How to recognize a phishing email


NOTE: It is recommended that you DO NOT FORWARD phishing emails to the IT Help Desk. Forwarding phishing emails to the IT Help Desk may cause important emails to be classified as phishing when they may not actually be phishing. 

  1. Trust your gut – if something seems off about the email, it probably is. Don't click anything in the email or open attachments until you have done a little investigative work or contacted the Help Desk. 

  2. Check the email address of the person who sent the email – if your gut senses something wrong, click the little down arrow at the top of the email and look at the person who sent the email. Is the email address what you expected or does it look suspicious? For example, leatherwood@blueridge.edu VS lauraleatherwood@my.com? The second address should be marked as phishing because she normally communicates with us using her blueridge.edu address.




  3. Hover on links or images to see URL – If you hover over any link or image in an email, the URL will appear in the bottom left corner of your browser window. Is the url what you expected it to be or does it make sense? Does the link say google.com, gogle.com, or googl.com? They make it look similar enough that at a quick glance, it looks correct…but isn't. Sometimes, it may be a long, complex URL or a shortened URL. 

  4. Is the attachment unexpected, odd, or has a weird name – Never open an attachment if you are in doubt. 

  5. Does the email have one of the red flags
    1. An Overwhelming emphasis on urgency. 
    2. Any unsolicited communication regarding any account you have. 
    3. Any unsolicited communication regarding any account you don't have. 
    4. Requests for you to send your username and/or password, or other personal details. 
    5. Spelling, grammar, or factual errors. 
    6. Overly formal, yet very generalized salutations. "Mr/Mrs" or "Dear Sir or Madam" or "To Whom It May Concern." 
    7. Anything "too good to be true." 
    8. FROM addresses that don't match the REPLY address.

If you have determined that it is a malicious email

Click the 3 dots in the upper right next to the reply arrow and select "Report Phishing."




If you feel you have been hacked, change your password immediately.

If you are still unsure or have questions, please call the Help Desk at 694-1895.