PayPal Spam

Just got a really well formatted, articulated phishing/scam mail. It was so good that I actually looked up whois information for one of the domains (they even bothered to use https). Anyhow, comparing the whois-data for paypal.com with paypalobjects.com shows this:

fredrik@a-machine:~$ diff ppo pp
8c8,14
<    Domain Name: PAYPALOBJECTS.COM
---
>    Server Name: PAYPAL.COM.ZZZZZ.GET.LAID.AT.WWW.SWINGINGCOMMUNITY.COM
>    IP Address: 69.41.185.207
>    Registrar: TUCOWS.COM CO.
>    Whois Server: whois.tucows.com
>    Referral URL: http://domainhelp.opensrs.net
>
>    Domain Name: PAYPAL.COM
[...]

So, I won’t open the attached form that requires a “fairly modern browser to work”. :-)

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.