Seems Legit: LinkedIn part 14.

How in the world I got an email from linked in as if I had an account on one particular email? Oooh, someone wants to connect with me, and I don’t even remotely recognized the name.

SPAM + SCAM!

Seems Legit: Amazon.com

How could Amazon tells me that my order has been cancelled when I did not place the order? In addition to that, the cancelation notice was sent to an email that has never been used for Amazon account.

Below is a composite screen capture of the phishing email.

 

Spammer Alert: milkcheesedns.com

I have tried contacting eNom.com regarding domain names used for sending spam and I haven’t had any positive responses. eNom.com always passing the responsibility because eNom.com does not provide hosting for the offending domain names.

Every time I tried reporting the offending domain through eNom.com page (http://www.enom.com/terms/AbusePolicy.asp) it always returned an error.

Why wouldn’t Domain Registrar such as eNom.com take the reports seriously. For example the following domains are registered by the same individual based through eNom.com or namecheap.com:

  • plotladybugreward.net
  • teethgood-byelumber.net
  • spadesunmeasure.org
  • frogzephyrmint.com
  • cameraspadetoad.net
  • timehotwood.org
  • yardwristgoose.net
  • fatherbrakebushes.org

All the domains have similar whois info:

Registrant Contact:
1stinlinehost
Inline First ()

Fax:
1608 S. Ashland Ave.
Chicago, IL 60608
US

Administrative Contact:
1stinlinehost
Inline First (domains@1stinlinehosting.com)
+1.3128782798
Fax: +1.5555555555
1608 S. Ashland Ave.
Chicago, IL 60608
US

Technical Contact:
1stinlinehost
Inline First (domains@1stinlinehosting.com)
+1.3128782798
Fax: +1.5555555555
1608 S. Ashland Ave.
Chicago, IL 60608
US

Status: Locked

Name Servers:
ns1.milkcheesedns.com
ns2.milkcheesedns.com

Then there’s milkcheesedns.com:

  Domain Name: MILKCHEESEDNS.COM
Registrar: ENOM, INC.
Whois Server: whois.enom.com
Referral URL: http://www.enom.com
Name Server: DNS1.REGISTRAR-SERVERS.COM
Name Server: DNS2.REGISTRAR-SERVERS.COM
Name Server: DNS3.REGISTRAR-SERVERS.COM
Name Server: DNS4.REGISTRAR-SERVERS.COM
Name Server: DNS5.REGISTRAR-SERVERS.COM
Status: clientTransferProhibited
Updated Date: 01-mar-2012
Creation Date: 27-feb-2012
Expiration Date: 27-feb-2013

Registration Service Provided By: Namecheap.com
Contact: support@namecheap.com
Visit: http://namecheap.com

Domain name: milkcheesedns.com

Registrant Contact:
5th AVE Hosting
Trev Itamar ()

Fax:
PO Box 96503
Washington, DC 20090
US

Administrative Contact:
5th AVE Hosting
Trev Itamar (domains@5thavehost.com)
+1.3235270448
Fax: +1.3235270448
PO Box 96503
Washington, DC 20090
US

Technical Contact:
5th AVE Hosting
Trev Itamar (domains@5thavehost.com)
+1.3235270448
Fax: +1.3235270448
PO Box 96503
Washington, DC 20090
US

Status: Locked

Name Servers:
dns1.registrar-servers.com
dns2.registrar-servers.com
dns3.registrar-servers.com
dns4.registrar-servers.com
dns5.registrar-servers.com

Creation date: 28 Feb 2012 00:07:00
Expiration date: 27 Feb 2013 16:07:00

Surprise, it is registered through namecheap.com/eNom.com.

 

Yeah, that seems legit.

Out of the blue, I’ve gotten a few emails from US Airways regarding my reservations. I know it is a fake because I did not have any reservations at all.

Editor’s note:
Edited the image, removing the recipient name.

Scam Alert: (208) 651-9085

At this point in time there is no such thing as “iPhone 5” and Apple does not give away any tester iPhones to public. Unsolicited text message from (208) 651-9085 says:

Apple is looking for people to Test & Keep the New iPhone5! But only the 1st 1000 users that enter code BETA at http://testiphone5.me will Receive it!

File a complaint on FCC site http://esupport.fcc.gov/complaints.htm
You can also call 1-888-CALL-FCC (1-888-2255-322) voice; 1-888-TELL-FCC (1-888-8355-322) TTY.