Please Queue Here For The Next Phish
- Friday, February 12, 2010, 20:35
- Threat Research
This year is going to be a good year because the economy is recovering from the global financial crisis. How do we know this? It is obvious because the spammers are hard at work crafting up cunning phishing emails hoping to get their hands into the pockets of innocent web users. Today I was looking at an email sent into one of our many spam traps that disguised itself as a legitimate mail from Bank of America. A sample of the email is attached below:
How can I tell this is a phishing email? It is quite easy because when I hover the cursor over the link it gave the following web address:
This link clearly is not the Bank of America link and has been blocked by Sophos applications. But since the spammers spent some time crafting this up so I thought I would be a good sport and follow it to see what they are up to. Following the above link leads to the following page:
So far so good, the page looks like a replica of the real Bank of America web site. However as soon as I signed into the site with a random online ID, I (continue reading...)