I just got this email from what looked like [email protected] Took me a while to find out it actually wasent them. not sure who sent it, but its not from a paypal server. also the URL looks like paypal.com but it is actually worldISP.com Thier Security cert is owned by them too. looks fairly real. i just emailed [email protected] about this, but not sure what else to do. first one of these i found. I just sent it to the bugtraq mailing list. This is the source of the email.
Received: from mail.com (va-danville1b-37.chvlva.adelphia.net [188.8.131.52])
by localhost.localdomain (8.12.8/8.12.8) with SMTP id h6D2GmqT000622
for email@example.com; Sun, 13 Jul 2003 03:16:53 +0100
To: “webmaster” firstname.lastname@example.org
Subject: PAYPAL – VERIFY AND UPDATE YOUR ACCOUNT
Date: Sat, 12 Jul 2003 22:08:26 -0400
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Dear PayPal Member,
This email was sent by the PayPal server to re-verify your e-mail address
and to update your profile information on PayPal. You must complete
this process by clicking on the link below and entering the information
from your profile. This is done for your protection — becaurse some of our
members no longer have access to their email addresses and we must verify it.
To update your profile information and access your account,
click on the link below. If nothing happens when you click on the
link (or if you use AOL), copy and paste the link into the address bar of
your web browser.
The link will take you to our Verify Your Identity page. Fill in the
appropriate fields to update your profile information and Security
Questions, and click Submit. You will then be able to access your account.
Thanks for using PayPal!
Please do not reply to this e-mail. Mail sent to this address cannot be
answered. For assistance, log in to your PayPal account and choose the
“Help” link in the footer of any page.