Target:Banca Fideuram
Date discovered:15/10/2006

 General The goal is to get the following information:
    • Bank account


Phishing method:
    • Image with link

 Email Details From: supprefnum9129480id@bancafideuram.it
Subject: servizi internet
Actual link: http://bancafideuram.it.fideuram.servizi.eaturingap.hk/start.html
IP address: 219.254.228.105


The email is designed to avoid detection from Antispam and Antiphishing. Such techniques are:
    • The Body contains invisible Text.
    • The Body of the email contains HTML content.
    • The Body of the email is a picture.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://bancafideuram.it.fideuram.servizi.eaturingap.hk/start.html/
Actual URL: http://bancafideuram.it.fideuram.servizi.eaturingap.hk/start.html/
IP address: 219.254.228.105


The phishing page will look like the following:


Description inserted by Dominik Auerbach on Sunday, October 15, 2006

Back . . . .