需要修復電腦?
聘請專家
Target:Comerica
Date discovered:16/10/2007

 General The goal is to get the following information:
    • Bank account
    • Credit card


Phishing method:
    • 'Click here' link

 Email Details From: alerts@comerica.com
Subject: Online Security Form

Visible link: click here
Actual link: http://219.250.8.172/webbanking.comerica.com/CONSUMER/LOGIN/
IP address: 219.250.8.172


The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
    • The Body of the email contains HTML content.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://219.250.8.172/webbanking.comerica.com/CONSUMER/LOGIN/
Actual URL: http://219.250.8.172/webbanking.comerica.com/CONSUMER/LOGIN/
IP address: 219.250.8.172


The phishing page will look like the following:



說明撰寫者 Dominik Auerbach 開啟 2007年10月16日星期二

返回 . . . .
https:// 為了你的安全,此視窗已加密。