We have recently become aware of a phishing scam currently targeting many domain name registrants which incorrectly and fraudulently advises them that their domain name registration has been ‘suspended’.
In an attempt to bait users to click and subsequently download a malware file, the fraudulent email claims that the domain name has been suspended by the registrar (Synergy Wholesale) and the registrant has failed to respond to previous email and telephone notices.
The emails are originating from what would appear as “Synergy Wholesale” but in most cases the sending email appears to be firstname.lastname@example.org. These suspension emails are NOT being sent from VentraIP Australia or Synergy Wholesale.
The fraudsters appear to be retrieving the information from the public WHOIS, including the registrant name and the registrar of record in attempt to make the emails appear genuine.
Do NOT click any of the links in the email and DELETE the email immediately.
An example of this particular phishing email has been included below;
If you ever have questions on the validity of an email received please contact our team via eTicket and we will be more than happy to assist.