We are monitoring a phishing attack directed toward the customers of PayPal Italy. The email is very long and explains the reader why is it important to click on that link and to answer to the survey. As usual for this kind of emails, the subject specifies that the user is required to take action immediately.

Another interesting fact with this phishing attack is that the email appears to be sent from paypal.lt (Lituania). Checking the paypal.lt domain in a browser, we are redirected to the paypal.com website and then to the final target http://www-paypal-deutschland.de. These guys from PayPal seem to never learn anything from experience. As long as you have more than one domain for a business, you create confusion and practically invite fraudsters to take advantage of the confusion this creates.
The fake PayPal website looks different than the real paypal.it website (on paypal.it/ricarica), which might be because the screenshot was taken at a different point in time.

We would like remind our readers to never click on links in (unexpected) emails. If you have to visit a webshop or website of a financial institution, please make sure you type the URL by hand and not by clicking links in some email!
Sorin Mustaca
Data Security Expert
Full story: Avira – TechBlog
Related Posts
- Cartasi Italy under heavy phishing attack
We are currently observing an attack with different phishing emails and websites, targeting the customers of the Italian bank Cartasi.
We have spotted 4 different phishing attacks, 3 of them using t... - New Paypal phishing spam attack
We have received some reports regarding a new Paypal phishing spam that is being spread over the net. Please also be aware that it contains an attchment with double extenssion, e.g. PayPal - Email Re... - Phishing Attack Uses Fake Donation Website
Earlier today, we found a phishing site that poses as a donation site to raise money for the victims of the recent earthquake in Japan. The phishing site http://www.japan{BLOCKED}.com is created by us... - A wave of PayPal phishing emails
Over 200 million people have accounts on PayPal, making it a key target for internet fraudsters attempting to steal money.
One of the way that criminals try to get their hands on your cash is by phish... - Paypal phishing attempts in German
Paypal phishing attempts in English speaking countries are very successful. The fraudsters seem to assume that this success also applies to the German speaking audience and started many phishing campa... - Multilingual Paypal phishing
We don’t see a phishing attack executed simultaneously in two languages every day, but recently saw one in English and French at the same time. This time, the fraudsters didn’t even bothe... - Inside a phishing attack: 35 credit cards in 5 hours
Phishing attacks have grown steadily in recent years, becoming a highly profitable attack for cyber criminals. In ESET Latin America’s Laboratory, we are used to finding and informing about phi... - PayPal phishing with improved social engineering
Yesterday morning we started to see a new mass mailing Phishing targeting PayPal. Nothing new here, we all know that PayPal is the most targeted brand these days. What we find interesting is the fact ... - New Phishing attempt for PayPal
We have received some interesting PayPal phishing mail last week. The email attracted my attention because it was very big. I always think of malicious attachments when I see something like this, but ... - Phishing Attack Targets Merchant Accounts
The point of many phishing scams is to gain access to bank or credit account information for financial gain. So, it makes sense to target users or accounts with the highest odds of containing substant...
Posted on 07 February 2011. Tags: Attack, Italy, PayPal, Phishing