How To Check If Any Of Your Domains Have Been Stolen From Moniker

monikerYesterday Moniker send emails to all its users with new passwords and asked them to change the passwords immediately. It was later reported that this was done after a massive hacking that resulted in many valuable domain names being stolen from various Moniker accounts.

First of all I must say that I can’t believe that no one at Moniker noticed that a single IP logged into thousands of accounts. Is there anyone over at Moniker? This is a major flag that went unnoticed. This went on for 2 weeks that gave the thieves plenty of time to transfer out any domains the wanted.

Of course if you own a very small number of domains you can check whois and then check if the domain is in your Moniker account. But if you have thousands of domains it is not that easy.

First of all you should Continue reading

Huffington Post: “How To Protect Yourself From Domain Thieves”

noOn Monday, The Huffington Post reported on domain theft, a scheme in which hackers steal valuable Internet addresses and sell them in online forums or extort their rightful owners.

They now have a followup article on how domain name owners should protect themselves from domain name thieves.

Some of the advice offered is bad or not very accurate but it is a start on alerting the public on these mattes. For example the article suggests using a whois privacy service so that scammers can not send you phishing emails. Of course that is not true because if someone sends an email to the privacy email address shown on whois then the email is forwarded to your real email address. So you get the phishing email anyway. The only way to avoid phishing scams is not click on links from emails.

Also Huffington Post suggests that people use Web.com (one of the worst registrars around) because it Continue reading

ICANN Issues Alert On The Latest Domain Name Renewal Phishing Scam

icannLast week I wrote about the latest email scam that is targeting domain name owners. Domain name owners receive an email with their details from whois data and a domain name that may or may not be expiring. The scam uses a disposable domain name with ICANN’s logo and info plastered all over it. The email asks owners to go to that website so they can renew their domain names. All that the scam tries to do is steal credit card information.

ICANN issued an alert about this scam today: Continue reading

New Domain Renewal Scam Steals Your Credit Card With A Tempting $3 Price And An ICANN Logo

noAn internet maze of several (some hidden) domain names across different registrars, with or without whois privacy, 2 countries, stolen credit card numbers and ICANN. And this only part of what this scam is about.

I got an email yesterday with the subject “clinicalagency.com EXPIRATION!”. The renewal price is very low at $3 for a .com that it is very tempting for people that don’t know much about domain names, registrars and renewals.

The email comes from “INTERNET DOMAIN REGISTRATION” and the email address: domain@domaiinnregistration.com. The domain name spells “domain” with 2 “i”s and 2 “n”s. But “domaiinnregistration.com” is not even registered.

The actually mistyped the email address as their scam website is located at Continue reading

New UK Domain Name Spammer SwitchAds.com (SwitchConcepts.co.uk and SwitchConcepts.com)

I got a spam email from SwitchAds.com yesterday for the 20th time so I decided to reply and ask them to unsubscribe me as they seemed like a real United Kingdom company. And they actually replied even though I didn’t like what they said.

The spam has an email called “Enquiry” and that is because it targets domain name owners after harvesting domain name whois records for email addresses.

Here is the body of the email I got from sarah.webb@switchads.com:

Hi,

I’m looking to get in touch with the person responsible for display advertising on ******.com, are you able to help?

We have created a really simple platform that works in partnership with your existing advertising solution (e.g. Google AdSense) to help websites like yours generate more revenue and we’ve got strong advertising demand in your sector right now. 

I’d love to discuss setting up a test with you to prove how good SwitchAds really is. Who’s the best person to talk to?

Kind regards,

Sarah Webb
Sales Manager

Switch Concepts Limited
Hounsdown House,
Hounsdown Business Park,
Southampton SO40 9LX
United Kingdom

M: +44 (0) 7585 118336
T: +44 (0) 333 200 1230
switchads.com

As there is no unsubscribe link on the email, I replied to them and I asked them to remove me from their mailing list and got this reply: Continue reading

“Domain Registry of America” Registrar Suspended By ICANN For 90 Days

The registrar BRANDON GRAY INTERNET SERVICES INC. (dba NameJuice.com) that has been behind the ”Domain Registry of America”  (DRoA) or “Domain Renewal Group” scam was suspended by the Internet Corporation for Assigned Names and Numbers (“ICANN”) on the 19th of July 2014.

Brandon Gray’s ability to create new Registered Names or initiate inbound transfers of Registered Names is suspended for 90 days pursuant to Section 5.7 of the RAA. The suspension is effective 19 July 2014 at 00:00 UTC and will conclude on 17 October 2014 at 00:00 UTC, or longer if Brandon Gray has not demonstrated compliance on or before 10 October 2014.

The registrar scam sends domain name expiration letters all over the world asking for Continue reading

Warning: Fraudulent ICANN Domain Name Certificates

ICANN issued a warning today regarding some people trying to sell generic top-level domain (gTLD) centificates. These fraudulent certificates claim to protect registrants from something that I don’t quite understand. If you have received such an email please post it on the comments below.

