How to spot phishing emails pretending to be Webway
Webway never asks for your password by email
Webway Support will never ask you to send:
- Your client area password
- Your cPanel or DirectAdmin password
- Your mailbox password
- A two-factor authentication code
- A complete payment-card number
Do not send passwords in a support ticket either.
Common warning signs
A phishing message may:
- Threaten immediate suspension
- Claim an invoice must be paid through an unfamiliar link
- Ask you to confirm your password
- Use a lookalike Webway domain
- Contain poor spelling or unusual formatting
- Include an unexpected attachment
- Ask for payment by bank transfer (EFT)
- Pressure you not to contact support
- Ask for a two-factor authentication code
Webway doesn't accept bank-transfer payments. An email asking you to pay into a bank account is fake.
Check invoices safely
Don't use the email's payment link if you're unsure. Instead:
- Type
portal.webway.hostinto your browser. - Sign in normally.
- Open Billing › My Invoices.
- Check whether the invoice exists, and its amount and status.
See How to pay an invoice (card or PayFast).
Check service warnings safely
Sign in directly at portal.webway.host, open Services › My Services and check the service.
Don't trust a login page just because it has a padlock. Phishing sites can have valid certificates too.
Check the sender and links
Look at the complete sender address, not only the display name. Before clicking a link, hover over it on a computer or press and hold it on a phone, and check the full destination for misspellings or extra words.
Don't open unexpected ZIP, HTML, Office or program attachments.
Report a suspicious message
Don't reply or click its links. Forward it to support@webway.host, as an attachment where possible so its headers are kept. You can also open a ticket under Support › Open Ticket in the client area. Webway responds within 30 minutes.
If you entered a password
Act immediately:
- Change the affected password from the real portal or control panel.
- Change any other account that uses the same password.
- Turn on two-factor authentication. See How to turn on two-factor authentication for my client area.
- Review User Management and Contacts in the client area.
- Check services, invoices and payment methods for unexpected changes.
- Scan your devices for malware.
- Contact Webway Support.
If the attacker may have accessed hosting or email, see My website or email account has been hacked: what to do.
If you entered card details
Contact your card issuer immediately using the number on the card or its official website. Then check Billing › Payment Methods in the client area and contact Webway Support.
Still stuck?
Open a support ticket and include:
- The sender address
- The subject line
- The date and time received
- The original message as an attachment where possible
- Whether you clicked a link
- Whether you entered a password, card details or a 2FA code
- Any changes already made to secure the account
Never include passwords, complete card numbers or current authentication codes.
Did this answer it?