Phishing Schemes

Phishing Scheme Prevention

What you can do about Phishing Schemes

The Department of Justice recommends following three simple rules when you see emails or websites that may be part of a phishing scheme: Stop, Look, and Call.

1. Stop: Phishers typically include upsetting or exciting (but false) statements in their emails with one purpose in mind. They want people to react immediately to that false information by clicking on the link and inputting the requested data before they take time to think through what they are doing. Resist that impulse to click immediately. No matter how upsetting or exciting the statements in the email may be, there is always enough time to check out the information more closely.

2. Look: Look more closely at the claims made in the email, think about whether those claims make sense, and be highly suspicious if the email asks for numerous items of your personal information such as account numbers, usernames, or passwords. For example:

  • If the email indicates that it comes from a bank or other financial institution where you have a bank or credit card account but tells you that you have to enter your account information again, that makes no sense. Legitimate banks and financial institutions already have their customers' account numbers in their records. Even if the email says a customer's account is being terminated, the real bank or financial institution will still have that customer's account number and identifying information.
  • If the email says that you have won a prize or are entitled to receive some special "deal" but asks for financial or personal data, there is good reason to be highly suspicious. Legitimate companies that want to give you a real prize don't ask you for extensive amounts of personal and financial information before you're entitled to receive it.

3. Call: If the email or website purports to be from a legitimate company or financial institution, call or email that company directly and ask whether the email or website is really from that company. To be sure that you are contacting the real company or institution where you have accounts, credit card account holders can call the toll-free customer numbers on the backs of your cards, and bank customers can call the telephone numbers on your bank statements.

How does FirstMerit secure my information?

  • When you log in to your online account, your password is encrypted and the characters are replaced with asterisks so no one can see your password; any screen that displays or requests information about your account is also encrypted
  • We store your User ID and password in our database in an encrypted format that even we cannot decode
  • We have procedures in place so that when a customer contacts our call center, visits a banking center, or banks online, we can verify his or her identity - without your password or PIN

Websites that provide information about Internet security