Need help? Ask the community or hire an expert.
Go to Avira Answers
Target:Lloyds TSB
Date discovered:29/05/2007

 General The goal is to get the following information:
    • Bank account


Phishing method:
    • Image with link

 Email Details From: onlinesecurity@lloydstsb.com
Subject: Lloyds TSB Security Precaution { Your Online Access Update Is Required }
Actual link: http://www.terreamourciel.com/tam/components/com_extcalendar/...
IP address: 213.186.58.55


The email is designed to avoid detection from Antispam and Antiphishing. Such techniques are:
    • The Body of the email contains HTML content.
    • The Email contains Java content.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://www.terreamourciel.com/tam/components/com_extcalendar/...
Actual URL: http://www.terreamourciel.com/tam/components/com_extcalendar/...
IP address: 213.186.58.55


The phishing page will look like the following:



Description inserted by Dominik Auerbach on Wednesday, May 30, 2007

Back . . . .