Date Reported 24th February 2005
Apparent Sender PayPal
Return Address PayPal <aw-service@paypal.com>
Subject You have added a new credit card home address!
Format HTML
Method Spoof email links to a spoof webpage where victim is prompted to enter their details believing the site is genuine. Details are then forwarded to a local script and captured.
Bogus Web Content? Yes
URL of web content http://www.firstnewpage.us/webscr/_home/email_/run-login/
RISK LEVEL MEDIUM
WARNINGS 1. Email claims to be from PayPal asking you to access your account by clicking on the link. You will be taken to a spoof login page where your details will be captured by the phishers.
2. PayPal never send users emails requesting details in this way.
3. URL of spoof website disguised as "https://paypal.com/webscreen=?cmd_remove/value=cookie?newadress ". This looks secure (https), but is NOT!
4. Real URL looks nothing like PayPal...
5. Website traced to Colfax, USA.
" This email confirms that you have added the following address to your
account: "
If you have received this email, please remember that it is very common for these email scams to be redistributed at a later date with only slightly different content or the same but with the fake page(s) hosted by a different provider. Also, once you have received one of these hoaxes, it is also common place to receive at least another one and usually a day or two after the first, although not necessarily from the same apparent sender.
The Spoof Email ...
This email confirms that you have added the following address to your
account:
x x x
If you did not authorize this change or if you need assistance with
your account, go to :
https://paypal.com/webscreen=?cmd_remove/value=cookie?newadress
Sincerely,
PayPal
Did you know:
EBAY HAS PRODUCTS FOR YOUR NEW HOME
* Lawn Mowers * Faucets * BBQs * Furniture
* Spas & Pools * Flowers * Lamps * Vacuums
* Major Appliances * Plants * Tools * Wallpaper
Go to http://home.ebay.com
-------------------------------------------------------------------
PROTECT YOUR PASSWORD
NEVER give your password to anyone and ONLY log in at
https://www.paypal.com /. Protect yourself against fraudulent websites
by opening a new web browser (e.g. Internet Explorer or Netscape) and
typing in the PayPal URL every time you log in to your account.
------------------------------------------------------------------
PayPal Email ID PP006
|