Monday, November 9, 2020

Shoppers Drug Mart Phishing email with subject Open Immediately

For the record, this is an Shoppers Drug Mart phishing email attempt that is recently going around, with subject "Open Immediately" What to do?  Report them, goto bottom of page. 


From : Shoppers Drug Mart <ambafrance.us.org@gmail.com>
Subject : Open Immediately


Shoppers Drug Mart - Please respond!








PHISHING LINKs;

1. Hover over image
https://www.elyurl.com/gnChX 

How to tell this is a Phishing email ?

  1. Check email address in full, if it's not from originating company then it's phishing.
  2. Hover over all links in email, if it's not from the  company's website then forget it.
  3. The best way is to 

How to examine Email Message Source ?

Now lets look at message source
  1. Outlook.com->Actions->View Message Source. 
  2. Gmail.com->More (down arrow to top right)->Show original.
Check for suspicious links, anything that does not originate from apple.com.


Report Phishing Email (not as Spam)

  1. Outlook.com->Junk (at Top)->Phishing Scam
  2. Gmail.com->More (down-arrow to top right)->Report Phishing 

Report Phishing

If you have recievied this email take further 

  1. https://www.google.com/safebrowsing/report_phish/


Report phishing at Microsoft and government agencies

  1. http://www.microsoft.com/security/online-privacy/phishing-faq.aspx

1 comment:

  1. You don’t mention SpamCop (or maybe you do somewhere and I missed it). I find SpamCop really useful in driving down the volume of spam over time. I stopped using it for a couple of years and restarted when the sender of the same stuff you are getting flooded me with email spam/phishing. It’s definitely helping. It’s not perfect and I will usually find where shortlinks go to and report the destination to the host as part of the SpamCop report (user added report addresses)

    Thanks for posting your examples from the jerks behind the spam you get. It’s good to see these idiots are not just being fought off by me.

    Incidentally, when the images you post have been hosted with certain providers I will report them too. They Deere the images pretty quickly.

    ReplyDelete