Warning signs that an email might be fraudulent or malicious
If you spot even ONE of these red flags, treat the email with extreme caution:
The display name shows 'PayPal Security' but the email address is random123@gmail.com
Email claims to be from Microsoft but comes from microsof1-support.com or similar look-alike
Your 'CEO' is emailing from a Gmail, Yahoo, or Hotmail account instead of company domain
Why would your bank contact you from a customer service survey system?
Link text says 'paypal.com' but hovering shows it goes to paypa1-secure.xyz
Using bit.ly, tinyurl, or other URL shorteners for 'urgent' banking links
amaz0n.com (zero instead of O), microsof1.com (one instead of T), etc.
paypal.com.security-verify.com (the real domain is security-verify.com, not PayPal)
Links going to http://192.168.1.1 or http://103.45.67.89 instead of proper domains
'Dear Customer' or 'Dear User' instead of your actual name
'Your account will be closed in 24 hours!' or 'Immediate action required!'
'You've won $1,000,000!' or 'Claim your inheritance from a foreign prince'
Professional companies proof-read their emails. Multiple typos are a red flag.
Legitimate companies NEVER ask for passwords, SSNs, or full credit card numbers via email
Your boss suddenly asking you to buy gift cards or wire money without prior discussion
You weren't expecting a file, especially from someone you don't know well
.exe, .scr, .zip, .js, .vbs files - especially if claiming to be documents
document.pdf.exe - the real extension is .exe, trying to look like a PDF
Used to bypass email security scanning - the scanner can't check encrypted files
Legitimate documents rarely need macros. This is a common malware delivery method.
Email headers show authentication failures - the sender isn't who they claim to be
Your local colleague sending emails at 3 AM, or coming from foreign time zones
Email from your 'bank' routed through servers in different countries
Your bank always sends formatted HTML emails, but this one is plain text
🚩 Dear Customer,
We have detected 🚩 unusual activity on your PayPal account. For your security, we have 🚩 temporarily limited your account.
🚩 Click here immediately to verify your identity and restore full access: 🚩 http://paypal.com.verify-account.tk
🚩 If you do not verify within 24 hours, your account will be permanently suspended.
Sincerely,
PayPal Security Team