需要修復電腦?
聘請專家
Target:Cahoot
Date discovered:11/12/2007

 General The goal is to get the following information:
     Bank account
     Personal data


Phishing method:
     Image with link

 Email Details From: technicalsecurity@cahoot.co.uk
Subject: Security Alert: Unable to verify your records online -- Error 109
Actual link: http://primerapuertovaras.cl/portal/includes/js/tabs/mod.php
IP address: 216.180.241.33


The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
     The Body of the email contains HTML content.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://primerapuertovaras.cl/portal/includes/js/tabs/mod.php
Actual URL: http://primerapuertovaras.cl/portal/includes/js/tabs/mod.php
IP address: 216.180.241.33


The phishing page will look like the following:



說明撰寫者 Dominik Auerbach 開啟 2007年12月11日星期二
說明更新者 Dominik Auerbach 開啟 2007年12月12日星期三

返回 . . . .
https:// 為了你的安全,此視窗已加密。