After a cyber fraud, you should preserve all digital and financial evidence that could help investigators identify the fraudster and trace the transaction. Important evidence includes:
Screenshots of fraudulent messages, websites, social-media profiles, or payment requests.
Phone numbers, email addresses, usernames, and account IDs used by the fraudster.
Chat history and emails, without deleting or editing them.
Call logs and details of suspicious calls.
Bank or UPI transaction details, including transaction ID/UTR number, date, time, amount, and recipient details.
Bank statements and payment receipts showing the fraudulent transaction.
Website or payment links shared by the fraudster.
Relevant files or documents sent to you, such as fake invoices, identity documents, or payment instructions.
Device information and login/security alerts if your account was compromised.
Do not delete, alter, or forward suspicious evidence unnecessarily. Keep the original information safely stored and provide copies to the bank, cybercrime authorities, or police when filing a complaint. Acting quickly is also important because financial institutions may have a better chance of stopping or recovering funds when fraud is reported promptly.