[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Full-Disclosure] Fake ebay password stealer



       

Following on the heels of the "very good looking" microsoft security patch
worm, i am now in posession of an even more convincing "Ebay Request" to
reconfirm your credit card number, PayPal account, password, etc.   This
appears to be an excellent fake and we can expect many people to be
tricked.

To see how good it looks, Checkout this image.  (It doesn't look like an
image but it is actually a JPG which hides a link to the attacker's
server.)  Many people will be fooled.  The url is fake (it is just a
picture after all).  Clicking on the real email takes the user to
http://211.170.97.202:5801/%73%65%63%75%72%69%74%79/%69%6E%64%65%78%2E%68%74%6D





(Embedded image moved to file: pic18757.gif)


tc





-------------------------------------------------
This mail sent through IMP: http://horde.org/imp/

Attachment: pic18757.gif
Description: pic18757.gif