I get tons of similar spam presumably from PayPal. They may LOOK legit, but they obviously aren't - Just look at the URL!
Legit:
http://www.paypal.com/ [paypal.com]
Legit:
http://paypal.com/ [paypal.com]
Legit:
https://paypal.com [paypal.com secure site]
NOT!!:
http://www.paypal-secure.site.com/ [really site.com]
NOT!!:
http://www.paypal.legit.com/ [really legit.com]
NOT!!:
http://216.114.206.173/page/update/ [numbers hide address]
And be careful with addresses that include strings of shit like this ?r=56hsdadfgja0943jkl because they're probably looking to see if YOU, personally, clicked on the link.
The one I just got even talks about "PayPal's world class fraud investigators share 5 important actions you can take to help prevent identity theft and protect your account."
Very tempting, huh??
Welcome to the increasing risk of identity theft because victims don't pay attention!
And NEVER REPLY to a spam -- it just confirms that your email address is active, and you'll get even more when they sell your address to other spammers!
PayPal puts this Security Advisory in their legit emails:
When you log in to your PayPal account, be sure to open up a new web browser (e.g. Internet Explorer or Netscape) and type in the PayPal URL to make sure you are on the real PayPal website.
For more information on protecting yourself from fraud, please review the Security Tips in our Security Center.