Category: Blog

Your blog category

  • How to Verify an HR Email and Company Domain Before Accepting a Job Offer

    How to Verify an HR Email and Company Domain Before Accepting a Job Offer

    A recruiter’s display name, logo and professional signature can be copied in minutes. What matters is whether the sender, domain, vacancy and hiring process can be verified independently. This guide shows you how to verify an HR email and company domain before accepting a job offer, sharing identity documents or paying any fee.

    If you have already received an offer letter, upload it to ScamDekho’s free fake offer letter checker for an initial review. The tool can flag suspicious patterns, but it cannot confirm employment on behalf of a company. Final verification should always come from the employer through contact details found independently.

    Quick answer: how can you verify an HR email?

    Open the full sender address, compare its domain with the company’s official website, inspect the reply-to address, confirm the vacancy on the official careers page and contact the employer using a phone number or email you found yourself. Do not rely on the contact details printed inside the offer letter. Any demand for an interview fee, refundable deposit, training payment, laptop charge or security money is a serious warning sign.

    1. Open the full sender address

    Email apps often show only a display name such as “HR Team” or “Talent Acquisition”. Tap or click the name to reveal the complete address. A display name proves nothing because the sender chooses it.

    Check the characters before and after the @ symbol. Watch for added hyphens, swapped letters, extra words and unusual domain endings. An address such as careers-company-example.com is not automatically connected to companyexample.com.

    2. Compare the email domain with the official company website

    Find the company’s official website through a separate search or a trusted directory. Do not open the website link included in the suspicious email. Compare the company’s main domain with the domain used by the recruiter.

    Large employers may legitimately use hiring partners or separate recruitment systems, so a different domain is not automatic proof of fraud. In that situation, the official employer should be able to confirm the agency or platform.

    3. Check the reply-to address

    The visible sender and the address that receives your reply can be different. A message may appear to come from a company domain but route replies to a free mailbox or unrelated domain. Use your mail app’s “show details” option and compare the From and Reply-To fields.

    4. Review the domain behind every link

    Do not judge a link by its blue text. Hover over it on desktop or press and hold on mobile to reveal the destination. If the recruiter sends an assessment, onboarding or document-upload link, run it through ScamDekho’s website scam checker before opening it.

    A legitimate-looking HTTPS padlock only means the connection is encrypted. It does not prove the recruiter or website is genuine.

    5. Confirm the vacancy independently

    Search the employer’s official careers page for the role, location and job ID. Some real roles are filled before a listing is removed, and some companies recruit privately, so an absent listing is not conclusive. Ask the company to confirm the vacancy through its official HR or careers contact.

    Do not call the phone number printed in the offer letter as your only verification. A scammer can answer that number and pretend to be the company.

    6. Verify the recruiter’s professional footprint carefully

    Check whether the recruiter appears on the company’s official team pages or established professional profiles. Look for a consistent employment history, genuine activity and connections with other employees. A recently created profile with a few copied posts and hundreds of random connections is weak evidence.

    Even a real employee’s identity can be impersonated. Confirm the contact through the employer’s official channel instead of trusting a profile alone.

    7. Examine the hiring process

    Most genuine employers use a process appropriate to the role: application, screening, interviews, assessment and written terms. Warning signs include an offer after only a chat interview, immediate selection without discussing the role, or pressure to join within hours.

    • Was there a credible interview with identifiable people?
    • Did they discuss responsibilities, reporting structure and location?
    • Can the interviewer be verified through the company?
    • Does the offer refer to a real job ID or application you submitted?

    8. Treat every payment demand as high risk

    Be extremely cautious if a recruiter asks for money for registration, interview scheduling, background verification, training, equipment, visa processing, courier charges or a “refundable” security deposit. Scammers often keep asking for one small payment after another.

    Do not scan a QR or approve a UPI request sent by a recruiter. A UPI PIN authorizes money leaving your account; it is not required to receive salary or a refund.

    9. Check the offer letter for internal inconsistencies

    Review the legal company name, address, role, salary breakup, joining date, work location, reporting manager and signatory. Look for different company names in the footer, inconsistent fonts, copied signatures, vague job duties and unrealistic compensation.

    Formatting errors do not prove fraud, and a polished PDF does not prove authenticity. Use the offer letter verification tool to identify warning signals, then confirm directly with the employer.

    10. Protect your identity documents

    Do not send Aadhaar, PAN, passport, bank statements or a cancelled cheque before you understand why the document is required and who will store it. Where appropriate, use a masked or watermarked copy stating the purpose and date. Never share an OTP, banking PIN or password.

    If the recruiter asks you to install remote-access software or share your screen for onboarding, stop. Genuine support should not need control of your banking or personal device.

    11. Watch the language and urgency

    Common pressure tactics include “limited seats”, “payment today”, “offer expires in 30 minutes” and threats that your selection will be cancelled. Legitimate hiring can have deadlines, but you should still be able to verify the employer and review the terms.

    If the suspicious approach came through WhatsApp or SMS, paste the text into the WhatsApp and SMS scam message checker to review the language and risk signals.

    12. Contact the employer through an independent route

    This is the most important step. Use the official website’s careers page, published switchboard or verified support channel. Ask whether the recruiter, email domain, job ID and offer letter are genuine. Provide only the minimum information needed for verification.

    HR email and job-offer checklist

    1. Reveal the complete From and Reply-To addresses.
    2. Compare the domain with the official company website.
    3. Check every assessment and onboarding link separately.
    4. Confirm the vacancy and job ID through the official careers page.
    5. Verify the recruiter through an independent company contact.
    6. Review the interview process and written terms.
    7. Refuse registration, training or security-deposit payments.
    8. Do not share sensitive documents before verification.
    9. Scan the offer letter for mismatched names and suspicious demands.
    10. Save all emails, chats and payment instructions.

    If you already shared documents or paid

    Contact your bank or payment provider immediately if money was transferred. Preserve the email headers, offer letter, job advertisement, chat history, phone numbers, URLs and payment references. Report the incident through the current official cybercrime reporting route in India. If identity documents were exposed, monitor accounts for misuse and follow the relevant issuer’s guidance.

    Frequently asked questions

    Is a Gmail address always a fake recruiter?

    No, especially for small businesses or independent recruiters. However, a free email address claiming to represent a large company needs strong independent verification.

    Can scammers use a real employee’s name?

    Yes. Names, photos and job titles can be copied. Confirm the communication through the company’s official contact channel.

    Does a company-domain email guarantee the offer is genuine?

    No. Accounts can be compromised and lookalike domains can be difficult to notice. Verify the vacancy, recruiter and process independently.

    Should I pay a refundable job registration fee?

    Treat it as high risk. Do not send money until you have independently verified both the employer and the exact reason through official contact details.

    Final takeaway

    An offer letter is evidence to examine, not proof of employment. Verify the complete email address, domain, vacancy, recruiter and hiring process through sources the sender does not control. If there is pressure to pay or share sensitive information before verification, stop the process.

  • How to Check If a Website Is Legit in India: 12 Checks Before You Pay

    How to Check If a Website Is Legit in India: 12 Checks Before You Pay

    A professional-looking website is not proof that the business behind it is genuine. Scam stores and phishing pages can copy logos, product photos, reviews and even the design of a well-known brand within hours. The safer question is not “Does this site look good?” but “Can I independently verify who runs it, how long it has existed and where my money or data will go?”

    This guide explains how to check if a website is legit in India before you buy, sign in, upload an ID or make a UPI payment. If you already have the link, start with ScamDekho’s free website scam checker, then use the manual checks below. Automated tools can highlight risk signals, but they cannot guarantee that a website is safe.

    Quick answer: how do I check whether a website is genuine?

    Check the exact domain spelling, domain age, HTTPS certificate, contact details, return policy, payment method, independent reviews and whether the offer is realistic. Search the company name separately, verify any registration or address through the relevant official source, and avoid paying when the seller creates urgency. A single positive signal is never enough; look for a consistent pattern.

    1. Read the domain name character by character

    Scammers often register lookalike domains that replace one letter, add a hyphen or use an unusual ending. A fake page may display the real company name while the address bar shows something different. On mobile, tap the address bar so you can see the complete domain.

    • Watch for swapped letters such as “rn” in place of “m”.
    • Be careful with extra words such as “secure”, “claim”, “support” or “india-offer”.
    • Do not assume a link is official because it includes a brand name somewhere in the URL.
    • Check the registered domain itself, not only the page title shown in WhatsApp or Google.

    2. Check domain age and registration consistency

    A domain created very recently deserves extra caution when the site claims to be an old, established company. Domain age alone does not prove fraud—legitimate businesses launch new sites—but a new domain combined with huge discounts, copied text and prepaid-only checkout is a strong warning pattern.

    Use the ScamDekho URL Checker to review available domain-age and reputation signals. If registration information is private, do not treat that as automatic proof of a scam; many legitimate owners use privacy protection.

    3. Understand what HTTPS does—and does not—prove

    The padlock means the connection between your browser and the website is encrypted. It does not verify that the seller is honest. Scam websites can also obtain valid SSL certificates. Treat HTTPS as a minimum technical requirement, not a trust certificate.

    4. Verify the business outside its own website

    Do not rely only on the “About Us” page. Search the business name, phone number, email address and physical address independently. Check whether the same contact details appear consistently across established profiles and official records relevant to that business.

    If the site claims to represent a famous brand, open the brand’s official website by typing its address yourself. Use the contact information on that official site to confirm the relationship. Never use the phone number supplied by the suspicious page to verify itself.

    5. Test the contact information

    A legitimate business should normally provide a usable support channel and clear identity. Warning signs include only a WhatsApp number, a free email address for a supposedly large company, an address that belongs to an unrelated place, or policies copied from another site.

