Email Exceeded Storage Limit Phishing Scam
Email claims that the user’s email account has exceeded its storage limit and instructs him or her to reply with the account username and password in order to restore full functionality.
The message is not from any system administrator. The email is a phishing scam designed to trick users into divulging their email account login details to Internet criminals.
From: SYSTEM ADMINISTRATOR
Subject: Confirm Your Account
Your E-mail has exceeded 2 GB which was established by our website
administrator, you are currently runing at 2.30GB, you can not send or
receive new messages until you confirm your mailbox. Complete the form below
to verify your account.
Fill in the required form below to cornfirm your account and sent the
(4) Confirm Password:
Subject: RE; Your E-MailBox Has Exceeded Storage Limit!
RE; Your E-MailBox Has Exceeded Storage Limit!
Your Emailbox has exceeded the storage limit. You may not be able to send or receive new mail until your mailbox size is increased by your System Administrator.
To help us re-set increase the size on our database prior to maintain your Mailbox, you must contact your system administrator via Email with these informations, to increase your storage limit automatically. You do not need to be present at our Office.
You will continue to receive this warning message periodically if your inbox size continues to exceed its size limit or between 18MB and 20 MB.
This message, which purports to be from the “System Administrator”, claims that the recipient’s email account has exceeded its storage limit and the sending and receiving of email may therefore be disrupted. The message instructs the recipient to reply to the email with his or her username and password so that the “System Administrator” can reset the account and increase the size of the database storage limit. A later version of the scam askes users to reply with account details to “confirm” the mailbox.
However, the message is not from the “System Administrator” or anyone else at the account holder’s email service provider. Instead, the message is a phishing scam designed to trick recipients into handing over their web mail login details to Internet criminals.
Those who reply to the message with their login details as instructed will in fact be handing over access to their webmail account to scammers who can then use it as they see fit. Once in their victim’s email account, these criminals can then use the account to send spam messages, or in many cases, send other kinds of scam emails.
Scammers often use such compromised email accounts to launch instances of the “stranded friend” scam. In this scam, criminals use a hijacked email account to send out messages to everyone on the account’s contact list. These emails claim that the account holder is stranded in a foreign country without money or resources due to a robbery. They ask the recipient to send money urgently to help their “friend” return home. Because the messages are being sent from the victim’s own webmail address and are likely to include his or her real name and email signature, at least a few recipients are likely to believe the claims in the email and send money as requested. Of course, any money sent will be pocketed by the criminals running the scam. Meanwhile, the real owner of the compromised account may not even be aware that his or her
Hoax-Slayer – New Articles