Aanmelden
Welkom,
Language:
Nederlands
English
Deutsch
Français
Español
Italiano
Nederlands
Português
Türkçe
Русский
日本語
简体中文
繁體中文
한국어
Meer informatie over ons bedrijf en onze producten kunt u vinden op onze
internationale website
.
Thuis
Zakelijk
Ondersteuning
Contact
Search
Summary
Full description
Statistics
Target:
Citibank
Date discovered:
12/11/2007
General
The goal is to get the following information:
• Bank account
• Credit card
• Personal data
Phishing methods:
• 'Click here' link
• 'text' link
Email Details
From:
service@citibankcards-us.com
Subject:
Official Messafe From Citibank.com
Visible link:
Click here to Renew now
Actual link:
http://220.80.120.44:8080/citibank.com/service/login.htm?ID=********...
IP address:
220.80.120.44
The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
• The Body of the email contains HTML content.
This screenshot is how the phishing email looks like:
Page Details
Visible URL:
http://220.80.120.44:8080/citibank.com/service/login.htm?ID=********...
Actual URL:
http://220.80.120.44:8080/citibank.com/service/login.htm?ID=********...
IP address:
220.80.120.44
The phishing page will look like the following:
Description inserted by Dominik Auerbach on maandag 12 november 2007
Terug
.
.
.
.
Mijn Account
https
://
Dit venster is voor uw veiligheid gecodeerd.
Aanmelden
Wachtwoord vergeten
Reset wachtwoord
Mijn profiel
Producten
Betaalgeschiedenis
Meldingen
Wachtwoord resetten
Contact
Afmelden