Target:National Association of Federal Credit Unions
Date discovered:10/10/2006

 General The goal is to get the following information:
    • Credit card
    • Personal data

Phishing method:
    • URL link

 Email Details From: support@nafcu.org
Subject: National Association of Federal Credit Unions - Your account has been limited.

Visible link: https://www.nafcu.org/members/update.php
Actual link: http://astaphan.dm/.NAFCU/Account-Information//
IP address:

The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
    • The Body of the email contains HTML content.

This screenshot is how the phishing email looks like:

 Page Details Visible URL: http://astaphan.dm/.NAFCU/Account-Information//
Actual URL: http://astaphan.dm/.NAFCU/Account-Information//
IP address:

The phishing page will look like the following:

説明の挿入者 Dominik Auerbach の 2006年10月10日火曜日

戻る . . . .
https:// このウィンドウは暗号化されています。