    • Search the phone number in quotes.
    • Check whether the email domain matches the website domain.
    • Look up the address on a map and compare the business name.
    • Read the privacy, refund, shipping and terms pages for mismatched names.

    6. Compare prices with normal market prices

    Fraudulent stores use extreme discounts to make people act before checking. A limited-time offer is not automatically fake, but a popular product sold far below every established retailer needs independent verification. Search the exact product model on multiple trusted stores before paying.

    7. Inspect the payment flow

    Be cautious when a store insists on a direct UPI transfer to a personal-looking ID, asks you to scan a QR received over chat, or moves the conversation outside the website. Before approving a UPI payment, confirm the payee name displayed by your payment app. If you need to inspect an unfamiliar handle or QR, use the UPI ID and QR Scam Checker as an additional signal.

    Never enter a UPI PIN to receive money. A PIN authorizes a debit from your account. Also avoid sharing OTPs, card PINs, CVVs or screen-sharing access with a seller or support agent.

    8. Look for copied product images and text

    Scam sites frequently copy images, testimonials and policy text. Reverse-searching a distinctive product image can reveal whether it appears on many unrelated stores. Search a sentence from the About or Returns page inside quotation marks. If another company’s name appears in the policy, the site may be using a copied template.

    9. Read independent reviews carefully

    Reviews shown on the seller’s own website are easy to fabricate. Look for discussion across multiple independent sources and focus on specific, detailed experiences. A sudden group of five-star reviews using similar language, followed by complaints about non-delivery, is more informative than the average rating alone.

    No reviews can simply mean the business is new. Combine this with domain age, contact verification and payment behavior before deciding.

    10. Check for pressure, fear and forced urgency

    Countdown timers, “only one left”, threats that an account will close, or instructions to pay within minutes are designed to reduce careful thinking. Stop and verify through a separate channel. A genuine business should allow you enough time to understand what you are buying and how refunds work.

    11. Be careful with downloads and login pages

    Do not install an APK, browser extension, remote-access app or “security update” from an unfamiliar site. If a link asks you to log in to a bank, marketplace or government service, close it and open the official app or type the official address yourself. Password managers can also help: they normally will not autofill credentials on a lookalike domain.

    12. Use a combined risk decision

    Do not decide from one signal. Use this simple rule:

    • Low concern: established domain, independently verified business, consistent contact details and normal payment options.
    • Needs caution: new domain or limited reputation, but no direct evidence of fraud. Verify before sharing data or paying.
    • High concern: lookalike URL, impossible discount, prepaid-only pressure, personal UPI demand, copied policies or requests for OTP/PIN/remote access.

    Website legitimacy checklist before payment

    1. Open the full URL and confirm the spelling.
    2. Run the link through the website safety checker.
    3. Check domain age and available reputation signals.
    4. Verify the company using a separate official source.
    5. Search the phone, email and address independently.
    6. Compare the price with established sellers.
    7. Read refund, shipping and privacy policies.
    8. Confirm the payee name before approving UPI.
    9. Do not download unknown files or share an OTP/PIN.
    10. If several signals do not match, do not proceed.

    What to do if you already paid a suspicious website

    Contact your bank or payment provider immediately and ask about the available dispute or fraud-reporting process. Save the URL, order page, payment reference, chat, email, phone number and screenshots. Report the incident through India’s official cybercrime reporting channel and follow the current instructions shown there. Do not pay a second “refund fee” to anyone claiming they can recover the money.

    Frequently asked questions

    Does a padlock mean the website is genuine?

    No. It only shows that the connection is encrypted. You still need to verify the domain, business identity, reputation and payment flow.

    Can a new website be legitimate?

    Yes. Domain age is one signal, not a verdict. A new site needs stronger independent verification, especially before prepaid purchases or identity-document uploads.

    Can ScamDekho guarantee that a website is safe?

    No scanner can guarantee safety. ScamDekho provides automated risk signals to support your decision. Always verify important transactions independently.

    What is the safest way to open a bank or government website?

    Use the official mobile app or type the known official address yourself. Avoid signing in through a link received by SMS, email, an advertisement or an unknown WhatsApp contact.

    Final takeaway

    A convincing design can be copied; a consistent identity is harder to fake. Check the domain, history, business details, payment recipient and independent reputation before trusting a website. If the evidence is incomplete or the seller is pressuring you, pause the transaction.

  • Payment Successful but Money Not Received? Verify UPI Credit and Fake Screenshots

    Payment Successful but Money Not Received? Verify UPI Credit and Fake Screenshots

    A customer shows “Payment Successful”, but your bank balance has not changed. This can happen because of a genuine delay, a payment sent to the wrong UPI ID, a failed or reversed transaction—or a fake payment screen. The correct response is calm verification, not an argument and not immediate delivery.

    If you received an image, upload it to ScamDekho’s fake payment screenshot checker for an additional review. It can flag visual and transaction-format signals, but it cannot see your bank account or guarantee whether money was credited. Your own bank or UPI transaction history is the final source of truth.

    Quick answer: what should you do when payment is successful but money is not received?

    Check your own bank or merchant app, confirm the correct receiving account and review the transaction history—not only notifications. Ask the payer to open the transaction inside their official app and check the current status and recipient. Do not release goods, issue cash or send a “refund” until the credit appears in your account or your payment provider confirms it.

    Why can a successful payment not appear immediately?

    Several situations can look similar at first:

    • Network or bank delay: the payer’s app may show a status before your balance refreshes.
    • Pending transaction: the payment has not reached a final state.
    • Wrong recipient: the payer used an old QR or mistyped the UPI ID.
    • Reversal: the amount may return to the payer after a failed transaction.
    • Fake proof: the screenshot, notification or app screen may be edited or simulated.

    Do not accuse the customer based only on a delay. Follow the same verification process for every transaction.

    1. Check your own account first

    Open your bank, UPI or verified merchant app yourself. Review the transaction list for the correct receiving account. If your business uses several bank accounts or QR codes, confirm which account is linked to the displayed code.

    A sound box, SMS or push notification is convenient but should not be the only proof. Notifications can be delayed, hidden or imitated.

    2. Refresh through the official app

    Use the app’s normal refresh or transaction-history function. Do not click a “verification” link sent by the payer. If your app is unavailable, use another official channel offered by your bank, such as its verified mobile app, website or support number.

    3. Confirm the exact amount, time and recipient

    Compare the amount and approximate time with your sales record. Ask the payer to open the transaction from inside their official payment app—not from the gallery—and show the recipient name, UPI ID and current status.

    Be careful with screenshots cropped so tightly that the recipient, timestamp or status area is missing.

    4. Understand what a UTR or transaction reference proves

    A reference number can help the bank or payment provider trace a transaction. Its presence in a screenshot does not by itself prove that your account was credited. Text and numbers can be edited, copied from an older transaction or displayed by an imitation app.

    Do not rely on a public “UTR checker” that asks for banking credentials. Confirm disputed payments through your own provider’s official support process.

    5. Look for fake-payment screenshot signals

    Visual clues are useful for deciding whether to investigate further:

    • Uneven fonts, spacing or alignment
    • Blurry text beside sharp logos
    • Recipient or amount fields that look pasted
    • Impossible date, time or number format
    • Cropped status bar or missing navigation
    • Logo colours or interface elements that do not match the official app
    • A screenshot that cannot be opened as a live transaction inside the payer’s app

    One design difference is not proof because payment apps update their interfaces. Use the AI payment screenshot detector as an additional signal and verify the credit independently.

    6. Do not accept a notification sound as final proof

    Fraudsters can play recorded confirmation sounds or use apps that imitate a merchant alert. Train staff to check the receiving account for every disputed or high-value payment. A busy shop is exactly where pressure and distraction work best.

    7. Never send a refund for money you did not receive

    A payer may claim they accidentally paid twice and ask you to return one payment. Verify that both credits exist in your own account and that neither is pending or reversed. Do not send money based only on two screenshots.

    8. Keep the goods until the payment is confirmed

    For a shop, fuel station, delivery, marketplace sale or service handover, use a clear rule: goods are released after the receiving account confirms the credit. Explain politely that a bank delay is possible and that the transaction can be completed when the status is resolved.

    Avoid taking the customer’s phone or asking for their PIN. Verification should not require access to their credentials.

    9. Verify the UPI ID or QR used

    Check whether the payer scanned your current QR and whether the payee name matched your business or receiving account. If a printed QR is displayed publicly, inspect it for a sticker placed over the original.

    You can review an unfamiliar ID or QR with ScamDekho’s UPI ID and QR Scam Checker, then compare the result with the payee information shown in your official app.

    10. Handle a genuine pending transaction fairly

    If the payer’s official app shows pending and your account shows no credit, neither side should treat the transfer as final. The payer should follow the support or dispute steps in their app. Keep the order on hold or use another agreed payment method only after both sides understand how any later duplicate credit will be handled.

    Do not ask the payer to repeat large payments blindly, and do not hand over cash against an unconfirmed digital transaction.

    Step-by-step checklist for sellers

    1. Pause the sale and remain calm.
    2. Open your own bank or merchant transaction history.
    3. Confirm the correct account, amount and time.
    4. Ask the payer to open the live transaction in the official app.
    5. Compare recipient name, UPI ID and status.
    6. Use the screenshot checker only as an additional signal.
    7. Do not release goods or issue a refund without confirmed credit.
    8. Record the order and payment reference for follow-up.
    9. Contact your provider through its official support channel when needed.

    A simple payment-verification policy for shop staff

    • Never trust only a screenshot, SMS or sound.
    • Verify high-value and disputed payments in the receiving account.
    • Do not let customers rush staff during closing time or busy hours.
    • Do not share OTPs, PINs or merchant-app credentials.
    • Escalate mismatches to the owner or manager.
    • Keep current QR codes visible and inspect them for tampering.

