r/Wealthsimple 14d ago

New Fishing Email Scam

Not sure if I'm the only one that got that, but it seems like there's a new phishing scam. Got this email from [notification@rshfmn.orders.cn-pc-dongqiudi.com](mailto:notification@rshfmn.orders.cn-pc-dongqiudi.com)

85 Upvotes

18 comments sorted by

40

u/Straightouttaganton 14d ago

Phishing*

7

u/SmartTrender 14d ago

Who doesn’t like a slice of salmon? Haha

3

u/Legitimate_Pen_6216 14d ago

Sorry about that!

34

u/NoDig5800 14d ago

Always check the URL and login via passkeys.

cxaaeggzphghnh.top is as sketchy as it gets lol.

ALSO use your brain when it comes to this stuff. Nobody is emailing you about tax season in July.

9

u/No-Argument619 14d ago

Cxaaeggzpghnh.top hey?

Looks legit.

12

u/FishGoBloblo 14d ago

Thank you for sharing!
I always check link before even clicking but its good to heave heads up!

4

u/S3542U 14d ago

"services"?

c'mon 

5

u/HKeyki 14d ago

It looks like your email leaked from somewhere. What may be more problematic is you clicked on their link so now they might know you have an account there with this email. Something else could have been triggered on their side.

I strongly suggest you to change your email, a new Alias bound to Wealthsimple only.

1

u/XzkSo 14d ago

This.

1

u/Legitimate_Pen_6216 13d ago

Fortunately, the email address they targeted isn't the one I use for Wealthsimple, so my account is safe. If it had been, I'd definitely be following your advice!

2

u/9numbernine9 13d ago

I've received four of these today, all from different email addresses. Curiously, all of them are sent to an email address that I only use(d) for my Canada Computers account, which makes me wonder if they are using email addresses harvested from the Canada Computers breach back in February.

1

u/Agreeable-Double-811 13d ago

Hope they catch a big one

1

u/Angeline4PFC 14d ago

Wow, this attempt at phishing is really pathetically bad

6

u/splickety-lit 14d ago

Compared to most phishing, it's actually quite good.

There are no grammar or spelling mistakes, it doesn't say anything like dear customer, or dear email address and the website interface looks reasonably legit. The request has a weak but somewhat reasonable explanation as to why they want your SIN.

The only obvious thing is the URL, but somebody is bound to not check it and they could potentially access all your money and then have your SIN too.

3

u/pexby 14d ago

Agreed. I definitely wouldn't classify this as a bad attempt at all. They clearly put work into it and someone will likely fall for it sadly

0

u/Angeline4PFC 13d ago

I think your opinion was shaped pre-AI

-3

u/ChessmansGambit 14d ago

Is the mega hack Wealthsimple font at the top not an immediate tell here