Phishing email advice

Author
Discussion

hab1966

Original Poster:

1,097 posts

213 months

Friday 28th November 2014
quotequote all
Staff at work have been receiving an increasing amount of Phishing emails, purporting to be from a bank and asking us to click a link to download documents. The link follows the same format -

http://xxxxxxxx.com/dropbox/document.php

Our staff are in general pretty good with these and delete the email.

however, I'm curious as to what the capability of the document.php 'script' could be but i dont want to try and view it incase i inadvertently activate it. Do they just present a log in page and try to get you to enter your details, or can it download further code (key loggers etc) that can cause trouble. Do they have the capability to work across all platforms - windows, android, apple?

hab1966

Original Poster:

1,097 posts

213 months

Friday 28th November 2014
quotequote all
I changed the link so there was no risk of somebody clicking on it and having an issue. The only change i made is to the change to xxxxxxx, the rest of it is as per the email, which purported to be from Lloyds Commercial Bank. (I can PM the complete link to anybody who is interested.)

The emails are sent (generally) to members of our marketing team but then they bcc a lot of our other staff.

Our emails are scanned with Fsecure and this also resides on all computers.