    If the customer has already left with the goods

    Preserve CCTV, invoice details, the screenshot, phone number, conversation, time and any transaction reference. Contact your bank or payment provider to confirm whether a transaction exists. If fraud is suspected, follow the current official cybercrime reporting process and provide accurate evidence. Do not post unverified personal accusations publicly.

    Frequently asked questions

    Is a UTR number proof that I received the money?

    No. It is a tracing reference, not a substitute for a credit entry in your own account. Your payment provider can use it to investigate.

    Can a payment app show success and later reverse the transaction?

    Payment states and reversals can occur depending on provider processing. Check the final status in the official transaction history and contact the provider for a disputed case.

    Should I ask the customer to pay again?

    First confirm whether the original transaction is pending, failed or sent to the wrong recipient. If another payment method is used, agree on how a later duplicate credit will be returned safely.

    Can ScamDekho confirm money in my bank account?

    No. The tool analyses screenshot signals. Only your bank or payment provider can confirm the account credit and transaction status.

    What if the screenshot looks completely genuine?

    Still verify your own account. A polished image or realistic interface is not proof of settlement.

    Final takeaway

    When a payment appears successful but the money is not received, rely on your own account history and provider—not pressure, screenshots or sounds. A consistent verification policy protects both honest customers experiencing delays and sellers targeted by fake-payment scams.

  • Elderly Mangaluru Woman Loses ₹16.20 Lakh: Safety Checks

    Elderly Mangaluru Woman Loses ₹16.20 Lakh: Safety Checks

    An elderly woman in Mangaluru has reportedly lost ₹16.20 lakh in an investment scam that began with a Facebook advertisement. According to her complaint at the Mangaluru Cyber Economic and Narcotics (CEN) police station, she clicked an investment-related link in April and was added to a Telegram group, where assurances from the group convinced her to start transferring money.

    Her first payment was a modest ₹20,372 on April 18. Over the following months the amounts grew sharply: ₹3 lakh on June 12, another ₹3 lakh on June 22, ₹4 lakh on June 24, and ₹6 lakh on June 30 — bringing her total loss to ₹16.2 lakh. When she asked the group to return her money and got no response, she realised she had been deceived and filed a complaint. Police have registered the case, and an investigation is underway.

    Investment scams can be persuasive because they are presented as financial opportunities rather than obvious threats. A professional-looking message, website or account should not be treated as proof that an offer is genuine.

    What is known about the reported Mangaluru case?

    The core details above — the Facebook-to-Telegram route, the escalating payment pattern, and the ₹16.2 lakh total — come from her police complaint and are consistent across news reports. What isn’t yet public is who ran the scheme, whether the accounts used to receive the money have been traced, or whether any of it has been recovered — that depends on how the CEN police investigation proceeds.

    That distinction matters less than the pattern itself, which is the real lesson here: a small first payment (₹20,372) followed by steadily larger ones over two months is a classic trust-building sequence. Every unsolicited or unusual investment proposal needs independent checking before money or personal information is shared — regardless of how small the first ask seems.

    Why investment approaches deserve careful checking

    Cloudflare identifies phishing among common cyberattack methods and provides guidance on detecting and preventing such attacks. Phishing generally depends on deception: a message or online page is made to appear trustworthy so that the recipient takes an action.

    In an investment setting, the requested action may involve opening a link, sharing information, creating an account or making a payment. The important safety principle is the same: do not rely only on what appears inside the message or page.

    A polished design is not evidence of legitimacy. Nor are confident claims, charts, account dashboards or screenshots supplied by the person promoting an opportunity. Treat these as material to be checked, not as independent confirmation.

    Warning signs that justify a pause

    • Unexpected contact: A person you do not know approaches you with an investment proposal.
    • Pressure to act: You are told that the opportunity, price or withdrawal window will disappear quickly.
    • Unclear identity: It is difficult to confirm who operates the service or who will receive the money.
    • Link-based instructions: You are directed to a website through a message instead of reaching the organisation through a channel you found independently.
    • Requests for more money: Additional payments are demanded before an investment, profit or balance can supposedly be released.
    • Secrecy: You are discouraged from discussing the offer with family members or another trusted person.

    One sign alone does not prove fraud. Several signs together, however, are a strong reason to stop and investigate before proceeding.

    Checks to make before sending investment money

    1. Step away from the conversation. Do not let the sender control the pace. End the call or pause the chat so you can assess the proposal without pressure.
    2. Write down the exact claim. Record the organisation’s stated name, the product being offered, the amount requested and what you have been promised. Vague explanations are difficult to verify.
    3. Find contact details independently. Do not use only a phone number, email address or link supplied by the person making the offer. Look for a separate, trusted route to the organisation they claim to represent.
    4. Inspect the web address. Look for misspellings, added words and unfamiliar domains. You can place a suspicious address into ScamDekho’s URL Checker as an additional screening step. A favourable automated result is not a guarantee that an investment is genuine.
    5. Review the message itself. Check for urgency, inconsistent names, unusual payment instructions and demands for secrecy. ScamDekho’s Scam Message Checker can help you examine suspicious wording, but it should not replace independent verification.
    6. Ask a trusted person to review it. A family member or financially experienced person may notice inconsistencies that are easy to miss during a persuasive conversation.
    7. Do not send money just to test a platform. A small initial payment can still expose personal or payment information and may lead to pressure for larger transfers.

    These checks are useful even when the amount requested seems small. The purpose is to verify the recipient and the offer before any financial commitment is made.

    How families can help elderly relatives

    Consumer safety works better when it is supportive rather than judgmental. Scams are designed to create trust, urgency or fear. Blaming a person after a loss may make them less willing to disclose further contact or payment requests.

    Families can agree on a simple routine for unexpected financial proposals:

    • Pause all payments until another trusted person has reviewed the offer.
    • Keep bank, payment and login information private.
    • Use contact details found independently instead of numbers supplied in messages.
    • Discuss unusual investment calls or chats without embarrassment.
    • Save suspicious messages and transaction records rather than deleting them immediately.

    It can also help to identify one or two trusted contacts in advance. An elderly relative then knows whom to call when an online offer feels urgent or confusing.

    What to do after a suspected loss

    If money may have been sent to a scammer, stop further payments. Do not send another amount merely because someone claims it is needed to unlock a withdrawal, refund or account balance.

    Preserve the information already available. This may include messages, email addresses, phone numbers, web addresses, payment confirmations and transaction details. Keeping the original records can help explain what happened when the incident is reported.

    Contact the relevant bank or payment provider promptly through an official channel and describe the transaction accurately. Do not rely on contact information supplied by the suspected scammer.

    The Government of India’s National Cyber Crime Reporting Portal is the official online channel for reporting cybercrime. A report should clearly distinguish what you personally observed from what the other party claimed. Avoid guessing about the offender’s identity or location.

    Be cautious if another person later offers to recover the money in exchange for an advance payment or sensitive information. Verify any such approach independently before responding.

    Key lesson from the reported case

    This case is a reminder of how gradual these scams can be — it took over two months and five separate payments before the loss reached ₹16.2 lakh. Financial decisions should not be made inside a Telegram or WhatsApp group built specifically to create urgency. Stop, verify the identity of the person or business independently, inspect links carefully, and discuss the proposal with someone you trust before sending anything — including the first payment.

    If a suspicious interaction has already led to a payment, preserving evidence and reporting the incident through official channels are practical next steps. Acting calmly is more useful than continuing to negotiate with the person requesting money.

    Frequently asked questions

    Was the Mangaluru loss independently verified by ScamDekho?

    No. This draft is based on the supplied topic referring to a Deccan Herald report. The detailed facts and investigation status were not available in the provided sources.

    Does a professional investment website prove that an offer is genuine?

    No. Design, charts, screenshots and account balances displayed online should not be treated as independent proof. Verify the operator and offer through channels you find separately.

    What should I do if an investment promoter is rushing me?

    Pause the conversation and do not pay. Write down the claims, verify the identity independently and ask a trusted person to review the proposal.

    Where can cybercrime be reported in India?

    The Government of India’s National Cyber Crime Reporting Portal is the official online reporting channel. Keep relevant messages, web addresses and transaction records available when making a report.

    Should I pay a fee to release a supposed investment balance?

    Do not send more money solely because an unverified person says a fee is required. Stop and independently verify both the recipient and the underlying investment claim.

  • App Store India Head, Telegram Officials Booked in ₹21 Lakh Hyderabad Cyber Fraud — What’s Confirmed and What Isn’t

    App Store India Head, Telegram Officials Booked in ₹21 Lakh Hyderabad Cyber Fraud — What’s Confirmed and What Isn’t

    Hyderabad Cyber Crime Police registered two separate FIRs on July 31 against the head of Apple’s App Store in India and officials responsible for Telegram’s compliance and grievance-redressal functions, after two city residents alleged combined losses of over ₹21 lakh in unrelated online fraud cases.

    In the first case, a 62-year-old retired resident of Somajiguda told police he lost ₹12.7 lakh after clicking an Instagram advertisement for a stock-trading platform and downloading an app from the App Store, then transferring money in installments over several weeks. In the second, a homemaker from Almasguda said she lost around ₹8.57 lakh after an Instagram job listing led her into a Telegram channel offering paid work rating Google reviews — she was first paid small amounts to build trust, then asked for larger “deposits.”

