Received a text message from the Health Insurance Department that your health insurance card has expired? New scam trick! The phishing website of fake health insurance Kuaitong appeared again, inducing private messages to fake customer service

防詐達人
·
·
IPFS
·
Recently, some people received a text message notifying that "the health insurance card has expired", and asked the public to enter the designated website to upgrade the health insurance card. In fact, this is a scam news! Clicking on the link will take you to the fake HealthCare Express website and be directed to a fake customer service that attempts to extract your login password and payment information

Just after we repeatedly warned about the fraudulent text messages of the fake Ministry of Health and Welfare , many people can already know that it is a scam as soon as they see "your subsidy has been approved" and "withdrawal of the epidemic prevention subsidy". In order to boost their performance, the fraud group has recently changed their words again!

"Fake" Health Insurance Newsletter

We found on Facebook that some people actually received a text message from a fake health insurance agency:

【Health Insurance】Your health insurance card has expired. How to update? Directly click the URL to upgrade the health insurance card: hxxp[:]//www[.]xsqgov[.]com (copy the URL to the browser to open)

The NHS doesn't send such a message at all, and there are some glaring doubts in this message:

  • The sender is a garbled email address
  • URL does not end in .gov.tw

Wondering how to identify government newsletters: either the URL has gov.tw or the government website!

What happens when the link is clicked?

1. Update electronic version notice

After clicking the URL, you will see the website announcement "According to the <National Health Insurance Action Agency> Department of Resources (policy measures for updating the electronic version of the health insurance card) has been launched, hereby notified"

It is also specially stated that "the electronic version of this update is limited to notified users, update your personal health insurance information as soon as possible"

2. "Fake" Health Insurance Express Login

The next step is to start the process of stealing a series of your data...

After clicking to change, you will be taken to a fake "Healthcare Express" page. The color scheme is exactly the same as that of Health Insurance Express, which will be confusing at first glance.

There are many buttons on this website that cannot be clicked at all , including the "Health Passbook", "Health Insurance Counter", and "Medical Inquiry" below.

My information will go to the following screen, the page is called the National Health Insurance Action Agency, but the page does not look like

3. Fraudulent login information

Regardless of whether I click on mobile phone authentication or device code authentication, I will go to the following login screen, asking for a phone number and password, trying to defraud your login information

And have you found it? The picture here is still the symbol of the 1988 bailout and revitalization area...

4. Inducing contact with fake customer service

This time is different from many phishing websites. In the past, no matter what account and password you entered on the phishing website, you can successfully enter the next page, but this time is different! No matter what you enter, it will show that the account password is wrong, and the button of " online customer service " will pop up on the side to lure you to contact customer service

And after clicking, the customer service seems to know what problems you are encountering. At the beginning, you will ask everyone to give him the registered mobile phone number, and he will help to check it.

And here it even directly states " Waiting for the approval, click on the wallet, click on the withdrawal immediately! " It means that this is basically a bailout scam, so be careful that this fake customer service will use all kinds of tricks to trick you. payment information or financial account

If you receive a suspicious message, use the fraud prevention expert to check first

Send any suspicious links to Trend Micro anti-fraud experts , and identify websites with security concerns for you in seconds! Share this good thing with your family and friends, and let's prevent fraud together!

Comprehensive Fraud Prevention Toolkit:


CC BY-NC-ND 2.0

Like my work? Don't forget to support and clap, let me know that you are with me on the road of creation. Keep this enthusiasm together!

防詐達人大家好~我們是防詐達人🙌投資詐騙、交友詐騙、各式各樣的釣魚連結,防詐達人提供最新的詐騙快訊與手法破解。當看到任何無法確定的訊息,也都可用防詐達人來查詢和回報唷~
  • Author
  • More

麥當勞雙人餐99元限時搶購是釣魚網站,看簡訊才發現自己竟顯被盜刷四萬多元

趨勢科技全新WEB3防詐騙工具TM ChainSafer 上線!使用 MetaMask 交易同時即可檢查

7-11和全聯「新年禮物」抽獎是假的!恐讓你下期電話帳單爆表,還安裝不明軟體