Monday, December 8, 2008

Another paypal phishing example

Hi all, last week, I found following mail in my junk-box :



If you look at the "source" of the message, you'll see that the link is not pointing to "paypal.com" but to "http://paypal.user-data-confirmation.com/index.htm"

And it turns out that the "user-data-confirmation.com" domain is owned by a "phishy" chinese company. If you want to know where they live:

Registrant:
Organization : LIUXIUYING
Name : LIUXIUYING
Address : JIANSHELU122
City : hangzhoushi
Province/State : zhejiangsheng
Country : china
Postal Code : 312062

Have you found similar mails in you mailbox ? Please let us know so we can warn other users about it !

Jan

Monday, December 1, 2008

Blog about banking phishing scams

Following blog serves as a repository for examples of phishing scams to help information security professionals, bankers, and consumers become familiar with the latest ploys used by phishers to try to gain access to sensitive information.

http://www.bankersonline.com/phishing/

It provides interesting answers to questions like "What response rate is needed for spam to make money?"

Check it out !

Jan

Google Adwords phishing


A few days ago, I received following mail in my inbox:

As the chance is small that Google would send such an e-mail to its customers, I decided to have a closer look at the links inside this message.

If you look at the html-source of the e-mail, you can see that it is not linking to google but to a site somewhere in China. (http://www.adwords.google.com.wwwgroup.cn/select/Login) Some further research shows that this domainname is owned by a certain "Mister gfdthy", so it would not be wise to pass your login details to these guys :)

Domain Name: wwwgroup.cn
ROID: 20081120s10001s66930159-cn
Domain Status: clientHold
Registrant Organization: gfdthy
Registrant Name: hrthhtfhrth