Skip to main content

Phish Report: "Payment Successfully Confirmed"

Send Details

Date Sent: Wednesday 9/25/24 10:01am

From: Barbara F. Rivers <efcasgsuugc at gmail dot com>

Subject: Payment Successfully Confirmed

Message

Please review them and let me know if everything is in order or if you require clarification

Attachment

The email had the following as an attachment.

screenshot of a fake paypal bill

DEAR CUSTOMER,

TO COMPLETE YOUR TRANSACTION, WE HAVE DEDUCTED 455.99 USD FROM YOUR AUTHORIZED PAYMENT METHOD. THIS SHOULD BE REFLECTED ON YOUR BANK STATEMENT WITHIN 24 HOURS. 

TRANSACTION DATE: SEPTEMBER 25, 2024

CUSTOMER CODE: 1458

TRANSACTION ID: 1RHDWG94E4

TRANSACTION DETAILS

ITEM: HP PRO BOOK 450 G2

QUANTITY: 1

CHARGE: 455.99 USD

IF YOU REQUIRE ASSISTANCE OR WISH TO CANCEL YOUR ORDER AND REQUEST A REFUND, CONTACT OUR PAPAL CUSTOMER SERVICE REACHED AT:

**PHONE NUMBER**

[DON'T FORGET, BILL ME LATER IS THE PERFECT WAY TO SHOP WHEN YOU WANT MORE TIME TO PAY FOR THE PRODUCT YOU NEED. PLUS, YOU CAN ALWAYS FIND GREAT DEALS AND DISCOUNTS AT OVER 1000 STORES.]

BILLING HEAD

REGARDS

PAYPAL

 

How does this scam work?

The recipient of the email would call the number in the message and say that the charge wasn't theirs. 

The scammer would ask for a remote session and say they were giving the user a refund. The scammer would open the user's bank site and have the user log in. Then, the scammer would change the HTML to reflect too large of a refund into their bank account. 

They would ask the user to go to the bank and withdrawal the extra $10k that they gave to them in error. 

They would ask that the user send the $10k to them.