What to Do Right After Being Scammed
If you have just fallen victim to an online scam, this article explains the exact actions you should take today to limit damage and begin recovery.
The first thing to do is secure any accounts that may have been compromised. Change passwords on the affected service and on any other accounts that reuse the same credentials. Use a strong, unique password for each login; a free password manager from ComputerScams.com can generate and store them safely. Enable two‑factor authentication wherever it is offered, because a second verification step blocks many follow‑up attacks.
Next, contact the financial institution you used in the scam. If you sent money by bank transfer, credit card, or a payment app, alert the bank or card issuer immediately. They can place a hold on the transaction, issue a new card, and monitor for suspicious activity. For cryptocurrency losses, report the address to the exchange and to law enforcement; while recovery is rare, a record helps investigators track patterns.
After securing your money, report the fraud to the appropriate authorities. In the United States, the Federal Trade Commission accepts online complaints at ftc.gov/complaint. In other countries, look for a national consumer protection agency or a cybercrime unit. Filing a report creates an official record, which can be useful if the scammer resurfaces or if you need to dispute charges later.
You should also scan your computer and devices for malware. Scammers often embed malicious code in links or attachments, which can install keyloggers or ransomware. Use a reputable, free antivirus scanner such as the one listed on ComputerScams.com. Run a full system scan, delete any detected threats, and keep your software up to date to close known security holes.
Finally, take steps to protect your identity. Check your credit reports for unfamiliar accounts and consider placing a fraud alert or credit freeze. Many credit bureaus offer free annual reports, and ComputerScams.com provides a guide on how to request them. Change security questions on important accounts, and be wary of any follow‑up emails that ask for additional personal information—they are often phishing attempts that try to capitalize on the initial breach.
A practical safety tip: right now, open your password manager, generate a new, unique password for every account, and enable two‑factor authentication on at least your email and banking apps. This single action blocks many of the next moves a scammer would take.