Categorized | Antivirus

Phishing Attack on PayPal Italy

We are monitoring a phishing attack directed toward the customers of PayPal Italy. The email is very long and explains the reader why is it important to click on that link and to answer to the survey. As usual for this kind of emails, the subject specifies that the user is required to take action immediately.

Another interesting fact with this phishing attack is that the email appears to be sent from paypal.lt (Lituania). Checking the paypal.lt domain in a browser, we are redirected to the paypal.com website and then to the final target http://www-paypal-deutschland.de. These guys from PayPal seem to never learn anything from experience. As long as you have more than one domain for a business, you create confusion and practically invite fraudsters to take advantage of the confusion this creates.

The fake PayPal website looks different than the real paypal.it website (on paypal.it/ricarica), which might be because the screenshot was taken at a different point in time.

We would like remind our readers to never click on links in (unexpected) emails. If you have to visit a webshop or website of a financial institution, please make sure you type the URL by hand and not by clicking links in some email!

Sorin Mustaca
Data Security Expert

Full story: Avira – TechBlog

Related Posts
  • Cartasi Italy under heavy phishing attack
    We are currently observing an attack with different phishing emails and websites, targeting the customers of the Italian bank Cartasi. We have spotted 4 different phishing attacks, 3 of them using t...
  • New Paypal phishing spam attack
    We have received some reports regarding a new Paypal phishing spam that is being spread over the net. Please also be aware that it contains an attchment with double extenssion, e.g. PayPal - Email Re...
  • Phishing Attack Uses Fake Donation Website
    Earlier today, we found a phishing site that poses as a donation site to raise money for the victims of the recent earthquake in Japan. The phishing site http://www.japan{BLOCKED}.com is created by us...
  • A wave of PayPal phishing emails
    Over 200 million people have accounts on PayPal, making it a key target for internet fraudsters attempting to steal money. One of the way that criminals try to get their hands on your cash is by phish...
  • Paypal phishing attempts in German
    Paypal phishing attempts in English speaking countries are very successful. The fraudsters seem to assume that this success also applies to the German speaking audience and started many phishing campa...
  • Multilingual Paypal phishing
    We don’t see a phishing attack executed simultaneously in two languages every day, but recently saw one in English and French at the same time. This time, the fraudsters didn’t even bothe...
  • Inside a phishing attack: 35 credit cards in 5 hours
    Phishing attacks have grown steadily in recent years, becoming a highly profitable attack for cyber criminals. In ESET Latin America’s Laboratory, we are used to finding and informing about phi...
  • PayPal phishing with improved social engineering
    Yesterday morning we started to see a new mass mailing Phishing targeting PayPal. Nothing new here, we all know that PayPal is the most targeted brand these days. What we find interesting is the fact ...
  • New Phishing attempt for PayPal
    We have received some interesting PayPal phishing mail last week. The email attracted my attention because it was very big. I always think of malicious attachments when I see something like this, but ...
  • Phishing Attack Targets Merchant Accounts
    The point of many phishing scams is to gain access to bank or credit account information for financial gain. So, it makes sense to target users or accounts with the highest odds of containing substant...

Comments are closed.

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
5 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
5 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
5 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
5 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
5 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
5 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
5 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
5 months ago
Some free-based music we play at work http://t.co/xu5agZfc
5 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
5 months ago