Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Recent Posts

  • Calendar

    February 2012
    S M T W T F S
    « Jan    
     1234
    567891011
    12131415161718
    19202122232425
    26272829  
  • About Us
    Malware Blog > Phishers Spoof ‘The Paypal Blog’

    Jul29
    11:34 am (UTC-7)   |    by

    Paypal has launched a blog, known as The Paypal Blog, a forum for Paypal employees who want to share their opinions and insights. It also welcomes feedback, suggestions and questions from customers. Unfortunately, phishers have also taken advantage on the popularity of this blog.

    There is a spoofed article with title, Social Networking Comes to Paypal, as shown in Figure 1, that talks about giveaways or “FREE STUFF” for the first 100 customers to sign up on the provided spoofed login page located below the article (see Figure 2). It steals Paypal login user names and passwords of customers. To make the blog more convincing, it directs the users to the legitimate article Shop with Paypal at OfficeMax and American Eagle Outfitters, when users click on the text string full story in hyperlink form.

    This new trick of social engineering can trap unknowing users since it also uses a genuine-looking type of phishing URL, which is thepaypaiblog.com. What’s worse is that it also uses the picture and identity of known Paypal employee, a technique that is considered as Digital Forgery. The phishing URL has already been blocked by Web Classify Server (URL Filtering Service).





    Share this article
    Get the latest on malware protection from TrendLabs
    Email this story to a friend   Technorati   NewsVine   MySpace   Google   Live   del.icio.us   StumbleUpon




    Comments are closed.



     

    © Copyright 2011 Trend Micro Inc. All rights reserved. Legal Notice