Scammers are always looking for new twists on common scams, especially when it comes to phishing emails. These emails are meant to trick victims into clicking a link and either providing personal information or downloading viruses or malware.
Better Business Bureau warns a new version of this con is circulating as an email alert from accounting software QuickBooks. While anyone may receive this email, scammers are specifically targeting small businesses.
Here’s how this scheme works. You receive an email with the subject line “QuickBooks Support: Change Request.” The message is “confirming” that you changed your business name with Intuit, QuickBooks’ manufacturer. However, you never made such a request. You think it must be a mistake, but fortunately the email contains a link to cancel.
Pause before you click! Scammers know you didn’t make this request, and the link to cancel is simply bait. It downloads malware to your device, which scammers use to capture passwords or hunt for sensitive information on your machine. This can open you up to identity theft.
Similar scams also impersonate personal tax software or banks. Always be wary of unexpected emails that contain links or attachments. Here are some other ways to spot phishing messages.
n Check the reply email address. One easy way to spot an email scam is to look at the reply email. The address should be on a company domain, such as firstname.lastname@example.org. Especially for major companies, be wary of generic addresses from free email providers.
n Check the destination of links. Hover over links to see where they lead. Be sure the link points to the correct domain (www.companyname.com) not a variation, such as companyname.othersite.com or almostcompanyname.com. Scammers can get creative, so look closely.
n Consider how the organization normally contacts you. If an organization normally reaches you by mail, be suspicious if you suddenly start receiving emails or text messages without ever opting in to the new communications.
n Be cautious of generic emails. Scammers try to cast a wide net by including little or no specific information in their fake emails. Be especially wary of messages you have not subscribed to or companies you have never done business with in the past.
n Don’t believe what you see. Just because an email looks real, doesn’t mean it is. Scammers can fake anything from a company logo to the “Sent” email address.
n Have a process in the office. Make sure employees know to not click links in unexpected emails. Have a process of who they should verify with if they are uncertain of an email like this and encourage them not to make “quick fixes” that could be costly.
Emily Valla is the marketplace director for Better Business Bureau Northwest: Idaho and Western Wyoming. Contact her at 208-523-9754 or by emailing email@example.com.