We want to let you know that our security team has recently detected a series of phishing attacks and some of our users have already been affected. During these attacks, malicious sites impersonating Xapo’s platforms, requested crucial security information such as login credentials from our users.
At first glance, it is extremely hard to tell the difference between some attackers and a real site. This comparison below shows how difficult this can be.
FAKE XAPO Address
Correct Xapo Address
Our security team also discovered advertising campaigns claiming to be from Xapo and redirecting to a malicious site.
The security of your account is a priority to us! That is why we’ve come up with a list of measures that you can take to protect yourself from this kind of attacks.
1. Never enter your 6 digit SMS code on a website. The only safe place to enter it is your Xapo Mobile App.
2. Look for the secure HTTPS certificate in your address bar.
3. Make sure you are at https://account.xapo.com/ when logging into Xapo and asked for your credentials.
4. If you are using the Xapo Web App please bookmark the correct url and make sure to always log in from there.
5. Be suspicious of any email claiming to be from Xapo, especially those providing a link for you to log in and failing in this process.
6. Keep in mind that Xapo will never ask for your credentials in an email.
If you ever feel worried about your account’s safety after a specific communication received in the name of Xapo, don’t hesitate to contact us! We will be more than happy to assist you!
Be aware of the Fake Paypal email.
Do not click on the link if you get this email.
|Your account has been Iimited.
|We need your help resolving an issue with your account. To give us time to work together on this, we’ve temporarily limited what you can do with your account until the issue is resolved.
We understand it may be frustrating not to have full access to your ΡayΡal account. We want to work with you to get your account back to normal as quickly as possible.
How you can help
It’s usually pretty easy to take care of things like this. Most of the time, we just need a little more information about your account or latest transactions.
Now, Please resolve Your account as soon as possible.
This “Amazon Gift Card” from a friend is actually a link to a malware site. Here is what the content of the email looks like:
|A friend has sent you a $50 Amazon Gift Card.
Claim Code: #VV5H-MWWHWM-D7P3
Use it to buy anything in our store.
Get your Card Link REMOVED**
Must use by January 15, 2016.
YANG FENGYE IMPORT & EXPORT CO,LTD, China – Phishing SCAM
Ms.Titi Tian <firstname.lastname@example.org>
Our Company YANG FENGYE IMPORT & EXPORT CO,LTD, China is in search of a competent individual or firm that will be responsible in handling funds as our agent and sales representative in the United State/Canada region. If interested kindly indicate your interest by mailing back for further details.
Note: It is a part time offer that won’t interrupt your present work or business.
Provide your details
Date of Birth
Looking forward to your response.
YANG FENGYE IMPORT & EXPORT CO,LTD.
41 WANGJIANG SOUTH ROAD,BAIYUN STREET,
DONGYANG, ZHEJIANG, CHINA
The attachment may hold malware or phishing. You should NOT open the attachment. With any luck this email and others like it are going straight to your SPAM/JUNK folder.
KINDLY OPEN THE ATTACHED FILE FOR MORE DETAILS
Get your own FREE website, FREE domain & FREE mobile app with Company email.
||0 / 57
||2015-04-11 17:48:45 UTC ( 4 minutes ago )
This is a pretty common phishing scam all over the world with different Subject (Position available, Vacancies). When you get these emails, do not respond, do not give these people your personal information.
From: Moses Blanchard <email@example.com>
Hi ! The mail forwarding corporation is searching shipping/receiving Operator.
No enrollment fee. The average monthly salary is $1500.
Job Duties and responsibilities:
– Must be able to work on flexible schedules – the position is home-based
– Receive and mail incoming mail. Auditing incoming mail for damages.
– Complete all paperwork in a timely and accurate manner.
– Applicants must be mature – 21 years and older, able to work independently, prioritize the work in an accurate and efficient manner, permanent access to Internet.
If interested please reply with details requested below so as to check we have your name and other data correctly.
– Your Full Name:
– Your Country, State:
– Your Contact number:
Please note: If you do not receive a call or email from our manager, your information will be held in our file for future consideration.
I received a text 1360261088 Congratulations, smishing SCAM
“+1360261088 <Subject: NoSubject> Congratulations, you are one lucky customer getting a credit applicable to your next month bill, for more details visit //tr.im /ncv2K”
If you receive this message, do NOT click the link. If your are concerned then you should contact your cell phone provider.
How do I report text message spam?
If you receive spam, follow these steps:
Forward the message to 7726 (which spells “SPAM” on most phone keypads). Please don’t edit the message or add any comments.
- We’ll reply to your message with a text message confirming we’ve received it. We’ll also ask you to send us the number of the original sender.
- Send us the phone number of the sender.
