UK Student Loan scam; From: \"studentfinance.direct.gov.uk\"<mail2stduent@protocol.slc.co.uk> - Scamalot

Seen a Scammer? Report Them!

Seen a scammer? Been caught out? Let the world know so they don't get burned. Add information if you see one that's already been logged - scammers move quickly and change details often to avoid detection. Details you log here will be in major search engines within an hour or two.

Please Like, Share, Tweet etc. to spread the word.
  Scam type at Advanced Search      
Scam ReporterScam Tips Received
No Name
Southampton, Southampton, United Kingdom
2012-09-06 08:26:45
Identity Theft
UK Student Loan scam; From: "studentfinance.direct.gov.uk"<mail2stduent@protocol.slc.co.uk>   
 Scammer
  Information
Name:
mail2stduent@protocol.slc.co.uk
Email Address:
mail2stduent@protocol.slc.co.uk
Scam Website:
Phishing by mail2stduent@protocol.slc.co.uk with link to xerex.com.ar- a site that is blacklisted for malware and phishing- sent from blacklisted IP.

IP: 75.65.226.134
ISP: Comcast Cable
Source Host Name: c-75-65-226-134.hsd1.ms.comcast.net
Organization: Comcast Cable
Location:Clinton, Mississippi, MS 39056, United States

Received: from mail.tspspices.com ([76.12.10.210]) by COL0-MC4-F18.Col0.hotmail.com with Microsoft SMTPSVC(6.0.3790.4900);
Wed, 5 Sep 2012 10:18:13 -0700
Received: from c-75-65-226-134.hsd1.ms.comcast.net [75.65.226.134] by mail.tspspices.com with SMTP; Wed, 5 Sep 2012 12:29:36 -0400
From: \"studentfinance.direct.gov.uk\" Subject: Student Message - we shall suspend your account
Date: Wed, 5 Sep 2012 17:29:36 +0100
**********
************
Return-Path: mail2stduent@protocol.slc.co.uk



Dear Student, Your account has exceeded its limit and needs to be verified, if not verified within 24 hours, we shall suspend your account.

Click

\"http://xerex.com.ar/prueba_vivo/resources/slc_login.oaupk002.p_get_username.html\"

here
to verify your account now

Thank you<
 Got more information on this Scam/Scammer?
Add to Report
 Problems with this Report? (Spam/Legal/Abuse etc) ?
Report to Scamalot
Curious what information about you is out there? You may be surprised! | Reverse Email Lookup | Reverse Phone Lookup

Since you’re here …
we have a small favour to ask. More people are visting Scamdex and Scamalot than ever but advertising revenues are falling fast and we have no 'product' to sell. And unlike many informational websites, we haven’t put up a paywall or membership barrier – we want to keep our site as open as we can. So you can see why we need to ask for your help. Scamdex/Scamalot websites takes a lot of time, money and hard work to keep running. We do this because we hate to see our fellow humans getting scammed out of their hard-earned money by low-lives.
Consider switching off your AdBlocker (if you use one) or contributing directly by one of the links below. Thank you for reading!
54.83.122.227Array
(
    [CONTEXT_DOCUMENT_ROOT] => /home2/scamalot/public_html
    [CONTEXT_PREFIX] => 
    [DOCUMENT_ROOT] => /home2/scamalot/public_html
    [GATEWAY_INTERFACE] => CGI/1.1
    [HTTPS] => on
    [HTTP_ACCEPT] => text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
    [HTTP_ACCEPT_ENCODING] => x-gzip, gzip, deflate
    [HTTP_HOST] => www.scamalot.com
    [HTTP_IF_MODIFIED_SINCE] => Sun, 22 Oct 2017 04:25:24 GMT
    [HTTP_USER_AGENT] => CCBot/2.0 (http://commoncrawl.org/faq/)
    [HTTP_X_HTTPS] => 1
    [PATH] => /bin:/usr/bin
    [PATH_INFO] => /4922
    [PATH_TRANSLATED] => /home2/scamalot/public_html/ScamTipReports
    [QUERY_STRING] => 
    [REDIRECT_STATUS] => 200
    [REMOTE_ADDR] => 54.83.122.227
    [REMOTE_PORT] => 38420
    [REQUEST_METHOD] => GET
    [REQUEST_SCHEME] => https
    [REQUEST_URI] => /ScamTipReports/4922
    [SCRIPT_FILENAME] => /home2/scamalot/public_html/ScamTipReports
    [SCRIPT_NAME] => /ScamTipReports
    [SCRIPT_URI] => https://www.scamalot.com/ScamTipReports/4922
    [SCRIPT_URL] => /ScamTipReports/4922
    [SERVER_ADDR] => 66.147.230.173
    [SERVER_ADMIN] => webmaster@scamalot.com
    [SERVER_NAME] => www.scamalot.com
    [SERVER_PORT] => 443
    [SERVER_PROTOCOL] => HTTP/1.0
    [SERVER_SIGNATURE] => 
    [SERVER_SOFTWARE] => Apache
    [SSL_TLS_SNI] => www.scamalot.com
    [TZ] => America/Sacramento
    [UNIQUE_ID] => WjBrX0KT5osAAFtce5cAAAAR
    [PHP_SELF] => /ScamTipReports/4922
    [REQUEST_TIME_FLOAT] => 1513122655.46
    [REQUEST_TIME] => 1513122655
    [argv] => Array
        (
        )

    [argc] => 0
)