    Cases were registered against the individuals accused of directly running the scams, along with the platforms’ India-level officials, under relevant provisions of the IT Act and the Bharatiya Nyaya Sanhita. This is where readers need to slow down: naming a company official in an FIR is a procedural step, not a finding of guilt. It means police believe there’s enough to investigate that person’s role — often tied to intermediary-liability rules about how a platform responds to takedown requests — not that wrongdoing has been established. It’s also not an isolated move: Hyderabad police have named country-level heads at Google and Meta as co-accused in similar fraud cases in recent weeks, so this fits a wider pattern rather than singling out Apple or Telegram.

    What can be addressed reliably is the consumer-safety issue behind such reports. Fraudsters frequently use phishing and other online attack methods to deceive users. Cloudflare’s security guidance identifies phishing among common cyber threats, while the Government of India’s National Cyber Crime Reporting Portal provides an official channel for citizens to report cybercrime.

    What is known and what remains unverified

    The basic facts above — the ₹21 lakh combined loss, the Hyderabad location, and who was named in the FIRs — are consistent across multiple news reports. What remains unverified is everything downstream of the complaint: how the investigation actually unfolds, and whether it results in any finding against the named officials.

    Until primary records or reliable reporting are reviewed, readers should not assume:

    • that the named or described officials personally communicated with the victim;
    • that the platforms knowingly enabled the alleged fraud;
    • that every account, app or message mentioned in the complaint was controlled by the same person;
    • that the reported loss and other details have been established by a court; or
    • that the filing of a complaint proves criminal liability.

    It is also important not to dismiss the broader risk. Messaging services, websites and mobile applications can be misused by impersonators. A logo, profile name, app listing or familiar platform interface is not sufficient proof that the person behind a message is genuine.

    How platform-based fraud can reach consumers

    Online fraud does not always begin with an obviously suspicious message. A scammer may first create urgency, claim to represent a company or authority, and then direct the recipient to a link, account or application. Phishing is designed to make a person disclose information or take an unsafe action.

    Common warning signs include:

    • unexpected requests to pay immediately;
    • threats of account suspension, arrest, penalties or loss of access;
    • requests for passwords, one-time codes or other login information;
    • links that imitate the name or appearance of a familiar service;
    • instructions to move a conversation away from an official support channel;
    • requests to install an unfamiliar app or grant unnecessary permissions; and
    • pressure to keep the conversation secret from family, a bank or the police.

    Any one sign may not prove fraud. Several signs together, particularly urgency plus a request for money or credentials, should prompt the recipient to stop and verify.

    Similar pressure tactics can appear under different stories. For example, parcel impersonation scams may claim that a shipment is detained and demand urgent action. ScamDekho’s guide to the FedEx and DHL parcel scam in India explains how that type of lure can be framed.

    Safety checks before trusting a message or app

    Whether a message arrives through Telegram, SMS, email or another service, the safest response is to verify it outside the conversation. Do not use the contact number or link supplied by the sender for that verification.

    1. Pause before acting. Urgency is often used to prevent careful checking. A genuine issue can be verified through an independently located official channel.
    2. Inspect the destination. Look at the full website address rather than the visible button text. Misspellings, extra words and unusual domains deserve caution. You can also submit a suspicious address to ScamDekho’s URL Checker for an additional check. A tool result should be treated as one signal, not a guarantee.
    3. Review the message language. Look for demands for secrecy, immediate payment, credentials or one-time codes. ScamDekho’s Scam Message Checker can help identify suspicious wording, but it does not replace independent verification.
    4. Find the official contact yourself. Open the service’s official app directly or type its known website address. Do not rely on a search advertisement, forwarded number or link supplied by the unknown sender.
    5. Check permissions. Before installing an app, consider whether its requested access matches its stated purpose. A simple service should not need broad control over unrelated information or device functions without a clear reason.
    6. Do not share authentication details. Passwords and one-time codes can allow another person to access an account. Treat requests for them as a serious warning.

    These checks cannot determine who is legally responsible in the reported Hyderabad matter. They are preventive steps for reducing exposure to phishing and impersonation attempts.

    What to do if money or account access is at risk

    If you suspect fraud, stop communicating through the suspicious channel. Do not send additional money in the hope of recovering an earlier payment. Do not install more software or follow instructions from someone claiming they can reverse the transaction for a fee.

    A practical response is to:

    1. contact the relevant bank or payment provider using a verified channel;
    2. change affected passwords from a device you trust;
    3. review the account for unfamiliar activity;
    4. retain messages, usernames, payment details, website addresses and transaction records; and
    5. submit a report through the Government of India’s National Cyber Crime Reporting Portal.

    The National Cyber Crime Reporting Portal is the official government channel included in the source material for reporting cybercrime. Provide accurate information and distinguish what you directly observed from what another person told you. Do not alter screenshots or invent details to make a complaint appear stronger.

    How to read claims about companies and officials

    Cyber fraud may involve several layers: an impersonator, a messaging account, a payment route, a website, an application and the infrastructure used to reach a victim. The appearance of a platform’s name in a complaint does not explain the role of every person associated with that platform.

    Readers should look for case-specific documentation before reaching conclusions. Useful questions include:

    • Which police unit reportedly registered the case?
    • Does the report cite a complaint or another primary record?
    • Are the statements allegations, police findings or court findings?
    • Have the organisations or individuals concerned responded?
    • Is the reported amount a claimed loss or an amount established through investigation?

    On this story, most of those questions now have straightforward answers: Hyderabad Cyber Crime Police registered the FIRs on July 31 under IT Act and BNS provisions, based on two victims’ complaints. What’s still open is the one that matters most — whether the investigation finds any actual wrongdoing by the named officials. That’s the part no one can answer yet, including this article.

    Frequently asked questions

    Were App Store India and Telegram officials confirmed guilty?

    No such conclusion is supported by the supplied sources. The source pack does not include case records or a court finding. A report that someone was booked should not be presented as proof of guilt.

    Is the reported ₹21 lakh Hyderabad loss confirmed?

    Multiple Hyderabad news outlets report the same figure — a combined ₹12.7 lakh and ₹8.57 lakh lost by two separate complainants. That’s consistent sourcing, but it’s still the amount victims told police they lost, not a figure a court has verified.

    Does a Telegram message or app-store listing prove legitimacy?

    No. The presence of a message on a known platform or an app in a familiar environment does not by itself verify the identity or intentions of the person contacting you. Verify claims through an independently found official channel.

    Where can an Indian consumer report suspected cybercrime?

    The Government of India’s National Cyber Crime Reporting Portal is an official reporting channel. If an account or payment is at risk, the consumer should also contact the relevant bank or service provider through verified contact details.

  • Fake Payment UPI GPay: How to Verify Before You Act

    Fake Payment UPI GPay: How to Verify Before You Act

    A customer shows you a Google Pay success screen and says the money has been sent. A buyer shares a UPI screenshot on WhatsApp and asks you to hand over an item. Your phone may even play a payment-style sound. But none of these, by themselves, proves that money has reached your account.

    The safest response to a suspected fake payment UPI GPay claim is simple: pause and check the credit through your own UPI app or bank account. Do not rely on the other person’s phone, screenshot, message or sense of urgency.

    NPCI’s UPI safety guidance says a UPI PIN is used to deduct money from your account, not to receive money. This distinction is particularly important when someone asks you to scan a QR code or enter a PIN to accept a payment.

    What does a fake GPay payment look like?

    A fake payment claim can involve an edited screenshot, a screen designed to resemble a payment app, or a transaction that has not actually been completed. The person may use the apparent payment as a reason to collect goods, obtain a refund or persuade you to approve another UPI transaction.

    Common warning signs include:

    • The person shows only their own phone instead of waiting for you to verify the credit.
    • A screenshot is cropped so that transaction details are missing.
    • The sender pressures you to release an item immediately.
    • The amount, recipient name or transaction details do not match the expected payment.
    • You are asked to scan a QR code or enter your UPI PIN to receive the money.
    • The person claims to have paid extra and asks you to return the difference.

    A polished screen is not reliable evidence. Images can be edited, while imitation apps or interfaces can display convincing payment messages. Our guide to spotting a fake GPay UPI screenshot explains the visual checks in more detail.

    How to verify whether a UPI payment is genuine

    Verification should happen on a device and account you control. Do not let the supposed payer guide the check from their phone.

    1. Open your own UPI or banking app. Use the app directly rather than opening an unexpected link in a message.
    2. Check the relevant account. Confirm that you are looking at the bank account linked to the UPI ID or QR code used for the payment.
    3. Look for the incoming transaction. Match the amount and payer details available in your account’s transaction history.
    4. Check your bank record. If the app screen is unclear, inspect the account statement or transaction history supplied by your bank.
    5. Do not act while the result is uncertain. If you cannot confirm the credit, do not hand over goods, provide cash or issue a refund.

    A transaction reference shown by the other person is not a substitute for checking your account. Likewise, an SMS or notification should not be your only check. What matters is whether the expected credit appears in the account you control.

    You can also use ScamDekho’s Fake Payment Screenshot Checker to examine suspicious visual details. However, no screenshot check should replace verification through your own bank or UPI transaction history.

    Why scanning a QR code can be dangerous

    A QR code can contain payment information, but scanning one does not prove that another person is paying you. NPCI’s safety guidance says users should scan a QR code only for making a payment and should not share their UPI PIN.

    If someone says you must scan their code and enter your PIN to receive money, stop. Entering the PIN can authorise money to leave your account. You do not need to disclose or enter a UPI PIN merely to receive a normal incoming payment.

    The phrase fake payment UPI scanner is sometimes used for suspicious QR-based flows or screens that imitate a genuine payment process. Whatever the label, apply the same rule: read what the app says before approving anything. Check whether the screen is asking you to pay, approve a request or authorise a debit.

    Never proceed simply because the other person says the step is required for a refund, reward, account test or payment activation. For more examples, see our guide to UPI QR code scams in India.

