GRIDINSOFT HELP CENTER

Email Attacks: Warning Signs and Response

What it is

An email attack uses your inbox as the doorway. Criminals send messages that trick you or deliver malware - from fake “account alerts” to booby-trapped invoices - aiming to steal logins, install spyware/ransomware, or get you to send money.

Common plays

  • Phishing: look-alike logins grab your password.

  • Malware attachments: invoices/ZIPs/scripts that infect your device.

  • Business email compromise (BEC): “CEO/CFO” asks for urgent payment or gift cards.

  • Link shorteners & look-alikes: buttons say one thing; URL goes elsewhere.

Red flags

  • Urgent tone (“pay now,” “verify in 15 minutes”)

  • Sender name looks right, address doesn’t

  • Odd file types: .zip, .js, .exe, macro-enabled Office files

  • Links that don’t match the real site when you hover

If you clicked

  1. Disconnect from the internet; don’t open banking/crypto.

  2. Scan with trusted anti-malware; reboot and scan again.

  3. From a clean device, change passwords and turn on MFA.

  4. In email settings, remove suspicious forwarding rules and sign out of other sessions.

  5. Tell IT/support and anyone who might be affected.

Prevent it

  • MFA everywhere; a stolen password alone won’t work.

  • Use a password manager and unique passwords.

  • Preview links (hover/tap-and-hold) and don’t open unexpected attachments.

  • Keep your device, browser, and mail app updated; enable spam/attachment filtering.

  • For teams: add DMARC, DKIM, SPF and train staff to verify money/account changes out of band.

Match the response to the action taken

If the message was only received, report it and remove it according to policy. If a link was opened, preserve the URL and scan for downloads. If credentials were entered, change them from a clean device, revoke sessions, inspect mailbox rules, and enable MFA. If an attachment or macro ran, isolate the endpoint and collect process and network evidence. Verify payment or bank-detail changes through a known independent channel. Most email attacks use some form of phishing, but the damage depends on what the recipient disclosed or executed.

Helpful?

Glossary (0-9, A-Z)

Still can’t find an answer?

Send us a ticket and we will get back to you.

Submit a ticket