Scam Email to attempt cyber theft of my domain name.
Cyber crime is rife at the moment not just with domain theft but scammers doing everything they can to extract money from less fortunate people.
Yesterday I wrote a post on my other blog https://marketingagency.cymrumarketing.com/2020/11/03/scam-alert-letter/ about a Scam Letter I received from a banker, by coincidence an unrelated to the email I also wrote about a banker betting $5 Million Dollars on Donald Trump winning the election.
I named and shamed this person whom sent me the email whom most probably is not even using their real name. So low and behold today I receive another email to a website I own which is a Business Directory and Community Hub for the district in Cardiff UK where I live ‘Roath’.
Now you have to think to yourself how would this keyword be a conflict or beneficial to anyone in China?
The domain is: www.roathlife.com
The email is as follows and when I replied back it bounced, you can come to your own conclusions but I think some one is attempting to scam me and whoever it is has to get up earlier than me to catch me out.
Original Scam Email.
Nick Liu <firstname.lastname@example.org> 05:35
(It’s very urgent, therefore we kindly ask you to forward this email to your CEO. If you believe this has been sent to you in error, please ignore it. Thanks) Dear CEO, This is a formal email. We are the Domain Registration Service company in China. Here I have something to confirm with you. On November 4, 2020, we received an application from Hongxin Ltd requested “roathlife” as their internet keyword and China (CN) domain names (roathlife.cn, roathlife.com.cn, roathlife.net.cn, roathlife.org.cn). But after checking it, we find this name conflict with your company name or trademark. In order to deal with this matter better, it’s necessary to send email to you and confirm whether this company is your distributor in China? Best Regards
Nick Liu | Service & Operations Manager
China Registry (Head Office)
6012, Xingdi Building, No. 1698 Yishan Road, Shanghai 201103, China
This email contains privileged and confidential information intended for the addressee only. If you are not the intended recipient, please destroy this email and inform the sender immediately. We appreciate you respecting the confidentiality of this information by not disclosing or using the information in this email.
My reply was:
Dear Nick Liu,
My name is Renata Maziak Barnes, I am the legal owner of the said domain names www.roathlife.com and www.roathlife.co.uk.
These domains have been registered and are developed by me. I also own www.ukdomainbrokers.com and specialise with UDRP’s.
Your domain names are on different GEO territories to myself being the owner from the time 2020-03-06 and I have actively developed my sites, therefore there is no trademark conflict as I was the first person to publicly publish my domains names.
I would suggest your client refrains from registering the domain names because this could cause a problem in future, although I have no intention of ever marketing my business in China.
www.roathlife.cn is not registered and has no whois data
www.roathlife.com.cn is not registered and has not whois data
www.roathlife.net.cn is not registered and has no whois data
www.roathlife.org.cn is not registered and has no whois data
I await your reply at your earliest convenience.
Renata Maziak Barnes
Tel: +44 (0) 7565253529
Mail delivery failed: returning message to sender
Mail Delivery System<email@example.com>
This message was created automatically by mail delivery software.
A message that you sent could not be delivered to one or more ofits recipients. This is a permanent error. The following address(es)failed:
firstname.lastname@example.org:SMTP error from remote server for RCPT TO command, host: mx.chinaregistryshanghai.org (126.96.36.199) reason: 550-Rejected because 188.8.131.52 is in a black list at zen.spamhaus.org550 https://www.spamhaus.org/sbl/query/SBL275660
— The header of the original message is following. —
Received: from oxbsltgw54.schlund.de ([172.19.249.7]) by mrelayeu.kundenserver.de (mreue106 [184.108.40.206]) with ESMTPSA (Nemesis) id 1MnItm-1jtEYQ3Htc-00jJDA for <email@example.com>; Wed, 04 Nov 2020 14:09:54 +0100Date: Wed, 4 Nov 2020 13:09:53 +0000 (GMT)From: info <firstname.lastname@example.org>To: Nick Liu <email@example.com>Message-ID: <firstname.lastname@example.org>In-Reply-To: <email@example.com>References: <firstname.lastname@example.org>Subject: Re: roathlifeMIME-Version: 1.0Content-Type: multipart/related; boundary=”—-=_Part_17396_1939878953.1604495393253″X-Priority: 3Importance: NormalX-Mailer: Open-Xchange Mailer v7.10.3-Rev26X-Originating-Client: open-xchange-appsuiteX-Provags-ID: V03:K1:0iM3qWu96k7+nm6+4FH27tKPwLRBi3asRo6IkltspIx3TiUD8kb 64Uvu0jRQatF1oh4vDfkRIqu/dq6NyeeDKKZXgjPLwi3RTMcoCU6+tQ/oULYFxnptlDS3oS IlPnkssjWtzaXo3GN5ANdoR8YOAFSgjH7j7v7yiwWdYUG6l3EGRySxCDl5dFixgSGqCZFZc 7KMuQNqSZjTIl6nphFPyA==X-Spam-Flag: YESX-UI-Out-Filterresults: junk:10;V03:K0:dkv51dmL+xI=:uYemXnJzgY5oUhy06auNt9z0 /s6XKe4ewOfXuhxlYsCuQnjZQZ8rRyx3d9vm8um4MQVT2TCP40TEZLgS+hlkJ7zOGoNigfUsO /uxX0VlvP1Y2598VU7SFDa71yNpiYn57pI+0NRWuxMDVxzXftUBgs9OWRrR2YcRpBBBLAc4OL uQE+bUIjVqcX7gI9Ht/2gH/HmgicgKTL7IRwiJmPzRin6agRweednEeaGngyVgz1hFNU/JwWe aFqNNvU0Q+2UHmAdKte0AlLqugU/30/GG++dkm//fmctpH/2xvAOMmWRH3UMEjaQybSFNEGIv rVSrzn+pPorxI8nsm5NaMKHrKhFiP4kZ3xt/yT8fY9Tc/b6BOBTtFT41i5RNa/cP14dDxlVG/ Grj3D5HVH4qNOjgzjPEcQFhvViI8WGsQFX+gLi1NC7E/EIpaWoXFI3YD4oL0ihfpC/JoCsPL3 /SLhxA6S4CWKkdsFvBSQfJNSddtAnxDwjcsy+RS5YEGl4i6nIqqFkNTeFeiU7lMpeE1I85/AN uc79t8O70Dx02z5zhq2c=