    What shopkeepers and online sellers should do

    Fake payment claims are especially relevant when a transaction is happening quickly at a shop, during a delivery or through an online marketplace. A short verification routine can reduce the chance of acting on a false screen.

    • Check every incoming payment on the merchant’s own device or bank record.
    • Match the received amount before releasing goods.
    • Do not accept a customer’s success screen as final proof.
    • Keep payment verification separate from the customer’s phone.
    • If someone claims to have overpaid, first confirm the original credit in your own account.
    • Do not send a refund to a different UPI ID merely because the customer requests it.

    For marketplace sales, avoid allowing urgency to replace verification. A buyer may say that a courier is waiting or that the payment will expire. You can review related warning signs in our article on fake advance payment tricks on OLX and Facebook Marketplace.

    What to do if money has left your account

    If you entered a UPI PIN, approved an unfamiliar request or notice an unauthorised debit, contact your bank immediately through its official channel. Ask the bank to record the complaint and retain the complaint or reference number.

    The Reserve Bank of India’s customer-protection framework links a customer’s liability in unauthorised electronic banking transactions to factors including how the transaction occurred and how quickly it was reported. It also states that where loss is caused by a customer’s negligence, such as sharing payment credentials, the customer bears the loss until the unauthorised transaction is reported to the bank. Loss occurring after the report is borne by the bank under the framework.

    Because the circumstances matter, do not assume that reimbursement is automatic. Report the transaction promptly and follow the bank’s formal dispute process. Preserve screenshots, transaction identifiers, messages, phone numbers and complaint acknowledgements. Do not share your UPI PIN, one-time password or other credentials with anyone offering to recover the money.

    A quick fake-payment safety checklist

    • Verify the credit in your own UPI app or bank account.
    • Match the amount and available transaction details.
    • Do not trust screenshots, sounds or the payer’s phone alone.
    • Never enter a UPI PIN to receive money.
    • Do not scan a stranger’s QR code to accept a payment.
    • Do not refund an alleged overpayment until the original credit is confirmed.
    • Report an unauthorised debit to your bank immediately.

    Frequently asked questions

    Can a Google Pay payment screenshot be fake?

    Yes. A screenshot can be edited or created to resemble a successful payment screen. Confirm the incoming credit through your own UPI app or bank account before providing goods, cash or a refund.

    Do I need to enter my UPI PIN to receive money?

    No. NPCI’s safety guidance says the UPI PIN is used to deduct money from your account, not to receive money. Stop if someone asks you to enter it to accept a payment.

    Should I scan a QR code sent by a buyer?

    Not to receive a payment. NPCI advises scanning a QR code only when making a payment. Read the app screen carefully and do not approve a debit or payment request by mistake.

    Is a transaction ID enough to prove payment?

    A transaction ID shown by the payer should not be your only evidence. Verify that the expected credit appears in your own account and that the amount and available details match.

    What should I do after an unauthorised UPI debit?

    Contact your bank immediately using an official channel, register a complaint and keep the acknowledgement. RBI’s customer-protection framework makes prompt reporting important when liability is assessed.

  • Fake GPay UPI Screenshot: How to Spot a Fake Google Pay Payment

    Fake GPay UPI Screenshot: How to Spot a Fake Google Pay Payment

    A fake GPay screenshot is a manipulated or fabricated image made to look like a successful Google Pay UPI payment, even though no money was actually transferred. Scammers create these using screenshot editing apps, fake payment generator websites, or by simply copying a real screenshot and changing the amount, name, or transaction ID. You can usually catch a fake by checking three things: the UPI transaction ID (real ones are 12 digits and traceable), the actual bank balance or SMS confirmation (never trust the screenshot alone), and inconsistencies in font, alignment, or timestamp. If in doubt, always verify directly in your bank app or with your bank statement, never through the image someone sends you.

    This scam is extremely common with local sellers, freelancers, delivery agents, and small shop owners who accept UPI payments in person and don’t always check their bank balance immediately.

    Why Fake GPay Screenshots Work

    Fake payment screenshots work because of one simple human habit: we trust what we see instantly and check our bank balance later, if at all.

    Scammers rely on:

    • Urgency – “I’m in a hurry, please confirm and hand over the item.” (“Bhaiya mai jaldi me hu, please jaldi screenshot dekho, mujhe jana hai.”)
    • Trust – Regular customers or people who “seem genuine” get less scrutiny. (“Bhaiya mai toh roz ka customer hu.”)
    • Distraction – Busy shop counters, food delivery handoffs, and marketplace deals happen fast. (“Hogaya bhaiya, done.”)
    • Familiarity with the UI – GPay’s clean design is easy to copy roughly, and most people don’t examine it closely. (“Lo bhaiya, dekh lo screenshot.”)

    By the time the seller checks their actual bank account, the buyer and the goods are long gone.

    How Scammers Create Fake Screenshots

    Understanding the methods helps you know what red flags to look for.

    1. Screenshot editing apps – Apps designed to mimic UPI payment success screens, letting scammers type in any name, amount, or UPI ID.
    2. Photo editing tools – Basic apps like Photoshop or even Canva are used to edit real screenshots and change numbers.
    3. Screen recording and pausing – Some scammers start a real transaction, then cancel or fail it, and screenshot the “processing” screen before it fails, making it look like a success screen.
    4. Fake UPI apps – Cloned apps that look identical to GPay but never actually connect to a bank or NPCI network.
    5. Reused old screenshots – A genuine screenshot from a past transaction with a different person is reused and the name is edited.

    Real vs Fake GPay Screenshot: Key Differences

    FeatureReal GPay ScreenshotFake GPay Screenshot
    UPI Transaction ID (UTR)12-digit number, traceable via bank statementMissing, too short, too long, or random digits
    Bank balance updateReflects instantly or within minutes in bank app/SMSNo corresponding SMS or balance change
    Font and alignmentConsistent with Google Pay’s actual UI, sharp textSlightly blurry, misaligned, or mismatched font
    TimestampMatches device clock and real-time deliverySometimes missing or inconsistent with claimed time
    Bank SMS/notificationBank sends a separate SMS confirming creditNo SMS received at all
    Transaction history in appAppears in your own GPay/bank transaction historyCannot be found when you search your own account
    Sender name spellingMatches registered bank account name exactlySometimes has small spelling errors or odd spacing

    The single most reliable marker is the UTR number combined with your own bank statement. A screenshot is just an image; it proves nothing on its own.

    Step-by-Step: How to Verify a GPay Payment

    Follow these steps every time before releasing goods, services, or confirming an order.

    1. Do not rely on the screenshot. Treat it as a claim, not proof.
    2. Check your bank app or SMS directly. Open your own banking app and refresh the balance, or check your registered mobile number for a credit SMS.
    3. Match the UTR number. Every real UPI transaction generates a unique 12-digit UTR (also called a reference number). Search this number in your bank statement or passbook.
    4. Wait for confirmation, not promises. UPI payments are usually instant. If the money hasn’t landed within a couple of minutes, something is wrong.
    5. Use your bank’s UPI transaction status check. Most banks let you check UPI status by UTR number through their app, net banking, or customer care.
    6. Call your bank if unsure. For high-value transactions, a quick call to customer care confirms the credit instantly.
    7. Never accept “it will reflect later.” Genuine UPI payments settle in real time except in rare cases involving pending server issues, which the buyer’s own app will also show as “pending,” not “success.”

    Also Read: How to Check If a UPI Payment Screenshot Is Real or Fake (Free Method)

    Common Mistakes People Make

    • Trusting the sender’s word over their own bank balance. If someone says “check now, I’ve paid,” always check your own app, not their screenshot.
    • Handing over goods before the SMS arrives. SMS delays are rare with UPI; if there’s no SMS, don’t proceed.
    • Not checking the UTR number at all. Most victims never even look at this number, which is the easiest way to confirm authenticity.
    • Assuming familiarity means honesty. Even regular customers or acquaintances have used this trick.
    • Confusing “payment initiated” with “payment successful.” Some scammers show the loading screen and claim it’s confirmation.

    What to Do If You Receive a Fake Screenshot

    • Do not release the product or service until the amount reflects in your account.
    • Save the screenshot and any chat conversation as evidence.
    • Report the UPI ID to your bank and to the NPCI dispute redressal system if you were misled into an actual loss.
    • File a complaint on the National Cyber Crime Reporting Portal (cybercrime.gov.in) or call 1930, India’s cybercrime helpline, if money or goods were lost.
    • Block the sender and warn others in your local business or community group if this is a repeat offender.

    Prevention Tips for Sellers and Freelancers

    • Enable instant SMS/app notifications for every credit to your bank account so you never rely on memory.
    • Use a dedicated business UPI ID with alerts turned on, separate from personal use if possible.
    • Set a house rule: goods are handed over only after balance confirmation, no exceptions, regardless of how well you know the buyer.
    • For high-value or repeat transactions, ask for the UTR number upfront and verify it before proceeding.
    • Use a screenshot verification tool that checks formatting, metadata, and common fake patterns before you rely on a payment image alone.

    Final Takeaway

    A screenshot is not proof of payment. Only your own bank balance, SMS confirmation, and a matching UTR number confirm that money has actually reached your account. Make it a habit to verify before you deliver, no matter how convincing the image looks or how much you trust the person sending it.

    FAQs

    1. Can a fake GPay screenshot show a real UTR number?

    No. A genuinely valid UTR number can only be generated by an actual completed transaction through the UPI network. Scammers either leave it blank, use random digits, or copy a UTR from an unrelated old transaction. Either way, it will not match anything in your bank statement.

