Fake IT Support Sites Definitely Won’t Fix Your Issues

3 Minute Read

If only all malware came with a warning

A concerning trend has emerged in the cyber security landscape, particularly affecting those struggling with the persistent 0x80070643 error. Cyber criminals are exploiting user frustrations with Windows updates to distribute malware through deceptive means. This article aims to inform you about these risks and provide guidance on protecting your systems.

The Current Situation:

The 0x80070643 error, which has been affecting Windows users since January (‘24), has become a prime target for malicious actors. These individuals are creating fraudulent IT support websites and YouTube videos that claim to offer solutions to this error. However, these "fixes" are, in fact, vehicles for malware distribution.


Key Points to Consider:

  • Fraudulent sites often use names resembling legitimate IT support services

  • These sites provide "solutions" involving PowerShell scripts or Registry files

  • Executing these "fixes" results in the installation of information-stealing malware

  • The malware is capable of extracting sensitive data, including passwords and financial information

Understanding the Actual Issue:

The 0x80070643 error is a result of insufficient space in the Windows Recovery Environment partition. Microsoft's recent update requires more space than is available on some systems. While this presents a significant inconvenience, especially for users unable to easily resize their partitions, it is crucial to avoid seeking solutions from unverified sources.

What Can We Take Away From This:

  1. Multi layered defences are crucial. Slapping some anti virus/AV on your machine and calling it a day doesn’t cut it.

  2. EDR, XDR, MDR, SIEM.. there are many layers to what can be thought of as “traditional” anti virus software. Having a cyber security company with you to help you find the perfect fit for your business is crucial.

  3. Least privileged access is a must. Yes it’s frustrating having to contact IT each time you need to run an update, or install a file. However, having your systems set to need admin credentials to carry out major tasks is a simple but powerful way to stop attacks in their tracks.

  4. Encryption & Backup - Storage space is so cheap these days there’s no excuse to not backup (and test your backups!) your crucial data.

  5. Training & Education is needed. Think of it as Continual Professional Development, train and test your staff so they become human firewalls.

  6. Don’t DIY your business’ IT. Outsourcing your IT to a competent support company costs a fraction of the cost of a single security incident.

Recommended Course of Action:

It is strongly advised to refrain from searching for quick fixes online. For those grappling with the 0x80070643 error and unable to resize their partition, Microsoft recommends utilising their Show or Hide Tool to prevent the problematic update (KB5034441) from appearing in Windows Update.

In matters of computer security, caution is paramount. The inconvenience of an error message is far preferable to the potential compromise of personal information.

At Saturday Cloud, we recognize the challenges posed by these technical issues. Our mission is to provide secure, legitimate solutions to your IT problems. We strongly encourage seeking assistance from trusted professionals rather than risking security breaches through unknown websites.

Get in touch today to see how we can reduce your cyber crime exposure, put a stop to unnecessary IT spend, and work with you to reach your perfect streamlined IT systems for your business. Email hello@saturday-cloud.com or call 02921 111202.


Previous
Previous

Staying Ahead of the Curve: Why Updating Your Hardware is Crucial for Business Success

Next
Next

The Rise of Phishing as a Service. Your Business Needs to Have The Harpoons on The Ready