Background
This morning received an obvious phishing email.
Chose to play along and see if it is one already known to Google’s Chrome.
Evidence Gathering
Email Folder – Junk Email
Here is what the email looks like:
Email Screen
Email Text
PауРаl PауРаl Hello,Аs раrt оf оur sесuritу mеаsurеs , wе rеgulаrlу sсrееn асtivitу in thе РауРаl Sуstеm.Wе rесеntlу соntасtеd yоu аftеr nоtiсing аn issuе оn yоur РауРаl . Wе rеquеstеd infоrmаtiоn frоm yоu fоr thе fоllоwing rеаsоn:
Оur systеm dеtесtеd аn аbnormаl issuе in your ассount, wе bеliеvе thеrе might bе а brеасh . in this саsе we nееd to vеrify your ассount. plеаse сliсk on thе link bеlow аnd follow thе stеps for more sесurity еnsurаnсе.
This is thе lаst rеmindеr tо lоg in tо yоur аcсоunt аs sооn аs роssiblе.Oncе yоu lоg in , yоu will bе рrоvidеd with stерs tо rеstоre yоur ассоunt ассеss.
Remove Limitation NowCopyright ©2017 РаyРаl. All rights reserved.Company Limited by Shares. Registered office:Boulevard Royal, M-Luxembourg
Website
Followed the trail ( Link ), so you don’t have to …
The URL reads chartersports.com
Remediation
- Report
- Report through web site
- Report through email
- Anti-Phishing Working Group
- Web Site :- Link
- Email :- reportphishing@apwg.org
- US – Department of Homeland Security
- US-Cert
- Report Phishing Sites
Web Site :- Link
Email :- phishing-report@us-cert.gov
- Report Phishing Sites
- US-Cert
- US – Federal Trade Commision
- Email :- spam@uce.gov
- Read more here
- Apple
- iCloud
- Email :- abuse@icloud.com
- Read more here
- iCloud
- Amazon
- Email :- stop-spoofing@amazon.com
- Read more here
- Anti-Phishing Working Group
Addendum
Addendum – 2017-10-24
Email Envelope
Email Contents
URLS
- http://flyt.it/3nak2kuylcjh?ID=
- https://www.settingsmanagement-acc-privacyuser.com/webapps/bdb9a/websrc
Summary
Some of these guys are actually smart.
Prayerfully, they will take off the blinders.
Like Jacob Prasch would say “Let the guy go out, learn a trade, and start to make a honest living…become a carpenter” for Christ’s sake.