Date discovered:24/10/2006

 General The goal is to get the following information:
    • Bank account

Phishing method:
    • Image with link

 Email Details From: support-reference10158037516bv@berliner-volksbank.de
Subject: eiliger Bescheid -Tue, 24 Oct 2006
Actual link: http://www.berliner-volksbank.de.navigation.jorder.cc/procedure.jsp
IP address:

The email is designed to avoid detection from Antispam and Antiphishing. Such techniques are:
    • The Body contains invisible Text.
    • The Body of the email contains HTML content.
    • The Body of the email is a picture.

This screenshot is how the phishing email looks like:

 Page Details Visible URL: http://www.berliner-volksbank.de.navigation.jorder.cc/procedure.jsp/
Actual URL: http://www.berliner-volksbank.de.navigation.jorder.cc/procedure.jsp/
IP address:

The phishing page will look like the following:

