker
    • Fake Balance Checker App
    • GPay MOD APK (fake)
    • PhonePe MOD APK (fake)
    • Paytm Spoof App
    • BHIM Clone APK
    • Fake QR Generator App
    • Fake Sound Payment App

    Real Cases: Fake UPI App Scams That Hit Indian Shopkeepers

    • Real cases make the pattern concrete. Here are four documented incidents from across India in the last two years.
    • Bengaluru, Rajajinagar (February 2026): A mobile shop owner was defrauded of ₹76,000 when a gang used a fake payment app to show successful UPI confirmation for an expensive smartphone. The Karnataka police is still tracking the suspects, per Asianet News coverage.
    • Ruksin, Arunachal Pradesh (July 2025): Two men – Raj Thapa and Boge Sonar, were convicted after using a fake PhonePe app to defraud a local shop. The case was originally registered at Ruksin Police Station in October 2024 and investigated by SI Igel Lollen. Both received two-month prison sentences, according to India Today NE.
    • Vanasthalipuram, Hyderabad (2022 onwards): Hyderabad police arrested two people for using a fake Paytm spoof app that could generate fake payment pages with shopkeeper details pre-filled. This case is older but represents a pattern that has only grown, as reported by News9 Live.
    • Gujarat Diwali Season (October 2025): Cybercrime officer Hardik Makadia issued a public warning via Gujarat Samachar about a coordinated fake PhonePe and Paytm fraud targeting sweet shops and crowded festive markets across Gujarat. The fake apps displayed credit confirmation messages, but no money actually transferred.

    What connects every case: the shopkeeper trusted a screen on the customer’s phone without verifying the credit on their own side. The fix is identical in every case verify on your device before releasing goods.

    What to Do If You’ve Already Accepted a Fake Payment

    The first hour is critical. Here’s the exact sequence recommended by RBI and the Indian Cyber Crime Coordination Centre (I4C).

    Step 1: Call 1930 immediately. This is the National Cyber Crime Helpline. The faster you report, the higher the chance of freezing the scammer’s account before funds are moved through mule accounts.

    Step 2: File a complaint at cybercrime.gov.in. Upload screenshots, CCTV footage if available, the scammer’s phone number, and any UPI IDs they used.

    Step 3: Inform your bank. File a written complaint about the failed transaction. RBI guidelines on unauthorised transactions protect merchants if they report within specific timeframes.

    Step 4: File a local police FIR. Include all digital evidence. Under Section 420 of the Indian Penal Code (cheating) and Section 66D of the IT Act (cheating by personation using a computer resource), using a fake payment app is a criminal offense in India.

    Step 5: Preserve evidence. Don’t delete any messages, don’t confront the scammer, don’t block their number before police advise you to. The digital trail helps investigation.

    Disclaimer: This is general guidance. Specific recovery outcomes depend on how fast you report, what evidence exists, and how the scammer moved the money. Consult a qualified lawyer for case-specific advice. No tool including ours can guarantee fraud recovery.

    How ScamDekho’s Free Tool Helps You Verify

    If you receive a payment screenshot and aren’t sure whether it’s real, ScamDekho’s Fake Payment Screenshot Checker runs 8 independent checks on any uploaded image UTR format validation, logo authenticity, font consistency, UPI ID pattern matching, timestamp validation, and template-database comparison against known fake generators.

    The tool is free, requires no login, and works for PhonePe, Google Pay, Paytm, BHIM, Amazon Pay, WhatsApp Pay, CRED, and 15+ other UPI apps. It’s designed as a first-pass filter use it alongside (not instead of) checking your own bank account.

    For QR code and UPI ID verification, we also have a free UPI & QR Code Checker that flags suspicious handles containing keywords like “support,” “refund,” or “kyc” that are commonly used by scammers.

    Final Word

    Fake UPI payment apps are a solvable problem. The technology exists on your side to verify every payment in seconds your merchant app, your bank SMS, your SoundBox. The scam only works when someone skips verification because of urgency or trust. Build a simple rule in your shop: no credit on my device, no product out the door. That single habit defeats every fake app in existence.

    If you’ve been scammed, report within the first hour by calling 1930 and filing at cybercrime.gov.in. Share this guide with any small business owner you know awareness is still the best defense India has against a problem that costs crores every month.

    Frequently Asked Questions

    Can a fake UPI app generate a real transaction ID?

    No. Fake apps generate random strings that match the visual pattern of a real transaction ID but don’t exist anywhere in the NPCI, bank, or UPI network. The only way to verify a transaction ID is real is to see it in your own bank statement or merchant app. This is explicitly confirmed by Cashfree’s merchant fraud guide and multiple NPCI advisories.

    Is using a fake payment app a crime in India?

    Yes. Using a fake UPI payment app to defraud a seller is a criminal offense under Section 420 of the Indian Penal Code (cheating) and Section 66D of the Information Technology Act, 2000 (cheating by personation using a computer resource). Both sections carry imprisonment and fines. Victims should file an FIR with local police in addition to reporting to 1930 and cybercrime.gov.in. Consult a qualified lawyer for case-specific advice.

    What’s the difference between a fake payment app and a fake payment screenshot?

    A fake payment screenshot is a static image usually created by editing a real screenshot or using a screenshot generator website. A fake payment app is a live, interactive application that generates new fake confirmation screens on demand. Apps are more dangerous because the scammer can tailor each fake payment to the exact transaction, including merchant name and amount. Our screenshot checker tool can detect both fake app outputs and edited screenshots using visual forensics and pattern matching.

    Will a SoundBox protect me from fake payment apps?

    Yes, largely. A Paytm SoundBox, PhonePe Smart Speaker, or any merchant audio device connects directly to your bank account and only speaks when real money is credited. Since fake apps can’t trigger a real bank credit, they can’t trigger your SoundBox either. The caveat: the fake app may play its own sound on the customer’s phone that mimics a SoundBox tone. Always listen for the sound coming from your device, not theirs. This is the specific recommendation from Paytm’s merchant fraud prevention guide and is echoed across multiple NPCI advisories.

    About the author: Written by the ScamDekho team. We build free AI-powered tools to help Indian consumers and small businesses detect online fraud — fake payment screenshots, suspicious UPI IDs, phishing URLs, and fraudulent job offers. Our screenshot checker analyzes over 1,000 submissions a month from users across India.