False Paypal and Ebay Identity Theft Phishing Scam Spams

Subject: {Spam?} Safeharbor Critical Notice eBay Account SUSPENDED
From: "aw-confirm@eBay.com"
Received: from server2.hostingplex.com (server2.hostingplex.com [])
     by srv01.info-world.com (8.11.6/8.11.6) with ESMTP id j0J10GN15120
Received: from eum21sta by server2.hostingplex.com with local (Exim 4.43)
     id 1Cr4B8-0007qq-Ij
X-AntiAbuse: Primary Hostname - server2.hostingplex.com
X-AntiAbuse: Originator/Caller UID/GID - [33224 33225] / [47 12]
X-www.antespam.co.uk-SpamCheck: spam, SpamAssassin (score=37, required 8,
     ANTIABUSE 2.00, APPLES5 2.00, APPLESB 0.01, APPLESC 0.01,
     APPLESX5 1.00, APPLESX6 1.00, BANKINGWORD 1.00, BANKSCAM10 1.00,
     BANKSCAM12 1.00, BANKSCAM4 1.00, BANKSCAM6 1.00, BANKWORD 20.00,
     FREESERVE -30.00, HTML_10_20 1.36, HTML_MESSAGE 0.10, INSPECT3 0.01,
     NEWID2 5.00, NEWNEG2 0.01, NEWNEG3 9.00, NEWPIP1 0.01, NIGER8B 0.50,
     X_MSMAIL_PRIORITY_HIGH 1.00, X_PRIORITY_HIGH 1.00, score 1.00)
X-www.antespam.co.uk-SpamScore: sssssssssssssssssssssssssssssssssssss

Dear eBay member

We recently noticed more attempts to log in to your eBay account from a
foreign IP address and we have reasons to belive that your account was compromised
by a third party without your authorization.

If you recently accessed your account while traveling,the unusual log in attempts
may have been initiated by you.
However,if you are the account holder please verify that, clicking on the link below,
fill the form and then submit. In this way we will verify your identity.

Please update your records in maximum 72 hours.
The log in attempt was made from:
IP address:
ISP host:

If you choose to ignore our request , your account will be suspended until you will verify your identity

To update your eBay records click here:

If you received this notice and you are not the authorized account
holder, please be aware that it is in violation of eBay policy to represent
oneself as another eBay user. Such action may also be in violation of
local, national, and/or international law. eBay is committed to assist
law enforcement with any inquires related to attempts to misappropriate
personal information with the intent to commit fraud or theft.
Information will be provided at the request of law enforcement agencies to
ensure that perpetrators are prosecuted to the fullest extent of the law.

*Please do not respond to this e-mail as your reply will not be received.

Thanks for your patience as we work together to protect your account.


Safeharbor Department
eBay Inc.

In the example below note the hidden link to the non genuine site, the criminals having probably hacked into a name-server:
Return-Path: wwwrun@server2.inethost24.de
Received: from ([] helo=server2.inethost24.de)
Received: (from wwwrun@localhost)
     by server2.inethost24.de (8.12.3/8.12.3/Debian-6.6) id j16MXgBa016466
     for latrobe@mistral.co.uk; Sun, 6 Feb 2005 23:33:42 +0100
Date: Sun, 6 Feb 2005 23:33:42 +0100
To: latrobe@mistral.co.uk
Subject: {Spam?} PayPal Notification ( Your account can be suspended )
Message-ID: 1107729222.14629.qmail@paypal.com
From: "Customer Support" support@supp.paypal.com.inethost24.de


Dear valued PayPal member

It has come to our attention that your PayPal account information needs to be 
updated as part of our continuing commitment to protect your account and to 
reduce the instance of fraud on our website. 
If you could please take 5-10 minutes 
out of your
online experience and update your personal records you will not run into 
any future
problems with the online service. 
                & nbsp;                  &n bsp; 

However, failure to update your records will result in account suspension. 
Please update your records on or before January 30, 2005. 

Once you have updated your account records, your PayPal session will not be 
interrupted and will continue as normal.

To update your PayPal records click on the following link: 


Thank You.  
PayPal UPDATE TEAM             ;                         

Accounts Management As outlined in our User Agreement, PayPal will 
periodically send you information about site changes and enhancements.

Visit our Privacy Policy and User Agreement if you have any questions. 


With sophistication beyond any other anti-spam system we check incoming email for over 10,000 criteria to give the best possible accuracy


Unsurpassed Spam blocking for any email address published on a webpage. Monitored spam-bin minimises risks of losing wanted emails. Don't trust services where you do not know what mails you are losing! Don't trust anti-spam software which has to be downloaded onto your computer.


We aim to stop spam without stopping your business. If you don't have the services of an antispam spam blocking system, you are likely to waste hours per day in due course, viewing and deleting spam. The headache you will have, together with the speed at which you have to delete hundreds of emails, will mean that you delete your wanted emails by mistake. We block them before they get to you and we do so in a careful manner unlike any other anti-spam service.
Many anti-spam spam remedy services are crude and are capable of losing valuable business communications. Many people say "I don't need it - I have installed Product X on my computer" . . . but the reality is that if your existing solution is going to be effective for you, you'll have to waste thousands of hours re-inventing the wheel. Is your time you'll waste worth less than 70 per year?

In contrast to one-solution-fits all software you install on your machine or worse, buy from an ISP, we tailor our spam remedy service to the needs of our individual clients and our results benefit from years of research. You do not need to download software on your computer: we block the spam at our server.


How much? Just 70 per year ($130 or 110EU) per address protected. Discounts for multiple addresses. Pay with Paypal, cheque or bank transfer.
We do the work to help you get on with your work.

If you want to buy maintained filter service to run on your version of SpamAssassin, please enquire: guide 4000 to 30,000 depending on the size of your organisation. They can save you this in problems your server will encounter running Bayes and large databases - and is much more accurate!