Reporting phishing and a suspected compromised account Print

  • 0

A suspicious message may ask you to approve a payment, open a document, reset a password, or urgently verify your account. A familiar display name alone does not establish that the sender is legitimate.

If you have not interacted with the message

  1. Do not open its attachments, follow its links, reply, or use a phone number supplied in the message.
  2. Confirm unexpected requests through a known contact method, especially changes to bank details or payment instructions.
  3. In supported Microsoft 365 Outlook versions, select the message and use Report > Report phishing where available. The exact reporting interface depends on your organization’s configuration.
  4. Tell AvrinTech which mailbox received it, the sender, subject, and approximate time. Follow our instructions if we need the original message for analysis.

If you clicked, entered credentials, or approved a prompt

Contact AvrinTech promptly using a trusted support route. Say exactly what happened: opening a link, downloading a file, entering a password, or approving an unexpected sign-in request are different events.

If you can safely access your account through its usual trusted sign-in page, change a disclosed password and tell us that you did so. A password change alone may not complete incident recovery. Do not approve further unexpected MFA prompts. If a file ran or your device behaves unusually, stop using it for sensitive work and contact us for next steps.

Useful evidence

  • The affected mailbox and device.
  • The time of the message and your interaction.
  • Any payment, file, or account involved.
  • A screenshot with unrelated confidential information removed.

Do not paste working sign-in links, session tokens, passwords, or MFA codes into a ticket. Avoid forwarding potentially harmful attachments without instructions.

What happens next

We will use the information to assess the affected account or device and coordinate recovery with an authorized contact. Preserve the evidence rather than deleting everything immediately.

Further guidance: Microsoft: protecting yourself from phishing.


Was this answer helpful?

« Back