We’ll use this information to help identify who is sending spam and take appropriate action. There’s no charge to report mobile spam. Messages forwarded to 7726 do not count toward your plan. You can also place your number on the Federal Trade Commission’s Do Not Call list at http://www.donotcall.gov. If you continue to receive spam messages or calls, you may file a complaint with the FTC at the same website.
From elamb.org – reader
I received a suspicious email last February 20,2015.
This was the email address : Shannon Micah <firstname.lastname@example.org> .
We are a specialized agency in (Global) Customer Service Research.
We are starting a big research project in the USA.There is no charge to join us and this project takes place every month. You will get Usd 2OO per each assignment.
Payment check will be a certain amount that you will be required to cash your bank, deduct your wages then have the rest used for evaluation.- DESCRIPTI0NS_______
* You will be assigned to visit a shop.
* You will then finish an on-line questionnaire to share with us your customer experience.- REQUIREMENTS_______
* 19 Years old or above.
* Can speak the local language well.
* Can read and write English.Give me your i.n.f.o for register.FullN.a.m.e,,,,,,,,,,,,,,,,,,,,,
According to Avira, BitDefender and CLEAN MX “http: //sinoevent.asia/webs/webmail.html” is a possible phishing site:
Dear Email User,We are undertaking some essential, but extensive maintenance to improve all personal and business email services. During this general maintenance period, all users of active personal and business emails are required to update the email registration data or have the email account automatically suspended indefinitely. We are contacting you because this email was listed for this exercise.To certify that you sincerely own or operate this email address, you are required to sign in with the full email address and valid password for immediate file update before you should further use this email on the internet.
Beware of the email scam going around that falsely uses the name of famous EuroMillion winners, Chris and Colin Weir.
Remember, if it sounds too good the be true it probably is. If Chris and Colin Weir did donate money it would not be via an email asking you for you contact information.
A variation of the Chris Weir Lottery Scam
This is a life time opportunity and 100% legitimate. My Wife and I have decided to make sure this is put on the internet for the world to see. You see after taken care of the needs of our immediate family members and friends, we decided to donate £800.000.00 pounds sterling each to other unknown 5 individuals around the world in need, the local fire department, the Red Cross, and some other organizations in Asia, Europe and Africa.because we are on vacation in India, I am happy to inform you that we have forwarded your details over to the management of the City Link Express Courier India.
View Link http://www.bbc.co.uk/news/uk-scotland-glasgow-west-18801698
I am also pleased to inform you that we have issued out a cheque in your name through our attorney, has now been deposited with City Link Express Courier India the Accredited courier company to deliver your bank draft to you in your country. Please remember that the objective of this donation to you is to make a notable change in the standard of living of the less privileged people all around your region before the end of the year 2014.
Recently,i discovered a huge number of double claims due to beneficiary’s informing close friends relatives, attorneys and third parties about their donations. As a result, these close friends, relatives, attorneys and third parties tried to claim the donation sum on behalf of the real recipients thereby causing problems for the courier to deliver the draft. Please be informed that any double claim discovered in the disbursement process, will certainly result to the cancellation of that particular donation, making a loss for both the double claimer and the real beneficiary, as it is taken that the real recipient was the informer to the double claimer about the donation. So you are hereby advised to keep your information’s strictly confidential until your claim has been fully recovered. You are required to make contact with the delivery company as soon as possible, and discuss with them how your cheque would be delivered to your home address in your country and you will be informed about the cost of delivery by the courier company in charge of your certified cheque.
You will need to contact City Link Express Courier India Ltd which is our accredited delivery company.You are to reach them with the information below.
NOTE: You do not have much time to get this done. I advise you act fast and get in touch with Mr Jacob Kr. Sharma of City Link Express Courier India with His contact information stated below:
CITY LINK EXPRESS COURIER INDIA
No 40, Malya Apartment, Plot No 110, Jawahar Nagar,
Maharashtra, Mumbai-400062, India.
Mr. Jacob Kr. Sharma (Dispatch Officer)
Phone Number: 0091-964-293-3371
CONTACT COURIER E-MAIL: email@example.com
You are to contact them with the following information within the next 24hours;
Note This Form Must be filled
1. Full name:
2. Address where you would want the parcel delivered to.
3. Telephone Number/Fax Number.
Please note that upon your contact with Mr Jacob Kr. Sharma you are to provide him with your Donation Code Number [Chris/148/2014/BTB] so that he can verify your identity with the details we sent over to their office earlier on today. Please endeavour to keep us fully informed on all developments with the courier company so that i can also monitor the delivery process through a feedback from you. We look forward to your prompt response, should you have any questions, do not hesitate to contact me as soon as you possibly can.
Your follow up and full cooperation is highly anticipated.
We Wish you Good-luck as you receive your benefit
Chris and Colin Weir.