需要修復電腦?
聘請專家
Target:Visa
Date discovered:06/11/2006

 General The goal is to get the following information:
    • Credit card


Phishing method:
    • URL link

 Email Details From: verify@visa.com
Subject: [] Attention! Your VISA Credit Card has been violated!

Visible link: www.usa.visa.com/personal/security_module/ws/update_info_db/visa.html
Actual link: http://www.google.pt/url?sa=U&start=4&q=http://bridesheadonline.com/%...
IP address: 209.160.70.25


The email is designed to avoid detection from Antispam and Antiphishing. Such techniques are:
    • The Body of the email contains HTML content.
    • The Email contains Java content.


The phishing page contains the following trick:
    • Link redirection by means of a well known domain name



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://bridesheadonline.com/%20/usa.visa.com/index.html
Actual URL: http://bridesheadonline.com/%20/usa.visa.com/index.html
IP address: 209.160.70.25


The phishing page will look like the following:


說明撰寫者 Dominik Auerbach 開啟 2006年11月6日星期一

返回 . . . .
https:// 為了你的安全,此視窗已加密。