Being in the internet business, I see these types quite regularly caught in our spam/virus filtering servers, this one somehow made it into my mail box. As you can imagine, I know not to provide any type of login or personal info from unsolicited emails. And I also know NOT to use MS Explorer as my primary web browser. You'll see why later....
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEj3QAcD7ZPfJg1BEzRS_i1igGKoV9cKWcEwHm2OkYJqmMTojVf5LCPj_NzWwd9pq2wLFtMCCRIo9OmBk3_Fusvnmp292__CY4_8o88F41SywBb1ghIUurHpFn40qc9ZfAO1hlOxUKsBzqI/s400/web_phisher_suck3.gif)
I know this is suspect immediately because the domain name isn't paypal.com. If you look carefully, it is database-confirmation.com They evil bastards just created a subdomain account using paypal.database-confirmation.com - as most people will just see paypal in the web address and click away.
So knowing this is a phishing expedition, I copied the link and opened up my Mozilla Browser which I consider a far superior browser for surfing the internet. Here's the screen message that came up - Mozilla is telling me that I shouldn't even thinking about connecting to that website - it's already been reported as a web forgery! I back out and am relieved that I did not unknowingly give my paypal log in details.
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgLxPpj200RKU_kK5MdPsVhZEkMmiOlroxOzo3QmVMeVOVUPZ6FzLhENDxOjCsNkfhe1vtQgcmGAkJwttmsc7pb0u_lQf8cXS_ZnQFbBfJdRR2MeiEpPlizUOy492c6eNrEt1h-a0cn8s0/s400/web_phisher_suck2.gif)
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEj6GpQ6AcN0P3aofN7arIiMVzmgEn3E9JyGwZ0z22rqLesKjJXK78Dl-hJ7SFeJTGD0SwSljHsyJiSF6kgfYceVWYjiGVfZrfDMwaAdydCrcOLz9M0nnGytKXh_Tg9Kg4RxwSN9q3pp4Qs/s400/web_phisher_suck1.gif)
A new window appears that tells me there was an error with my log-in. So I did what everyone does, I re-type my info again - exactly the way I did it the first time - and have now confirmed to the evil bastards that yes, in fact, these are my PayPal credentials. By the time I "figure out" that the error message is going to reappear every time I enter in the same credentials, the evil bastards have cleaned out my Paypal account and are halfway to China!
Funny, I should say that, I also did a whois look up on the domain name: database-confirmation.com and see that is registered and owned by one Pan Wei wei in Beijing, China.
So a lesson to the wise - download Mozilla's browser for free and make it your primary browser
http://www.mozilla.com
And never ever provide critical account information just because someone sends you an urgent email telling you to do so.
![](http://signatures.mylivesignature.com/54485/398/687D4B6D86B5A836FEDBEAB22A59625D.png)
No comments:
Post a Comment