Tuesday, November 11, 2008

Bank Of America Phishing Website

Have noticed some phishing websites hosting Bank Of America Website Pages with a Login page that captures User's login and Password details.

The following websites ask you which city your account is located then your customer ID and then on the next page it asks you for password which it captures and sends it to the phishers.
The following websites are standalone phishing website and don't host any exploits or malware in our tests.

The IP Addresses hosting the Phishing websites are :
194.154.164.82
78.110.173.52
78.110.166.195
77.92.83.1
194.154.164.82

The Urls of the Phishing Website(Don't enter any details on these sites):

hxxp://updtserv.com/d/www.bankofamerica.com/BankofAmerica%20OnlineID/cgi-bin/ssl.login.controller/SignIn
hxxp://kiasalar.com/newsite/mambots/onlineid.1.bankofamerica.com/cgi-bin/sso.login.controller/bankofamerica/index.html
hxxp://www.onlinemafya.com/avatar/help/2/www.BankofAmerica.Com/BankofAmerica.Com/BankofAmerica.Com/bankofamerica/signon.php?section=signinpage&update=&cookiecheck=yes&destination=nba/signin
hxxp://baymetalsinc.co.uk/admin/bankofamerica.com/index.htm
hxxp://updtserv.com/d/www.bankofamerica.com/BankofAmerica%20OnlineID/cgi

-Abhi

Powered by ScribeFire.

No comments: