Verizon Wireless “Thank you for your payment” fake emails lead to exploits

A few of my users have been receiving fake “Thank you for your payment” emails from Verizon.   As you can see below the “Payment Amount” is some crazy high amount, thus prompting unsuspecting users to say “WTF!!!” and click the “Manage Your Account Online” link.

This link actually goes to : hxxp://

That URL tries to execute several exploits (I tried this in my VM).

fake verizon emails 

