PayPal users are at risk of getting their credentials stolen if they follow instructions given in a scam email.

pp1

We have reason to believe that your account was accessed by a third party…. PayPal will verify it with your bank records for your own protection. If you provide a wrong PIN your account will be suspended or limited for unauthorized account access.”

Please visit the Resolution Center and complete the steps to remove limitations.

Yeah, right.

The phishing page is hosted on 66.228.113.38:

pp2

A quick look at the address bar should raise some eyebrows: it’s never a good sign when it starts with an IP address.