Beware of Fake iTunes Receipt Emails

Beware of Fake iTunes Receipt Emails

8 Mar 2012 ·

Internet


If you own an iPhone, iPod or iPad then you’re used to regularly receiving iTunes receipt emails on your inbox. Last week, my wife was surprised when she received an iTunes receipt in her email inbox amounting to $699.99. As soon as she told me about it, I knew right away that it could be spam or a phishing email.

I checked the suspicious email and at first glance, it looked legit. The email address used was store[at]itunes[dot]com and the message looked like a real iTunes receipt.

Fake iTunes Receipt Email

I compared it with a real iTunes receipt I previously received and found a few discrepancies:

Fake iTunes Receipt
Sender: iTunes
Email Address: store[at]itunes[dot]com
Billed To: email address
Billed To: “Credit card”

Real iTunes Receipt
Sender: iTunes Store
Email Address: do_not_reply[at]itunes[dot]com
Billed To: email address, full name, billing address (street, state, zip code)
Billed To: Credit card type – MasterCard, VISA, etc. with last 4 digits.

I also checked the email headers of both the real and fake iTunes receipts and saw that the data (Return Path, Received, Received-SPF, Authentication-Results, DKIM-Signature, etc.) didn’t match up. I also noticed that the fake email had these strange characters “•” at the bottom of the email.

The last thing I checked were the links embedded on the email. Btw, I did it by hovering the mouse over the links, not clicking on the links. Below are links and URLs they’re pointing to:

Cancel Order, Report a Problem links – slavodelic[dot]com/pod/check[dot]php

View\Download link – http://cpslex[dot]com/images/download[dot]jpg[dot]exe

Purchase History link – http://cpslex[dot]com/images/history[dot]pdf[dot]exe

As you can see, the URLs were pointing to a PHP page and a couple executable files. With that, it’s safe to say that the fake iTunes receipt email was not just an ordinary spam or phishing email but a malicious email that intended to trick users into installing a trojan horse virus on their computers.

People who send these type of emails use scare tactics to trick users to provide their account names/passwords, click on links, install attachments, etc. If an unsuspecting person got duped into thinking that this was a real iTunes receipt and that person clicked on any of the embedded links, their computer would’ve been compromised. Their personal information could be stolen, credit cards & bank accounts breached and their computer could be used as a “bot” for a botnet.

If you ever come across the same type of email, make sure that you DON’T click on any of the links and/or DON’T download/install any of the attachments. DELETE the email and warn your family and friends about it.

Anybody else got these fake iTunes receipt emails?


Subscribe to JaypeeOnline's RSS feed  Share this on del.icio.us  Stumble It!  Digg this!  Share this on Facebook  Tweet this!  Share on FriendFeed  Bookmark It!  Submit to Reddit!  Email this story to a friend!
Written by Jaypee Habaradas
Owner and editor of JaypeeOnline. Self-proclaimed geek. New media writer and consultant. WordPress advocate. Loves blogging, gadgets, video games and sports. You can follow him on Twitter @jaypee or Facebook.
Don't miss a single post and receive FREE updates on your email inbox. Subscribe NOW!

Enter your email address:

*Don't forget to verify your subscription by clicking the link on the email that Feedburner will send you.*

Didn't find what you're looking for? Try looking for it again.

Related Posts

Related Ads

























, , , , , , , ,

**Comments posted on JaypeeOnline are moderated. I reserve the right to edit/delete comments that contain words or phrases that are defamatory, abusive, incite hatred and advertise an email address, commercial services or spammy.


2 Responses to “Beware of Fake iTunes Receipt Emails”

  1. Marina SWEDEN Safari Mac OS Says:

    Hello! Unfortunately, I clicked on the link in exactly the same email you mentioned.. I did it from iPad. Is it dangerous? Thanks for your help

    Reply

Don't Be Shy. Share your thoughts!

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Trackbacks/Pingbacks

  1. [...] Beware of Fake iTunes Receipt Emails [...]

You May Also Like -

iOS 4.3.3 Software UpdateiOS 4.3.3 Software UpdateApple iOS version 4.3.3 is now available for download. This software update was released ...