Phishing Paypal :- chartersports.com

Background

This morning received an obvious phishing email.

Chose to play along and see if it is one already known to Google’s Chrome.

 

Evidence Gathering

Email

Email Folder – Junk Email

Here is what the email looks like:

Email Screen

Email Text

PауРаl PауРаl   Hello,Аs раrt оf оur sесuritу mеаsurеs , wе rеgulаrlу sсrееn асtivitу in thе РауРаl Sуstеm.Wе rесеntlу соntасtеd yоu аftеr nоtiсing аn issuе оn yоur РауРаl . Wе rеquеstеd infоrmаtiоn frоm yоu fоr thе fоllоwing rеаsоn:

Оur systеm dеtесtеd аn аbnormаl issuе in your ассount, wе bеliеvе thеrе might bе а brеасh . in this саsе we nееd to vеrify your ассount. plеаse сliсk on thе link bеlow аnd follow thе stеps for more sесurity еnsurаnсе.
This is thе lаst rеmindеr tо lоg in tо yоur аcсоunt аs sооn аs роssiblе.Oncе yоu lоg in , yоu will bе рrоvidеd with stерs tо rеstоre yоur ассоunt ассеss.

Remove Limitation NowCopyright ©2017 РаyРаl. All rights reserved.Company Limited by Shares. Registered office:Boulevard Royal, M-Luxembourg

 

Website

Followed the trail ( Link ), so you don’t have to …

The URL reads chartersports.com

 

Remediation

  1. Report
    • Report through web site
      • Google
        • Report Phishing Page
      • Symantec
        • Report Phishing Page
    • Report through email
      • Anti-Phishing Working Group
        • Web Site :- Link
        • Email :- reportphishing@apwg.org
      • US – Department of Homeland Security
        • US-Cert
          • Report Phishing Sites
            Web Site :- Link
            Email :- phishing-report@us-cert.gov
      • US – Federal Trade Commision
        • Email :- spam@uce.gov
        • Read more here
      • Apple
        • iCloud
          • Email :- abuse@icloud.com
          • Read more here
      • Amazon
        • Email :- stop-spoofing@amazon.com
        • Read more here

Addendum

Addendum – 2017-10-24

Email Envelope

Email Contents

URLS

  1. http://flyt.it/3nak2kuylcjh?ID=
  2. https://www.settingsmanagement-acc-privacyuser.com/webapps/bdb9a/websrc

 

Summary

Some of these guys are actually smart.

Prayerfully, they will take off the blinders.

Like Jacob Prasch would say “Let the guy go out, learn a trade, and start to make a honest living…become a carpenter” for Christ’s sake.

Leave a Reply

Please log in using one of these methods to post your comment:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s