Skip to main content
< All Topics
Print

Report a Phishing Email

Phishing messages reach Wooster accounts every week. Reporting one takes about thirty seconds and helps Microsoft filter similar messages for everyone on campus. This article covers reporting from every version of Outlook, and what to do if you already replied to a message before you realized what it was.

If You Already Responded

If you clicked a link, entered your Wooster password, or replied with any account information, treat your account as compromised and act now. Do this before you report the message.

  1. Change your password immediately at myaccount.microsoft.com.
  2. Review your registered sign-in methods at aka.ms/mysecurityinfo and remove anything you do not recognize.
  3. Call the Help Desk at 330-287-4357. Phone is fastest for this.
  4. Report the message using the steps below.

Do this even if you are not certain anything was taken. Changing a password costs you a minute. A compromised account can send thousands of messages in your name before anyone notices.

Choosing Phishing or Junk

The Report button offers two options. They do different things, so the choice matters.

  • Report phishing is for messages trying to trick you. Requests for your password, fake sign-in pages, messages impersonating a Wooster employee or department, fraudulent job offers, and unexpected attachments all belong here.
  • Report junk is for unwanted bulk or marketing mail that is annoying but not deceptive.

If you are unsure which applies, choose phishing. Over-reporting a message as phishing causes no harm.

If you are unsure whether a message is legitimate in the first place, see our article on recognizing legitimate Wooster emails.

Report a Message in Outlook

The Report button is built into every current version of Outlook. You do not need to install anything.

Outlook on the Web

  1. Sign in at outlook.office.com.
  2. Select the suspicious message in your message list.
  3. On the toolbar above the reading pane, select Report.
  4. Select Report phishing.
  5. Confirm when prompted.

New Outlook for Windows

  1. Select the suspicious message.
  2. On the Home tab, select Report. You can also right-click the message and choose Report.
  3. Select Report phishing.
  4. Confirm when prompted.

Classic Outlook for Windows

  1. Select the suspicious message in your message list.
  2. On the Home tab, find Report. It sits between the Delete group and the Respond group.
  3. Select Report, then Report phishing.
  4. Confirm when prompted.

Outlook for Mac

  1. Select the suspicious message.
  2. On the Home tab, select Report. You can also Control-click the message and choose Report.
  3. Select Report phishing.
  4. Confirm when prompted.

Outlook for iPhone and iPad

  1. Open the suspicious message, or press and hold it in your message list.
  2. Tap the three dots at the top of the screen.
  3. Tap Report.
  4. Tap Report phishing, then confirm.

Outlook for Android

  1. Open the suspicious message or press and hold it in your message list.
  2. Tap the three dots at the top of the screen.
  3. Tap Report.
  4. Tap Report phishing, then confirm.

If the Report Button Is Missing

The button is missing most often because Outlook needs an update. Work through these in order.

  1. Update Microsoft 365. On Windows, go to File > Office Account > Update Options > Update Now. On Mac, open any Microsoft 365 app, select Help in the menu bar at the top of the screen > Check for Updates. Updating from any single app updates Outlook along with it, so you do not need to start from Outlook. On iPhone, iPad, or Android, update the Outlook app in the App Store or Google Play.
  2. Use Outlook on the web instead. Sign in at outlook.office.com, where the Report button is always available.
  3. If it is still missing, contact the Help Desk.

Please do not install a reporting add-in from the Office store on your own. Microsoft has retired the older Report Message and Report Phishing add-ins in favor of the built-in button, and the add-in versions can send reports to the wrong place.

Suspicious Teams Messages, Texts, and Calls

Not every attempt arrives by email. The Report button only covers email, so these need a different response.

  • Microsoft Teams. Do not click links or respond. Take a screenshot and contact the Help Desk.
  • Text messages and phone calls. Wooster IT will never ask for your password or your multifactor authentication code by text or phone. Do not respond, and contact the Help Desk.
  • Messages impersonating Wooster that arrive at a personal email address. Forward them to helpdesk@wooster.edu.
  • Fraudulent job or internship offers. These often arrive through campus channels and target students specifically. Report them the same way, and contact the Help Desk if you have already sent personal or banking information.

What Happens After You Report

  • The message leaves your inbox and moves to your Deleted Items folder.
  • Your report goes to Microsoft, which uses reported messages to improve filtering for every Wooster account. Reporting protects other people on campus, not only you.
  • Your report does not go to the Wooster IT Help Desk. Nobody on campus sees it, and you will not receive a reply. No reply is normal and does not mean anything went wrong.
  • Because of this, contact the Help Desk in addition to reporting whenever a message looks aimed at Wooster specifically. Examples include a message that names a real campus office, references a real campus deadline, or appears to come from a Wooster employee. Your call is how we learn that a campaign is underway.

If you would rather have someone look at a message before you do anything with it, do not click Report. Contact the Help Desk and we will review it with you.

Getting Help

If you run into any issue during setup, contact the IT Help Desk.

  • Email: helpdesk@wooster.edu
  • Phone: 330-287-4357 (330-287-HELP)
  • Walk-in: Burton D. Morgan Hall – Help Desk, 4th floor
  • Hours: Monday through Friday, 8:30 am to 5:30 pm
Table of Contents