Target:Lloyds TSB
Date discovered:29/06/2007

 General The goal is to get the following information:
    • Bank account


Phishing method:
    • URL link

 Email Details From: customer.security@lloydstsb.co.uk
Subject: Important Message From Lloyds TSB Bank

Visible link: https://www.lloydstsb-online.co.uk/customer/internetbanking/
Actual link: http://zooje.com/newDesign/Lloydstsb.com/lloyds/update.html
IP address: 82.165.168.71


The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
    • The Body of the email contains HTML content.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://zooje.com/newDesign/Lloydstsb.com/lloyds/update.html
Actual URL: http://zooje.com/newDesign/Lloydstsb.com/lloyds/update.html
IP address: 82.165.168.71


The phishing page will look like the following:


説明の挿入者 Dominik Auerbach の 2007年6月30日土曜日

戻る . . . .
https:// このウィンドウは暗号化されています。