Flipkart.com
$1.99/mo Web Hosting
Save some Cold, Hard Cash! $7.49/yr domains

Sunday, October 23, 2011

Fake Yahoo Greetings leading to Phishing Page

I just got a mail from the address "greetings@yahoo.com"
To Adress was "card-39452073507@yahoo.com"
I may be in BCC

Mail was like


To view your eCard, choose from the options below.

Click on the following link.

http://www.yahoo.com/view.pd?i=5148684822&m=3187&rr=y&source=yahooe999

OR

Copy and paste the above link into your web browser's "address" window.

Thanks for using Greeting Cards on Yahoo.com
http://www.yahoo.com

I copied and paste link URL it didn't work.. so I thought it's something wrong.. I didn't click direclty.. copied href link from the given text..

it's like

http://www.yahoo.com.l-view.pd.id-7.5b.x4.pq.lr.v2.w0.neuetrends.ch/subdomain/whois.php?a%63ti%6Fn=l%6F%6Fkup&a%63c%6Funt=www.yahoo.com%3C/ti%74le%3E%3Cf%72ame%73et%3E%3Cf%72ame%20%73%72%63%3D%68%74%74%70%3A%2F%2F%71%6C%2E%69%732%75%2E%64%65%2F%3E%3C/f%72ame%3E%3Cnof%72ames%3E

so it's so confusing link.. not only confusing but also a good try to hide original URL by keeping yahoo.com. something something as sub domain..

I read yahoo official greeting site about alerts.. They are saying..

"Security Alert: Yahoo! Greetings will never ask you to reset your Yahoo! Greetings account password through an email. If you receive an email requesting you to reset your password, do not open it or click on any links contained within the email. "
For more : http://www.yahoo.americangreetings.com/emailprotection/index.pd

so do not click on such page or provide username and password other than official login link of yahoo..

you may loose your account and also related information too..

Take Care while surfing.

No comments:

Post a Comment