Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Spam Reports

November 7th, 2011, 11:08 GMT · By

PayPal Account Review Notification Hides Phishing Campaign

SHARE:

Adjust text size:


PayPal's reputation is used in another phishing campaign
Enlarge picture
PayPal's name and reputation are utilized by cybercriminals in the latest phishing expedition that's set out to steal the accounts of internauts. The latest scam masks itself as a notification coming from the PayPal Account Review Team which informs the customer on a credit card issue.

According to Sophos, the message alerts the potential victims of a credit card charge that has been blocked by their system since it was unusual.

“An intrusion into your account has been detected which shows that someone tried to access your PayPal account without your permission. We have limited access to your account due to this problem. Moreover, we have sent you an attachment which contains all the necessary steps in order to restore your account access. Please download and open it in your browser,” reads the phish.

Once the attachment is opened, it reveals a form that replicates a PayPal page in which the user is urged to enter personal information such as name, date of birth, social security number, phone and other sensitive data that in the end will help the crooks get the contents of a bank account.

PayPal does send notification emails, but they never contain attachments, so this is a good thing to lookout for when receiving such messages.

Also, take a good look at the email address of the sender. In many cases, such as in this one, it gives away the true identity of a scam.

The typos, the grammar errors and sometimes the poor design of a website can reveal the fact that an alert which seems to be coming from a legitimate company is actually a hoax.

Finally, to make sure you're protected against these malevolent operations, install a decent security software. In most situations, the products offered by security vendors will quickly identify and contain these attempts.

TELL US WHAT YOU THINK:

2,805 hits · 1 comment · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


The Difference Between 'Twitter' and 'Twittelr' Is a Phish

Stolen PayPal Accounts Sold for Cents on the Black Market

PayPal Survey: 63% of Australians Use the Same Password For All Their Accounts

PayPal Emails Replicated in Phishing Campaign

Dutch SNS Bank Impersonated in Phishing Campaign

READER COMMENTS:


Comment #1 by: Barbara on 23 May 2012, 15:11 UTC reply to this comment

Thanks so much for posting, this helps a lot!

Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM