07 December 2005

Spoof Email

Sometimes spammers will send spoof emails that appear to come from our Information Services office. You may receive an email with a message such as:

  • “You have successfully updated the password of your Necc account. If you did not authorize this change or if you need assistance with your account, please contact customer service at: ___@_____”
  • “Dear Member, Your e-mail account was used to send a huge amount of unsolicited spam messages during the recent week. If you could please take 5-10 minutes out of your online experience and confirm the attached document so you will not run into any future problems with the online service. If you choose to ignore our request, you leave us no choice but to cancel your membership.”
  • “Subject: Email Account Suspension Please confirm the attached document!”

These are all spoof emails. Here are some clues that should make it obvious to you when you receive a spoof email:

  1. We don't send emails from an administrator account. We only email from our personal email accounts.
  2. We never refer to ourselves as "The Support Team".
  3. The email probably tells you to open an attached file (which was stripped away by our eSafe server). This is a trick to get you to open a file that almost always contains a virus/worm/trojan horse.
  4. The email may also tell you to click on a link to a website to "verify" or "update" personal or password information. Never, ever submit personal information to a website unless you know for certain that the website is from a trusted source.
  5. They spoofed an anti-virus message: "Attachment - No Virus found". Never trust this -- always run antivirus scans yourself if you're unsure if an email attachment is genuine.

No comments: