In recent days, there has been a proliferation of e-mails purporting to be from "Diia" regarding the possibility of receiving annual tax refunding.
E-mails contain a link to the phishing page that visually mimics the ID.GOV.UA portal.
On this page, scammers post:
- information about the "annual tax refunding";
- instructions on how to pass identification;
- offer to enter personal data: mobile phone number, full name, bank card requisites (number, expiration date and CVV code).
Obtained data can be used for:
linking your account to a new device;
authorizing your bank account, allowing them to withdraw funds from your account.
Examples of web links to the phishing pages:
hxxps://diia-gov[.]com/sign/account/one-time/index.php?ID=
c881dd31c6714f7b7bfd5954a1e47848
hxxps://diia-gov[.]com/sign/account/one-time/loadingReview.php?ID=
c881dd31c6714f7b7bfd5954a1e47848
hxxps://diia-gov[.]com/sign/account/one-time/review.php?ID=
c881dd31c6714f7b7bfd5954a1e47848
hxxps://diia-gov[.]com/sign/account/one-time/reviewdata.php?ID=
c881dd31c6714f7b7bfd5954a1e47848
Using the e-mail:
- observe personal cyber hygiene;
- be careful and attentive opening attachments, even if they come from known recipients;
- do not open received attachments without first confirming the fact of sending such e-mail by its sender.