    2. Does GPay send any confirmation besides the screenshot?

    Yes. Every successful GPay transaction triggers an SMS from the recipient’s bank and a permanent entry in their transaction history, independent of any screenshot the sender shows.

    3. Can scammers fake the bank SMS too?

    It’s technically possible using spoofing tools, but far less common because it requires more technical effort. The safest check is still logging into your own bank app and confirming the actual balance, not just reading an SMS.

    4. Is it safe to accept payment and check later?

    No. Always confirm before handing over goods or services. “Checking later” is exactly what scammers depend on.

    5. What is a UTR number and where do I find it?

    UTR stands for Unique Transaction Reference. It is a 12-digit number generated for every UPI transaction, visible in your bank’s passbook, statement, or transaction history, and used to trace or dispute a payment.

    6. Are there tools to check if a GPay screenshot is fake?

    Yes, several online tools analyze formatting, metadata, and known fake patterns in payment screenshots. However, these should support, not replace, checking your actual bank account.

    7. What should I do if I already handed over goods based on a fake screenshot?

    Report it immediately to your bank, file a complaint at cybercrime.gov.in or call 1930, and keep all chat and screenshot evidence for the investigation.

    8. Do fake screenshots only target sellers, or can buyers be scammed too?

    This particular scam mainly targets sellers and service providers who accept payment before delivering. Buyers face different UPI scams, like fake QR codes or “collect request” frauds, which work differently.

  • Fake PhonePe Transaction Scam: How It Works and How to Catch It Before You Lose Money

    Fake PhonePe Transaction Scam: How It Works and How to Catch It Before You Lose Money

    Every day, hundreds of merchants across India receive a “payment successful” notification — and hand over goods or services — only to check their bank account later and find nothing. No money. No transaction. Just a fake PhonePe payment that looked completely real.

    This guide explains exactly how the fake PhonePe transaction scam works, what a real payment looks like vs. a fake one, and what you should do the moment you sense something is wrong.

    What Is a Fake PhonePe Transaction?

    A fake PhonePe transaction is a fraudulent payment where the scammer never actually sends money. Instead, they use one of three methods to trick the merchant into believing the payment was made:

    1. Fake PhonePe payment apps — Modified or cloned apps that mimic the PhonePe UI and generate fake “payment successful” screens
    2. Edited screenshots — Real PhonePe screenshots edited using photo editors to change the amount, name, or transaction ID
    3. Fake sound boxes — Devices or apps that play a pre-recorded “payment received” audio clip without any actual transaction happening

    The scam targets merchants at busy moments — peak hours, festivals, crowded counters — when there’s no time to double-check.

    How the Fake PhonePe Payment Scam Works Step by Step

    Step 1: The scammer selects a target — usually a small shop, street vendor, or freelancer who accepts UPI payments.

    Step 2: They either open a fake PhonePe app on their phone or prepare a pre-edited screenshot.

    Step 3: At the time of payment, they “scan” the merchant’s QR code (but nothing is actually processed) and show the merchant a “₹500 payment successful” screen.

    Step 4: If the merchant has a sound box, scammers may speak loudly near it or play a recorded beep to simulate the confirmation audio.

    Step 5: The merchant, seeing the confirmation and hearing the sound, hands over the product or service.

    Step 6: The scammer walks away. The money never arrives.

    This entire process takes under 60 seconds.

    Real vs Fake: How to Tell the Difference

    Here is what genuinely distinguishes a real PhonePe payment from a fake one:

    ✅ Signs of a Real PhonePe Transaction

    • You receive an SMS from PhonePe to your registered mobile number immediately after payment
    • Your bank account balance updates (you can check via UPI app or net banking instantly)
    • The PhonePe merchant app shows the transaction in your earnings history with a proper transaction ID
    • The transaction ID follows a consistent alphanumeric format (e.g., P2406070XXXXXXXXX)

    🚩 Red Flags of a Fake PhonePe Payment

    • The customer shows you their phone screen but won’t let you check your own phone
    • The “payment successful” screen has blurry or slightly off logos
    • The font, color, or layout looks slightly different from your usual PhonePe receipts
    • There is no SMS on your registered number even after 30 seconds
    • The transaction does not appear in your PhonePe app’s transaction history
    • The customer seems unusually rushed or distracts you during the payment

    The Fake PhonePe Screenshot Problem

    Fake PhonePe screenshots are a separate but equally dangerous tactic. Here the scammer does not even need a cloned app — they edit a legitimate screenshot (or use an online fake PhonePe payment generator) and send it via WhatsApp.

    This is extremely common in:

    • Freelance work payments (“I’ve sent the advance, check your WhatsApp”)
    • OLX/Facebook Marketplace transactions
    • Advance rent payments
    • Online product sales

    The screenshot looks authentic because it replicates the exact PhonePe UI — the green checkmark, the “Payment Successful” text, the amount, and even the transaction ID. The only difference? No money ever moved.

    How to verify a PhonePe payment screenshot instantly:

    Use ScamDekho’s Fake Payment Screenshot Checker — upload the screenshot you received and the tool will analyze it for signs of manipulation, metadata inconsistencies, and visual tampering. It takes under 10 seconds and is completely free.

    Who Is Most at Risk?

    Based on fraud patterns reported across India, these groups face the highest risk:

    • Kirana and general store owners — high volume, fast transactions, easy to rush
    • Street food vendors and auto drivers — no counter, harder to verify in the moment
    • Freelancers and designers — paid via screenshot “proof” before work begins
    • Second-hand goods sellers on OLX, Quikr, or Facebook Marketplace
    • Tuition teachers and coaching institutes — often receive advance fees this way
    • Small e-commerce sellers who operate without a payment gateway

    If you fall into any of these categories, the risk is not theoretical — it is regular and growing.

    Also Read: How to Report a Scam Call or Fraud Number in India

    What to Do If You Suspect a Fake PhonePe Transaction

    If a payment does not appear in your bank account or PhonePe history within 60 seconds of the claimed transaction, act immediately:

    At the point of sale:

    1. Do not hand over the product or complete the service until you verify
    2. Open your own PhonePe app → Transactions → check if the payment appears
    3. Check your SMS inbox for the bank credit message
    4. Ask the customer for the UTR (Unique Transaction Reference) number — a legitimate payment always has one

    If you’ve already been scammed:

    1. Note the customer’s face, phone number, or any identifying detail
    2. File a complaint at cybercrime.gov.in or call 1930 (National Cyber Crime Helpline) immediately — time matters for fund recovery
    3. Report to PhonePe support via the app
    4. File an FIR at your local police station with all transaction details

    The sooner you report, the higher the chance of recovery. Most banks can freeze the destination account within hours if reported promptly.

    How to Protect Your Business Going Forward

    These habits will prevent the majority of fake PhonePe payment frauds:

    Always verify on your own device. Never rely on what the customer shows you. Your PhonePe merchant app or SMS is the only source of truth.

    Enable sound box alerts properly. If you use a PhonePe sound box, ensure it is connected to the official PhonePe merchant account — fake sound box devices exist that mimic the audio without receiving any real payment.

    Ask for the UTR number. Every real UPI transaction generates a UTR. Ask the customer to show theirs — a fake transaction will not have a valid UTR that matches your records.

    Use ScamDekho’s screenshot checker. When someone sends a payment screenshot remotely (via WhatsApp, email, or chat), run it through the ScamDekho’s Fake Payment Screenshot Checker before confirming the deal.

    Educate your staff. If you have employees who handle payments, brief them on these red flags. One rushed transaction can cost you thousands.

    Final Word

    The fake PhonePe transaction scam is not a sophisticated cyberattack. It is a simple trick that works because merchants trust what they see. The defence is equally simple: always verify on your own device before completing any transaction.

    If you receive a payment screenshot you are not sure about, do not guess — check it with ScamDekho’s Fake Payment Screenshot Checker in seconds.

    Stay alert. One extra step can save you thousands.

    Common Questions About Fake PhonePe Payments

    Is the fake PhonePe app real?

    Yes — cloned or modified PhonePe apps that generate fake payment screens do exist and circulate on unofficial download sites and Telegram groups. They are illegal to download or use. Downloading such an app can also expose your own device to malware.

    Can you trace a fake PhonePe transaction?

    If no actual transaction occurred, there is nothing to trace in the banking system. However, police can trace the scammer’s phone number, device ID, and location if you report quickly.

    What is a fake PhonePe payment generator?

    It is an online tool or website that creates a realistic-looking PhonePe payment screenshot with custom amounts, names, and dates. These are used to fake payment proofs. They are illegal to use for fraud.

    Will PhonePe refund my money if I’m scammed?

    If no actual payment was made, there is no transaction to refund. PhonePe can help by providing records that confirm no payment was received — useful for police complaints.

  • Is This Number a Scam? How to Check Unknown Mobile Number Online

    Is This Number a Scam? How to Check Unknown Mobile Number Online

    Every day, thousands of people receive calls from unknown mobile numbers. Some calls are genuine, but many are spam, fraud, or scam attempts. A missed call from an unknown number, a WhatsApp message from someone claiming to be from a bank, or a phone call saying “your account will be blocked” can make anyone worried. The real question is: is this number a scam, and how can you check it online before responding?

    Scammers are becoming smarter. They use mobile numbers, fake caller IDs, WhatsApp profiles, and even professional language to trick people. Sometimes they pretend to be from a bank, courier company, police department, customer care center, job agency, loan app, or investment group. Their goal is usually the same: to get your personal information, OTP, UPI PIN, bank details, Aadhaar details, or money.

    This guide will help you understand how to check an unknown mobile number online, how to identify scam calls, and what steps you should take if you suspect fraud.

    Why Unknown Numbers Can Be Dangerous

    Not every unknown number is dangerous. It could be a delivery person, office call, friend using a new number, or customer support team. But unknown numbers become risky when the caller asks for sensitive information or creates panic.

