• Thrives on familiarity– the greeting on the email message is likely to be personalized: “Hi Ram” instead of “Dear Sir.”
  • Email may make reference- to a “mutual friend” or a recent online purchase have made or create a credible, influential alert message like account alert, update information, mandatory password changes, etc.; It may also include a link to a website used for gathering information.  
  • Uses legitimate company's domain name- in the "from" portion of the "BAIT" email: @ebay.com, @paypal.com, @citibank.com.