Hey, I just got an official-looking email from PayPal (I have an account). the Subject reads, "Account Flagged".
The body reads something to the effect of my account has been flagged as a routine security measure and that I need to click this link to verify my account information.
The email came from
[email protected]. Everything looked official, so I clicked.
The page opened to the standard PayPal sign-in page so I logged in. The next page opened to the Profile page, and said to update my information, and had all the boxes for Credit card number, address, phone, etc.
Everything looks official. But then I kicked myself--I'm not usually a sucker for email scams.
I closed the window I was in (I was already filling out the CCard info!) and went back to my email.
I clicked the link again, then entered my email and password again, only this time I used a false password...
The page accepted the fake and opened to the Profile page again!
Here is the URL of the "paypal" page the link took me to. Maybe some of you experts can figure out where this really came from.
login page:
http://83.148.101.122/www.paypal.com/us/cgi-bin/
The page directed to after logging in:
http://83.148.101.122/www.paypal.com/us/cgi-bin/[email protected]&login_password=
I'm going to try to find an address to contact PayPal about this (or maybe I'm wrong and it's all legit?).
Hope this message helps someone. If you know who I should contact, please let me know.
Sincerely,
General Tsao