So, this is what happened and how i was tricked, because of the contest i'm currently doing alot of paypal traffic. suddenly today i get a paypal phishing email(i do find this a bit odd to be honest though). First thing is the account in question actually isn't my current active account, but I was worried at first it was talking about my active account. So i go directly to paypal, login and no warnings. check the email and see it's talking about my old account. log into that one on paypal, and no warnings there. so i change that accounts password, and go back to the email(this is not an excuse for my actions, had i better inspected the email i would have caught the fact before foolishly attempting to use their links).
This is the part that i missed, and is why i so casually made this mistake(and actually why i'm making this post), When i get an email, i always double check where the link is actually going to send me, this one was going to send me to:
paypal.com.webapp/somepage?bunchofnumbershere.
I made a grave mistake in not realizing paypal is the subdomain, and com is the domain. i just casually thought "webapp" was the page, and not the actual .com address(what is this part of an address called anyway?). anyway, it made me realize that this form of phishing is now possible, it's much easier in my opinion to pass off a fake url since now com is a legitimate domain name, something like "paypal.com.com" would have made me take a double look, but i casually glanced over the "webapp" part, and didn't give it a second thought.
After this i took a longer look at the format of the email, and realized further what a fool I was, as there were several other signs that should have tipped me off.
But anyway, i found this form of url faking as a bit scary, and now I don't think i'll make a similar mistake in the future. Hopefully reading this might save someone else in the future as well.