The “certificates” look official and include an unauthorized use of the ICANN logo and the people making them are trying to extort money from registrants.

“ICANN is currently investigating these cases and advises registrants who encounter similar incidents to report to ICANN immediately via an email to Contractual Compliance at compliance@icann.org.”

ICANN recommends that anyone wishing to register a domain name under a generic top-level domain name to do so using an ICANN-accredited registrar. And if you want to buy an already registered domain in the secondary market then you should always use a secure escrow service such as escrow.com or eCop.com. Continue reading

New Spam/Scam Email Targeting Snapnames and An Auction Ending Today

I got an email today that looked a bit suspicious at first glance. The email was send by a Gmail address (snapnamez@gmail.com) and the name was listed as “Domain Auction”. The subject was “LLLL Premium Domains and more…” and the email listed several 4 letter domains as well as other domains that being auctioned at Snapnames.

All domains had direct links to the snapnames auctions. I believe this is a spam email with the senders snapnames affiliate codes embedded in the links. All domains are part of the 2014 Summer Premium Auction that ends today.

But the most serious matter is that the email is trying to pass off as it was send by Snapnames. The scam email is signed off by “John Morozova” that is supposed to be
“VP Sales – Brokerage, Premium Auction and Escrow Services” of Snapnamez.

Do you notice the “z” at the end? I don’t believe that John Morozova is the name of a real person, yet alone someone working at the real Snapnames. Continue reading

Domain Name Scam Alert from BBB (about an Asian domain registration service)

Businesses beware. Scammers in Asia are trying to trick you into paying a premium for your website domain names. Don’t fall for these scare tactics.

How the Scam Works:

You receive an email addressed to the owner of your company. It appears to be from an Asian domain registration service. The email says that a third party company has requested to register your business’s brand name as a website domain in China or elsewhere in Asia.

According to the email, the “domain registrar” realized your company owns that brand name. And they decided to do you a favor and offer to register the domain for you instead of this other company.

The catch? There is no competing business, and the price to purchase the domain is much higher than you would pay elsewhere. Often, the email sender isn’t even an actual domain registration business. He/she simply purchases the domain elsewhere for a few dollars and immediately sells it back to the victim for an inflated price.

Tips for Avoiding Domain Name Scams: Continue reading

Mystery Domain Name for Sale at Ebay.com

I have to admit it. People’s creativity in scams never seizes to amaze me. I was browsing the domain names for sale at Ebay.com when I found this for sale: “Mystery Domain Name”. I was curious to see what great “mystery” domain the seller had for sale. Was it mystery-now-you.com or myname-is-mystery.com? Well guess what? You don’t get to know what crappy domain you are buying until after you have won the auction! And the opening bid is set at $10. The photo posted with this item says that “This Domain Name Can Fit Any Type You Want”.

Isn’t it great? To get this great premium domain name for only $10. Of course I am only kidding!!! I bet it is something like greatest-domainname-ever-fitsanytype.com that the seller bought for $0.99 at Go Daddy. Oh did I forget it comes with free shipping too! So hurry!

Well don’t because the “domain name” didn’t sell the first time and the seller had to relist it. Too bad that somebody lost out on this great! Bid with confidence! NOT!!!

Here is what the seller says:

IMPORTANT: per eBay rules this is NOT a lottery, raffle, sweepstakes, or any form of gambling

 Up for Your Consideration is the Domain Name:

You Are Bidding To Own The Web Domain Name:

It could be an Adult or a Premium  Website Domain NameFor Sale.

Domain Highlights:

This a Mystery Domain Name, like all domain names they are meaningful, easy to remember and has unlimited potential money maker.

This Domain Name covers everything. It can be an adult or an non-adult.

A Non-Adult is a G – PG.

An  Adult Is PG – R, XXX.

This domain name is registered until: 2014 with GoDaddy.The winner will receive a FREE domain name push to their GoDaddy account.

All we need is your GoDaddy Account Number & Email Address used with that account.

Please send this information after you have won the auction.

DON’T MISS OUT ON A DOMAIN NAME.

Bid With Confidence!

I am the Owner and I have the Domain Name in my Account and will Transfer of Ownership the Domain Name winning Bidder.

This Auction is for the Transfer of Ownership of the Domain Name or Domain Names Listed Only. No Website Hosting or Anything Else is Included There are No Hidden or Extra Fees with this Auction. The Winning Bid is What You Pay, Successful Bidders will have Their Domain Transferred for Free to their Own GoDaddy Account.

Getting a GoDaddy account is FREE and takes about 90 seconds.

It is an extremely easy process.

Expiration Date: 2014

The words Teen, Eureka, Talent. Will Sometimes pop up as a Premium Domain Name.

Once Payment has been Received the Transfer will usually be Initiated within 48 Hours. But, Please Allow up to 72 Hours under extreme circumstances. Payment is Expected within 10 Days of Auctions End.