    Scam callers often use fear, urgency, or greed. They may say your bank account is blocked, your parcel has illegal items, your SIM will stop working, your KYC is pending, or you have won a prize. These messages are designed to make you act quickly without thinking.

    A genuine company usually does not ask for your OTP, UPI PIN, password, full card number, or remote access to your phone. If someone asks for these details, it is a major warning sign.

    Common Types of Scam Calls from Unknown Numbers

    Before checking a number online, it is useful to understand what type of scam you may be dealing with.

    1. Fake Bank Call

    The caller says they are from your bank and claims your account, debit card, credit card, or net banking will be blocked. They may ask for your OTP, card number, CVV, ATM PIN, or Aadhaar details. This is a common banking fraud technique.

    2. Fake Customer Care Number

    Many people search for customer care numbers on Google. Scammers create fake listings and websites with fake helpline numbers. When you call them, they may ask you to install an app, share your screen, or make a small payment that later becomes a big fraud.

    Many fraud calls start from a fake customer care scam, where scammers post fake helpline numbers online and trick users into sharing payment details.

    3. UPI Scam Call

    The scammer may ask you to accept a collect request, scan a QR code to receive money, or enter your UPI PIN for a refund. Remember, you do not need to enter your UPI PIN to receive money.

    4. Fake Courier or Parcel Scam

    The caller says your parcel contains illegal items or has been stopped by customs, police, or a courier company. They may threaten you with legal action and ask you to transfer money to “clear” the case.

    5. Loan App Scam

    Some callers offer instant loans with no documents. Later, they may demand processing fees, insurance charges, or threaten you by using your contacts and photos if you installed a fake loan app.

    6. Fake Job or Work From Home Scam

    The caller offers easy online jobs, typing work, review tasks, or Telegram tasks. They may pay a small amount first to build trust and then ask you to deposit money for bigger tasks.

    7. Investment and Trading Scam

    Scammers may invite you to WhatsApp or Telegram groups promising high returns from stocks, crypto, forex, or trading apps. They may use fake profit screenshots and fake websites to trap you.

    How to Check If an Unknown Mobile Number Is a Scam

    Here are practical ways to check a suspicious number online before calling back or replying.

    1. Search the Number on Google

    The easiest first step is to copy the number and search it on Google. Use different formats:

    • Search with the full number
    • Search with country code, such as +91
    • Search the number with words like “scam”, “fraud”, “spam”, “customer care”, or “complaint”

    For example, search:

    9876543210 scam
    +91 9876543210 fraud
    9876543210 fake customer care

    If many people have reported the same number, you may find complaints, forum posts, scam alerts, or social media warnings.

    2. Check the Number on Caller ID Apps

    Caller ID apps can show how other users have saved or reported a number. These apps may label numbers as spam, telemarketing, fraud, delivery, bank, or customer care.

    However, do not trust caller ID apps blindly. Sometimes genuine numbers are wrongly marked as spam, and sometimes scam numbers are not yet reported. Use these apps as one signal, not final proof.

    3. Check WhatsApp Profile Carefully

    Many scammers use WhatsApp because it feels personal and trusted. Save the number temporarily and check the WhatsApp profile.

    Look for these warning signs:

    • No profile photo
    • Fake company logo
    • Poor spelling in status or message
    • Recently created business account
    • Asking for OTP, payment, or personal details
    • Pressure to respond quickly
    • Sending suspicious links or APK files

    A WhatsApp business profile does not automatically mean the number is genuine. Anyone can create a business account with a name and logo.

    4. Search on Social Media

    Search the number on platforms like Facebook, Instagram, X, Telegram, and LinkedIn. Sometimes scam numbers are posted by victims. You may also find that the number is linked to a fake page, fake seller, or suspicious group.

    For shopping scams, check whether the number is connected with an Instagram store, Telegram channel, or fake website. If many users are complaining about non-delivery, blocked accounts, or fake products, avoid dealing with that number.

    5. Check If the Number Claims to Be from a Company

    If the caller says they are from a bank, courier company, e-commerce platform, government office, or loan company, do not trust the number immediately.

    Go to the official website of the company and verify the customer care number from there. Do not use numbers found in random Google listings, comments, WhatsApp messages, or social media posts.

    For example, if someone claims to be from your bank, call the official number printed on your debit card, bank passbook, or official website. Never call back on the number that contacted you unless you are sure it is genuine.

    6. Check the Message Content

    Sometimes the number itself may not reveal much, but the message can expose the scam.

    Be careful if the message contains:

    • “Your KYC will expire today”
    • “Your account will be blocked”
    • “You have won a lottery”
    • “Click this link to claim reward”
    • “Download this app for refund”
    • “Share OTP for verification”
    • “Your parcel has been seized”
    • “Pay penalty immediately”
    • “Join Telegram for guaranteed income”

    These are common scam patterns. Scammers want you to panic or feel excited so you make a mistake.

    If the unknown number sent you an SMS or WhatsApp message, you can also check suspicious scam messages online before clicking any link or replying.

    7. Do Not Click Suspicious Links

    Unknown numbers often send links through SMS, WhatsApp, or email. These links may look like bank pages, courier tracking pages, job portals, or payment pages. But they can be fake websites designed to steal your data.

    Before clicking any link, check the domain name carefully. A genuine company website usually has a clean and official domain. Scam websites often use extra words, spelling mistakes, numbers, or strange extensions.

    For example, a fake bank website may look similar to the real one but have extra words like “verify”, “update”, “secure-kyc”, or “support”.

    Before opening any payment, KYC, courier, or bank link sent by an unknown number, always check if a link is safe using a trusted URL checker.

    8. Never Share OTP, UPI PIN, or Password

    This is the most important rule. No genuine bank, government officer, police officer, delivery company, or customer care agent will ask for your OTP, UPI PIN, ATM PIN, password, or CVV.

    OTP is used to approve transactions or login attempts. If you share it, the scammer may access your account or transfer money. UPI PIN is only used when you are sending money, not receiving it.

    If the caller says “just tell me the OTP for verification,” disconnect the call immediately.

    9. Do Not Install Apps Suggested by Unknown Callers

    Scammers may ask you to install screen-sharing apps, remote support apps, loan apps, trading apps, or APK files. Once installed, these apps can give them access to your screen, messages, contacts, or banking activity.

    Never install an app because an unknown caller told you to. Download apps only from official app stores and only after checking the company name, reviews, permissions, and website.

    10. Ask Simple Verification Questions

    If you are unsure whether the caller is genuine, ask basic questions:

    • What is your full name?
    • Which company are you calling from?
    • What is my customer ID or order ID?
    • Can I call your official customer care number?
    • Can you send an email from your official company email ID?

    Scammers usually avoid proper verification. They may become angry, threaten you, or push you to act quickly. That itself is a warning sign.

    Red Flags That an Unknown Number Is a Scam

    You should be extra careful if the caller:

    • Asks for OTP, PIN, CVV, or password
    • Asks you to download an app
    • Sends payment links or QR codes
    • Creates fear of police, legal case, or account blocking
    • Offers unrealistic rewards or profit
    • Refuses to verify identity
    • Speaks in a threatening or overly urgent tone
    • Claims you must act immediately
    • Asks for an advance fee
    • Moves conversation to Telegram or WhatsApp groups
    • Sends APK files or suspicious links

    One red flag is enough to pause. Multiple red flags mean you should stop communication immediately.

    What to Do If You Answered a Scam Call

    If you only answered the call but did not share any information, usually you do not need to panic. Block the number and avoid further communication.

    If you shared OTP, PIN, banking details, card details, or installed an app, act quickly:

    1. Contact your bank immediately.
    2. Block your debit card, credit card, or net banking if needed.
    3. Change passwords for important accounts.
    4. Remove suspicious apps from your phone.
    5. Report the number on caller ID apps.
    6. File a cybercrime complaint.
    7. Inform your family members so they do not fall for the same scam.

    Speed matters in financial fraud. The faster you report, the better the chance of stopping or tracing the transaction.

    How to Report a Scam Mobile Number in India

    If you believe a number is being used for fraud, report it instead of simply ignoring it. Reporting helps protect others.

    You can report cyber fraud through the official cybercrime portal or call the cybercrime helpline number 1930 if money has been lost. You can also report spam calls and messages through your mobile operator or spam reporting tools available on your phone.

    When reporting, keep these details ready:

    • Scam mobile number
    • Date and time of call or message
    • Screenshot of WhatsApp/SMS
    • Payment details, if any
    • Bank transaction ID
    • UPI ID or account number used by scammer
    • Recording of call, if available
    • Links or websites shared by the scammer

    Do not delete evidence. Screenshots, transaction IDs, and chat history can help in complaint investigation.

    Should You Call Back an Unknown Number?

    Avoid calling back unknown numbers immediately, especially if they gave a missed call from a strange number or sent a suspicious message. Some scammers use missed call tricks to make people call back. Others use pressure tactics once you respond.

    Before calling back, check the number online. If it seems suspicious, block and report it. If it may be important, verify through official channels first.

    How to Protect Yourself from Scam Calls

    You can reduce risk by following simple habits:

    • Do not share personal details with unknown callers.
    • Do not trust caller ID alone.
    • Keep banking alerts active.
    • Use strong passwords and two-factor authentication.
    • Keep your phone software updated.
    • Do not install unknown APK files.
    • Do not scan QR codes to receive money.
    • Teach family members about OTP and UPI fraud.
    • Verify customer care numbers only from official websites.
    • Report suspicious numbers so others can stay safe.

