Paypal Phishing Fraud

Laura

Administrator
Administrator
Moderator
FOTCM Member
I just received the following email which is a fraud designed to get me to click the link and give information about my bank account:

Return-path: <security@PayPal.com>
Envelope-to: lark2@****
Delivery-date: Sat, 15 Sep 2007 15:43:33 -0500
Received: from cassiop by unix17.vizawebserver.com with local-bsmtp (Exim 4.68)
(envelope-from <security@PayPal.com>)
id 1IWeUE-0008UW-IJ
for lark2@*****; Sat, 15 Sep 2007 15:43:33 -0500
Received: from [63.124.213.235] (port=3153 helo=mailbox.bridgehouse.net)
by unix17.vizawebserver.com with esmtps (SSLv3:DES-CBC3-SHA:168)
(Exim 4.68)
(envelope-from <security@PayPal.com>)
id 1IWeU4-0008QN-1c
for lark2@cassiopaea.org; Sat, 15 Sep 2007 15:43:30 -0500
Received: from User ([24.248.173.211])
by mailbox.bridgehouse.net (Merak 6.0.3) with ASMTP id HVA37799;
Sat, 15 Sep 2007 16:40:33 -0400
Reply-To: <security@PayPal.com>
From: "PayPal"<security@PayPal.com>
Subject: Receipt for Your Payment
Date: Sat, 15 Sep 2007 14:16:31 -0700
MIME-Version: 1.0
Content-Type: text/html;
charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Message-Id: <E1IWeUE-0008UW-IJ@unix17.vizawebserver.com>
X-PMFLAGS: 34079360 0 1 P9TWFRYV.CNM

<html>
<head>
</head>
<body class="AOLWebSuite" style="background-color: white;font-family: Arial,sans-serif;font-size: 10pt;border: 0px;">


<div id="AOLMsgPart_0_1e54de01-71b6-4d00-a4e9-d63abc52f31e">

<html>
</font>
</div>
<div id="message5">
<pre><tt>Dear PayPal Member</font></a>,


This email confirms that you have sent an eBay payment of $47.85 USD to
<a href="mailto:achad13@yahoo.com&YY=24663&order=down&sort=date&pos=0&view=a&head=f">achad13@yahoo.com</a> for an eBay item.



-----------------------------------
Payment Details
-----------------------------------


Amount: $47.85 USD

Transaction ID: 2LC956793J776333Y

Subject: Digimax 130





Note:
<span class="style5"><em>If you haven't authorized this charge ,click the link below to dispute transaction
and get full refund</em></span>

<a target=_blank href="http://bitoon.net/www.paypal.com/cgi-bin/webscr=cmd=p/index.php">Dispute transaction</a> (Encrypted Link )

<span class="style5">*SSL connection:
PayPal automatically encrypts your confidential information
in transit from your computer to ours using the Secure
Sockets Layer protocol (SSL) with an encryption key length
of 128-bits (the highest level commercially available)
</span>
-----------------------------------
Item Information
-----------------------------------


eBay User ID: scratchandgnaw2


----------------------------------------------------------------
Edward Harrell's UNCONFIRMED Address
----------------------------------------------------------------

Edward Harrell
211 David St.
Springtown, TX 76082
United States

Important Note: Edward Harrell has provided an Unconfirmed Address. If
you are planning on shipping items to Edward Harrell, please check the
Transaction Details page of this payment to find out whether you will
be covered by the PayPal Seller Protection Policy.




----------------------------------------------------------------
This payment was sent using your bank account.

By using your bank account to send money, you just:

- Paid easily and securely

- Sent money faster than writing and mailing paper checks
- Paid instantly -- your purchase won't show up on bills at the end of
the month.

Thanks for using your bank account!



----------------------------------------------------------------

Thank you for using PayPal!
The PayPal Team
PayPal Email ID PP118
<html>

</div> <!-- end of AOLMsgPart_0_1e54de01-71b6-4d00-a4e9-d63abc52f31e -->

</body>
</html>
 
There are so many around! Usually if you own a commercial site, all the spam is sort of automatically directed to your info@... and namesite@... email accounts.

I got nearly 30-50 spam emails per day at my working place, and a solid 10-20% of those emails are from faked PayPal accounts, Post Offices, Banks, Nigerian-like hoaxes. The rest is just porn, casino, free games online and magic pills rubbish. I've found that Thunderbird's spam filter is really helpful.

Knowing about the phishing issue, usually neither money services nor banks are going to send ads emails to you or unsolicited requests out of the blue, they send only a confirmation email whenever a money transfer or a id/pw change has been made, and it's almost instantaneous feedback, the rest is just spam.
 
Back
Top Bottom