Suspected phishing email - reporting
Summary
This guide helps you troubleshoot and resolve: Suspected phishing email - reporting. Follow the steps below to fix the issue.
Quick Tip: Need immediate assistance? đź’» Open a Ticket
Common Causes
Problem
You received an email that looks suspicious – it could be a phishing attempt to steal your credentials or infect your computer with malware.
What is Phishing?
Phishing emails try to trick you into:
- Clicking malicious links
- Downloading malware
- Providing passwords, credentials, or financial information
- Transferring money or sensitive data
Red Flags to Watch For
- Urgent or threatening language (e.g., “Your account will be closed!”)
- Suspicious sender (e.g., support@company‑secure.com instead of [email protected])
- Requests for sensitive information (passwords, bank details, employee data)
- Mismatched URLs – hover over links to see the real destination
- Poor spelling and grammar
- Unexpected attachments from unknown senders
- Too good to be true offers
How to Report a Phishing Email
Method 1: Use Outlook’s Built‑in Report Feature (Recommended)
- Select the email in your inbox.
- Go to the Home or Message tab in the ribbon.
- Choose one of the following:
- “Report” → “Report Phishing”
- “Junk” → “Report as Phishing”
- Click the option to report the email.
- Confirm if prompted.
- Delete the email from your inbox.
If you have not yet added your account to Outlook, see How to add email to Outlook.
On Outlook mobile, tap the three‑dot menu on the message and select “Report Phishing”.
Method 2: Forward to IT Security Team
- Forward the suspicious email, including the full email headers, to [email protected].
- Do not click any links in the email before forwarding.
- In the subject line, write:
Suspected Phishing – [brief description]. - Provide context in the body, e.g., “Received from unknown sender claiming to be …”.
Method 3: Use the Microsoft Report Message Add‑in
- If installed, locate the “Report Message” button in the email.
- Click it and select “Phishing”.
- The email will be reported to Microsoft and to our IT team.
What to Do If You’ve Clicked a Suspicious Link
- Don’t panic – act quickly.
- Do not enter any passwords or credentials.
- Disconnect from the internet (disable Wi‑Fi/Ethernet).
- Do not download or run anything from the email.
- Contact IT immediately using Open a Ticket and explain what happened.
- Change your passwords from a different, safe computer.
- Monitor your accounts for unusual activity.
What NOT to Do
- Reply to the suspicious email.
- Forward it to colleagues (only forward to IT/security).
- Download attachments.
- Click any links, even to “unsubscribe”.
- Call any phone numbers in the email.
After Reporting
- IT will investigate the email.
- The malicious sender may be blocked.
- Additional warnings may be sent to the organisation.
- You did the right thing by reporting.
Need More Help?
If you have clicked a link, provided information, are unsure whether an email is legitimate, or notice unusual account activity, please Open a Ticket.
When in doubt, throw it out — and report it!
Still Having Issues?
Need more help? If the issue persists after trying these steps, please open a support ticket and our team will assist you.
đź’» Open a Ticket
đź’» Open a Ticket