Need help? Ask the community or hire an expert.
Go to Avira Answers
Target:Paypal
Date discovered:10/07/2006

 General The goal is to get the following information:
    • Credit card
    • Personal data
    • Paypal account


Phishing method:
    • 'text' link

 Email Details From: service@paypal.com
Subject: Reminder: Confirm Your Credit or Debit Card

Visible link: Log in
Actual link: http://googig.com/www.paypal.com/cgi-bin/
IP address: 203.146.140.180


The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
    • The Body of the email contains HTML content.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: https://www.paypal.com/cgi-bin/webscr?cmd=_login-run
Actual URL: http://googig.com/www.paypal.com/cgi-bin/
IP address: 203.146.140.180


The page contains the following trick:
    • Forged address bar


The phishing page will look like the following:




Description inserted by Dominik Auerbach on Monday, July 10, 2006

Back . . . .