
According to Sans Internet Storm, They have seen some signs of a new Phishing campaign like the Look at this Phishing campaign that went through a few weeks ago. At the time of writing that report they weren’t being resolved they now are being resolved making you look like you are logging into Facebook:
We’ve talked about why criminals want to use your account and why they need to get your passwords. I know they want to take control of your account for one reason or another but that is where the Facebook users need to keep watch on the URLS being displayed when you log into Facebook. If you did that then you are one step ahead of the nefarious criminals and can be at peace. Just like the Look at this campaign if you did visit those sites and given out your password it is strongly recommended to reset your password.
Update #1 — More Domains have been created areps.at, greenbuddy.be, vispace.be, whiteflash.be, and bestspace .be . All these domains resolve to 211.95.78.98 And can be determined by going to Http://www.dns.be or http://www.dns.at . It looks like the server is hosted in China. I wouldn’t be surprised if t here were even more domains going to be regestered that were in Belgium!! On a Side note it seems all these have a malicious hidden iframe in them so “DON”T Visit them unless you know what your doing“. I suspect that is how they are keep having people post to Facebook about these but that is only my theory!! (Thanks Sans Internet Storm for all those updates)
If you enjoyed this post, make sure to subscribe to my RSS feed, bookmark the store and joining the forumsIf you would like to make a comment, please fill out the form below.
You must be logged in to post a comment.
Bad Behavior has blocked 941 access attempts in the last 7 days.
© 2009-2010 Tech-Linkblog.com All Rights Reserved -- Copyright notice by Blog Copyright
Tech-Linkblog.com is Digg proof thanks to caching by WP Super Cache