    Final Words

    Unknown mobile numbers are not always scams, but you should never trust them blindly. A scammer’s biggest weapon is urgency. They want you to panic, click, download, pay, or share details quickly. Your best protection is to pause and verify.

    Whenever you receive a suspicious call or message, search the number online, check the WhatsApp profile, verify the company through official sources, and never share OTP, UPI PIN, password, or card details. If the number is linked to fraud, block it and report it.

    Before you respond to any unknown number, ask yourself one simple question: is this number trying to help me, or is it trying to make me act without thinking?

    Staying alert can save your money, identity, and peace of mind.

  • Fake PhonePe Transaction: How to Spot It, Verify It, and Never Get Fooled

    Fake PhonePe Transaction: How to Spot It, Verify It, and Never Get Fooled

    You just sold something. The buyer shows you a PhonePe success screen. You hand over the goods. Later you open your app and nothing is there.

    This is not a rare occurrence anymore. It is happening every day across India, in grocery stores, petrol pumps, mobile shops, and to freelancers receiving online payments. In January 2026 alone, UPI processed over 21.70 billion transactions worth more than Rs 28 lakh crore. Scammers know that at this volume, all they need is for a few people to skip the verification step.

    This guide explains exactly how fake PhonePe transactions work in 2026, how to verify any payment in under 60 seconds, and what to do if you have already been scammed.

    What Is a Fake PhonePe Transaction

    A fake PhonePe transaction is a false payment where the scammer shows you a convincing proof of payment but no real money ever moves. Your bank account receives nothing. The transaction exists nowhere except on the scammer’s screen or in an edited image.

    There are three methods being actively used in 2026:

    Method 1: Edited Screenshot

    The scammer takes a real old payment receipt and edits it using a photo editing app. They change the amount, the recipient name, the date, and sometimes even the transaction ID. The result looks pixel-perfect. Many victims cannot tell the difference just by looking.

    Method 2: Spoof or Clone App

    This is more dangerous. Apps like PhonePe clone APK or PhonePe spoof APK mimic the original PhonePe interface exactly, including the green tick, the payment sound, and the success animation. The scammer enters your name and the amount, and the app generates a fake “Payment Successful” screen. Many fake payment apps can generate fake success screens without contacting bank servers or transferring any money.

    Method 3: Cancelled Payment

    The scammer initiates a real payment but cancels it at the last moment, or deliberately sends a negligible amount like Rs 1. They screenshot the in-progress “processing” screen and show it as completed. The screenshot is technically from PhonePe but it proves nothing.

    All three methods share one weakness: the payment will never appear in your own transaction history.

    How to Verify Any PhonePe Payment in 60 Seconds

    This is the only section that matters. Follow these steps every single time before releasing any goods or services.

    Step 1: Open your own PhonePe app

    Go to your transaction history. If the payment is real, it will appear immediately. UPI is instant. Most genuine UPI transactions appear instantly in your history, although rare banking or server delays can sometimes occur. If it is not there, the payment is likely incomplete or unsuccessful, though rare technical delays are possible.

    Step 2: Check your bank SMS

    When a real UPI credit hits your account, your bank sends an SMS to your registered mobile number. This SMS comes from your bank, not from PhonePe, and not from the customer’s phone. If you did not receive this SMS, verify the payment through your bank balance or transaction history before releasing goods or services.

    Step 3: Cross-check the Transaction ID

    Ask for the transaction ID. Look it up in your PhonePe app. A real transaction ID will correspond to an actual entry in your history. Fake PhonePe screenshots either use random numbers that match nothing, or reuse old IDs from real transactions that will not match the amount or date being claimed.

    Never accept as proof: A screenshot on the buyer’s phone. A sound from the buyer’s phone. A message forwarded on WhatsApp. An SMS on the buyer’s phone. The safest proof is verifying the payment in your own app, bank account, or merchant transaction history.

    If you want a faster second opinion on a suspicious screenshot, use the Fake Payment Screenshot Checker on ScamDekho. Upload the screenshot and get an instant result. Free, no signup needed.

    7 Warning Signs a PhonePe Payment Is Fake

    1. Payment does not appear in your transaction history This is the definitive sign. Everything else below is secondary.

    2. The buyer is rushing you Scammers depend on speed. They will say “aur log wait kar rahe hain,” “mujhe jaldi hai,” “screenshot dekh lo, ho gaya.” Genuine buyers do not panic when you say “ek second, let me verify.”

    3. Font, spacing, or color looks slightly off In edited fake PhonePe screenshots, the font weight is sometimes inconsistent with the real app, the green color shade is slightly different, or the numbers have irregular spacing.

    4. No bank SMS arrived Real payment, real SMS. No SMS means no payment.

    5. The transaction ID cannot be verified In the PhonePe app, go to history and search for the transaction ID. If it does not exist, the screenshot is fake.

    6. The “Paid to” name does not match yours In a real transaction to you, the name shown should be your name or your registered merchant name. If it shows something else, the screenshot was taken from a different transaction and edited.

    7. They claim “PhonePe transaction failed due to security reasons” but show a success screen This contradiction is a deliberate confusion tactic. A failed transaction means no money reached you. There is nothing to show on a success screen if it failed.

    The Pending Payment Trap

    Sometimes a genuine customer’s payment gets stuck. The money was debited from their account but did not reach you. This is a real technical issue and different from a scam.

    How to tell the difference: In a genuine pending case, you will see the transaction in your PhonePe history marked as “Pending” or “In Progress.” In a fake payment situation, nothing appears in your history at all.

    If a payment shows as pending in your history, wait up to 48 hours. Most pending UPI transactions are resolved automatically within a few hours to 48 hours. If the PhonePe transaction is still pending and money was debited from the sender, they should raise a dispute from their own PhonePe app under “Issue with this payment.” Their bank will investigate and either complete the transfer or refund them.

    Do not release goods or services based on a pending transaction. Wait for final confirmation.

    If You Are a Merchant: 4 Rules to Post at Your Counter

    These rules, applied consistently, will prevent this scam entirely.

    Rule 1: “Payment confirmed only after it appears in our PhonePe app. Screenshots are not accepted as proof.”

    Rule 2: “For transactions above Rs 2,000, we also wait for the bank SMS before completing the sale.”

    Rule 3: “Sound box alerts are a secondary indicator only. App verification is the final step.”

    Rule 4: “If payment is pending, we will complete the transaction once it clears. This is our policy for all customers.”

    Posting these visibly at your counter serves two purposes. It sets clear expectations for genuine customers, and it signals to scammers that your shop is not an easy target. Most scammers will simply leave.

    Is Using a Fake PhonePe Transaction Illegal

    Yes, completely. Creating, using, or forwarding a fake PhonePe transaction is a criminal offence under Indian law.

    The applicable sections are IPC 420 (cheating), IPC 468 (forgery for the purpose of cheating), IPC 471 (using forged documents as genuine), and IT Act Section 66D (cheating by personation using computer resources).

    The punishment can include up to 7 years imprisonment, fines, or both, especially when actual financial loss is involved. Cases are actively being filed and pursued. The Huzurnagar and Rajasthan arrests mentioned above are examples from 2026 and 2024 respectively.

    If you encounter someone using a fake payment app, report it immediately. The legal framework exists and is being enforced.

    What to Do If You Have Already Been Scammed

    Act within the first hour. Speed determines whether you recover anything.

    • Immediately call 1930, India’s Cyber Crime Helpline. It operates 24 hours a day, 7 days a week. Reporting fast allows authorities to flag the scammer’s account before funds are withdrawn.
    • File a complaint at cybercrime.gov.in under “Financial Fraud.” Attach every piece of evidence you have: the fake screenshot, the scammer’s phone number or UPI ID, CCTV footage if available, any chat messages.
    • Report inside PhonePe as well. Go to Help inside the app, find the transaction, and select “Report a Fraud.” You can also email social@phonepe.com.
    • Note down everything immediately before memory fades: time of the incident, description of the person, vehicle number if applicable, any name or UPI ID they provided.

    For the complete step-by-step complaint filing process, read our guide on Cyber Crime Helpline Number and How to File a Complaint in India.

    Real Cases From 2026

    In Huzurnagar, Telangana, a man from Andhra Pradesh was arrested in April 2026 after targeting multiple small traders using a fake PhonePe app. He had been operating across the Nalgonda district for weeks before local residents caught him red-handed and handed him to police. By then, several shopkeepers had already lost money.

    In Indore, two scammers visited multiple petrol pumps claiming they needed emergency cash. They showed fake PhonePe payment screens and walked away with money from several outlets before being caught.

    In Rajasthan, a teenager was arrested after using a modified PhonePe APK to make fake payments across five mobile phone shops. He was charged under IPC Section 420, 468, 471, and IT Act Section 66C and 66D.

    These are not edge cases. This scam operates in every state, targets small merchants who move fast, and relies entirely on the victim not checking their own app.

    Sources: Free Press Journal, The Hans India

    Related Scams That Work the Same Way

    Fake payment fraud does not stop at PhonePe. UPI QR code scams use the same visual deception to steal money. Scammers swap a merchant’s real QR code with a fake one so payments go to them instead. Read how it works: UPI QR Code Scam: How Fake Scanners Drain Your Account

    If you want to check a suspicious UPI QR code before scanning it, use the UPI QR Checker on ScamDekho.

    The One Rule That Stops Every Fake PhonePe Scam

    After everything covered in this guide, it comes down to one habit.

    Before anything leaves your hands, open your own PhonePe app and look for the payment in your transaction history.

    Not the buyer’s phone. Not a forwarded screenshot. Not a sound. Your own app, your own history.

    If it is there and matches the amount, you are done. If it is not there, no payment happened, regardless of what the buyer shows you.

    That one step, applied consistently, makes every version of this scam impossible.