A Sample of the Phishing SunTrust Bank Email Messages
From: "SunTrust Online" <secur@suntrst.com>
Date: March 6, 2018 at 11:56:19 AM EST
To: Recipients <secur@suntrst.com>
Subject: SunTrust: Account Status Notification
Dear Customer,
We noticed that a different computer has tried to access your online banking but failed with wrong identity challenge during the process. You now need to verify your Identity.
If this is not completed by March 09, 2018 We will be forced to suspend your account indefinitely, to avoid being used for fraudulent purpose.
Click here to Verify My Account.
Thank you for your understanding as we work together to protect your account.
© 2018 SunTrust Online Security Corporation. All rights reserved.
It is important for internet users to remember that they should never click on a link to sign into their online accounts, especially links in email messages. The safest way to sign into their online accounts is to go directly to their online account providers’ websites, by typing the addresses of the websites in their web browsers or using a popular search engine to find the websites.
For example:
SunTrust’s customers should go directly to https://www.suntrust.com/ in their web browsers or search for “SunTrust Bank” using a popular search engine.
And, if there is something wrong with their accounts or there is something that they need to do, they will be notified right after signing in.
Recipients of the phishing SunTrust email, who have clicked on the link and have attempted to sign into the phishing website with their accounts’ credentials, should change their passwords and contact SunTrust Bank immediately.