Saturday, May 6, 2017

Phishing Email - CIBC Account Alert!

For the record, here's a recent CIBC phishing email that is circulating and made it past Junk or Spam filters.

What to do?

Report them and label them as Phishing Email not SPAM (in your online email system)


Report them? 

Report Phishing URLs at Google now as well;


Here's the email viewed in Outlook, hovering over the phishing link.
















Here is the text view of the email


 1
 2
 3
 4
 5
 6
 7
 8
 9
10
11
12
13
14
15
16
17
18
19
20
21
From: CIBC.Canadian.Imperial.Bank.of.Commerce.CAN.bell1232323@cibc-canada-message.ubuntu.com
Subject: Account Alert! [232HI]

CIBC Canada - message to Victor.Dodig@hotmail.com 

We have recently recorded a number of invalid login attempts on your online banking account. 
Our security system has automatically frozen your funds.

Simply login on our secure page at https://www.cibc.ca/login-user/323/user-Victor.Dodig@hotmail.com/ or by typing http://www.cibc.ca in your browser 

           SPAM URL points to -> http://www.daenet.it/uklsgcz/index.php

Your access will be activated and the restriction will be lifted automatically after the first successful authentication.

John Garcia,
CIBC Senior Security Advisor
 

 
 
ID: 42.347.909.193-4241668155




How to tell this is a Phishing email ?


  1. Convert the email view from HTML to text, check for bad URls.
  2. Hover over all links in email, if the text is not same as site URL then forget it.
  3. The best way is to look at message source, see below.


How to examine Email Message Source ?

Now lets look at message source
  1. Outlook.com->Actions->View Message Source. 
  2. Gmail.com->More (down arrow to top right)->Show original.
And look for phony links.

Report Phishing Email (not as Spam)

  1. Outlook.com->Junk (at Top)->Phishing Scam
  2. Gmail.com->More (down-arrow to top right)->Report Phishing 

Report phishing at Microsoft and government agencies

  1. https://www.microsoft.com/en-us/safety/online-privacy/phishing-symptoms.aspx

No comments:

Post a Comment