Skip to main content
My Consumer Finance

Fake customer support phone numbers and caller-ID spoofing

How to spot fake bank, card, and tech-support phone numbers and caller-ID spoofing—plus the callback rule that stops most account-takeover scripts.

Scammers publish look-alike support numbers in search ads, text messages, and lock-screen pop-ups, and they spoof caller ID so your phone shows “Chase,” “Amex,” “Apple,” “Amazon,” or “IRS.” The voice on the line is not the bank. Real support at Capital One, Bank of America, Wells Fargo, USAA, or your credit union will not cold-call you demanding gift cards, remote access, or a one-time code “to cancel a wire.”

Related patterns: Phishing and account takeover, Fake bank and brokerage alerts, Tech support and refund scams, Fake debt collectors, and the overview Credit and debt scams.

How the number trick works

TacticWhat you seeWhat they want
Spoofed inbound callCaller ID matches a real 1-800Panic → codes, remote access, “refund” return
Poisoned search adTop Google/Bing result for “Amex support phone”You dial their number
Text / email “callback”Link or number in an urgent alertSame funnel
Pop-up lock screen“Call Microsoft / Apple now”AnyDesk + gift cards
Fake collector letterLocal-looking number, threat of arrestWire, crypto, or card over phone

Caller ID is not authentication. Spoofing is cheap; treat the display name as decoration.

The callback rule (use every time)

  1. Hang up. Do not argue.
  2. Look up the number on the back of your card, in the bank’s app, on the device manufacturer’s site you typed yourself, or on an old paper statement—not from the call, text, or ad.
  3. Call that official number on a different line if you can.
  4. Ask whether there is an open case; give no passwords, full SSN, or one-time codes to anyone who called you.

If a text says your card is locked, open the issuer app directly or dial the number embossed on the card. Same rule for “Amazon account,” “Apple ID,” and “payroll deposit failed” scripts.

Worked example: the “fraud department” spoof

Riley’s phone shows 1-800-935-9935-style Chase branding (illustrative pattern—not a number to dial from this page). The agent knows Riley’s city and last four of a card (data from a breach or prior phish). They say a $2,800 Zelle was attempted and Riley must “confirm” a code and install a support app to reverse it.

Riley hangs up, opens the Chase app from the phone’s home screen, sees no alert, and dials the number on the card. The real fraud line finds nothing. No code was shared. If Riley had read the SMS code aloud, the thief could have completed a takeover. P2P pressure variants: Zelle and P2P payment scams.

Red flags that end the call

  • Payment in gift cards, crypto, wire, or cash apps
  • Demand that you do not hang up or “stay on the line while we transfer you”
  • Request for remote access to your PC or phone
  • A “refund” that you must send back by a different method
  • Threats of arrest, deportation, or immediate account seizure over the phone
  • A support number that differs from the card, app, or official site by even one digit

Government-flavored cousins: Fake IRS and benefits scams.

If you already gave a code or installed remote software

  1. Hang up; disconnect from remote sessions; uninstall AnyDesk/TeamViewer if tricked.
  2. Call the real issuer from the card; freeze cards; change passwords on a clean device.
  3. Enable or renew credit freezes and fraud alerts.
  4. Report to the bank, the FTC (ReportFraud.ftc.gov), and—for wired funds—your bank’s wire fraud process quickly.
  5. Monitor AnnualCreditReport.com for new accounts.

Checklist

  1. Never dial a support number from a cold call, text, pop-up, or search ad.
  2. Use the card, app, or typed official URL only.
  3. Treat caller ID as unverified.
  4. Never read aloud one-time codes or gift-card PINs.
  5. Teach household members the hang-up-and-callback rule.
  6. After a scare, re-check accounts and freeze credit if identity data may have leaked.

Educational only. Not legal advice or a fraud-recovery service. Scam scripts change; verify contact channels on official issuer and agency sites.