Step-by-step instructions
Pause before tapping a link
Be suspicious of messages demanding an immediate payment, urgent account verification or a prize claim. Even familiar logos and sender names can be copied.
Open the service independently
Use your saved bank app, type the official site address yourself or contact support through a number already listed on the provider’s website. Do not use the phone number inside the suspicious message.
Check the full website address
A secure padlock or HTTPS does not prove a business is genuine. Look for misspellings, extra words, fake subdomains and unusual domains.
Never share OTPs or passwords
An OTP is meant for the sign-in or payment you started. Anyone asking you to read it aloud or send a screenshot is a warning sign.
Verify a job or government payment request
Find the vacancy or service on the official authority website. Be wary of demands to transfer fees into a personal account.
Act quickly if you responded
Change the affected password through the official website. Contact the bank or wallet provider using its legitimate support channel, review transactions and report fraud to the relevant authorities.
Mistakes to avoid
- Trusting the brand logo or the sender’s display name.
- Thinking HTTPS alone means a site is genuine.
- Installing remote-access software at a stranger’s request.
Frequently asked questions
Is a message safe if it includes my real name?
Not necessarily. Scammers can obtain names from public profiles or leaked data.
What should I do if I gave away an OTP?
Contact the relevant service immediately, secure the account and check transactions. Never send another code to the caller.
Original help source
Instructions can change as apps and devices are updated. Use this official product or consumer-protection guide to confirm the current steps.