EUTM Invoice Scams: German Courts deliver judgement against fraudsters.

In a recent ruling by the German Courts, three defendants were found guilty of fraud for sending scam invoices to EUIPO consumers. The actions of the perpetrators serve as a stark reminder of how sophisticated modern day fraud has become, and the necessity of vigilance against individuals who attempt to disguise their fraud as routine communications.

The defendants sent invoices, largely mimicking official correspondence from the European Intellectual Property Office, under the fake business name “IP Register UG”. These invoices targeted IP users and featured misleading elements like the letterhead name “European IP Register” and the subject line “Data publication from Office for Harmonisation in the Internal Market (OHIM)”- OHIM being the EUIPO’s former name. The fraudsters unlawfully obtained €200,000 from the scam.

The defendants were convicted of commercial gang fraud by the Munich Court. Each defendant received a prison sentence of 1 year and 10 months, suspended by 3 months’ probation. In addition, the Court ordered the compensation of the €200,000 proceeds of their crime, to be paid to the victims.

This ruling confirms that sending misleading invoices to IP users constitutes criminal fraud, marking an important precedent. The German ruling follows a Swedish judgement handed down in 2018 in which we saw four individuals convicted of attempted and completed gross fraud. In this case, the men behind the Swedish scam sent fraudulent trade mark renewal invoices to IP users. The Swedish District Court initially held that it was unable to find the defendants guilty of completed fraud as this would require proof of victims of the scam making the payment due to actually being misled. It stated that it could not be shown beyond reasonable doubt that some of the recipients understood that it was a case of fraud, but payed the invoices anyway. The Court of Appeal rightly reversed the decision and increased the sentences imposed.

Both the Swedish and German cases highlight the serious legal consequences of invoice scamswith the finding of criminal fraud in the German decision acting as a welcomed development towards stronger protection for IP users and a deterrent to scammers. However, with a growing number of IP-related scams it is imperative that IP users remain vigilant of copy-cat scammers or like-minded wrongdoers. Similar scams have been running at a national level, and offices such as the Intellectual Property Law Office of Ireland have issued warnings. The necessity of IP users remaining vigilant of these scams is clear.

IP users should look out for communications from legal business structures purporting to be a genuine IP office or legitimate business offering services. The fraudsters appear primarily to be targeting intellectual property rights applicants and owners through fraudulent invoices or payment requests. Communications will mimic the names and logos of legitimate IP bodies and use recognisable symbols. A searchable list of scam letters are published by the EUIPO here.

Europol has advised of the following suspicious elements to look out for:

  • a displayed name that is different to the return address;
  • information about a change of bank accounts;
  • badly written body copy and message contents;
  • infected attachments or suspicious links;
  • language that creates a sense of urgency


We urge IP users to carefully review any communications related to IP matters and verify the authenticity of payment requests. If you have any concerns, please feel free to contact us.

Related

Privacy Settings

Essential
Privacy Settings
Saves the current privacy settings.
Retention period: This cookie will remain for 30 days.
PHP SESSION ID
Saves the current PHP session.
Retention period: This cookie will only remain for the current browser session.
Performance and Analytics Cookies
These technologies allow us to analyze website usage in order to measure and improve performance.
Google Analytics
This is a web analytics service. It allows the user to measure advertising ROI, track flash, video and social networking sites and applications.
Provider: Google Ireland Limited - Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland
Technical name: _ga,_gat_gtag_UA_120928533_6,_gid
Show more details

Data Purposes

This list represents the purposes of the data collection and processing.
- Marketing
- Analytics

Technologies Used

- Cookies
- Pixel

Data Collected

This list represents all (personal) data that is collected by or through the use of this service.

- App updates
- Click path
- Date and time of visit
- Device information
- Downloads
- Flash version
- Location information
- IP address
- JavaScript support
- Pages visited
- Purchase activity
- Referrer URL
- Usage data
- Widget interactions
- Browser information

Legal Basis

In the following the required legal basis for the processing of data is listed.

- Art. 6 para. 1 s. 1 lit. a GDPR

Location of Processing

- European Union

Retention Period

The retention period is the time span the collected data is saved for the processing purposes. The data needs to be deleted as soon as it is no longer needed for the stated processing purposes.
The Retention Period depends on the type of the saved data. Each client can choose how long Google Analytics retains data before automatically deleting it.
Data Recipients

- Google Ireland Limited, Alphabet Inc., Google LLC

Data Protection Officer of Processing Company

Below you can find the email address of the data protection officer of the processing company.

https://support.google.com/policies/contact/general_privacy_form

Transfer to Third Countries

This service may forward the collected data to a different country. Please note that this service might transfer the data outside of the EU/EEA and to a country without the required data protection standards. If the data is transferred to the US, there is a risk that your data can be processed by US authorities, for control and surveillance measures, possibly without legal remedies. Below you can find a list of countries to which the data is being transferred. This can be for different reasons like storing or processing.

United States of America,Singapore,Chile,Taiwan

Click here to read the privacy policy of the data processor https://policies.google.com/privacy?hl=en

Click here to opt out from this processor across all domains https://tools.google.com/dlpage/gaoptout?hl=de

Click here to read the cookie policy of the data processor https://policies.google.com/technologies/cookies?hl=en

Storage Information

Below you can see the longest potential duration for storage on a device, as set when using the cookie method of storage and if there are any other methods used.

- Maximum age of cookie storage: 2 years

  Accept all
Please upgrade your browser. This website is not compatible with Internet Explorer.