Anti-Phishing:eBay-Update Your Billing Information

Another ‘social engineering’ phish attempt, targeting eBay customers. The message has an eBay header and footer, a convincing sender and nice (at a first glance) URL. They are all spoofed:



Summary 
Email subject: ‘Update Your Billing Informations’ 
Scam target: eBay customers  
Distribution medium: a HTML email (click here for the HTML code of the message itself)  
Sender: aw-confirm@ebay.com
Sender spoofed? Yes 
Scam call to action: ‘During our regularly scheduled account maintenance and verification procedures, we have detected a slight error in your billing information. … Please update and verify your information by clicking the link below…’ 
Scam goal: Getting victim’s ebay and paypal usernames/passwords, credit/debit card information, bank account information, SSN, contact (name, address, phone, etc.) information  
Call to action format: URL link 
Visible link:  h++ps://scgi.ebay.com/saw-cgi/eBayISAPI.dll?RegisterEnterInfo
Called link:  h++p://feedback-required-ebay.us/ebayHelpBilling/pages-ebay/aw-cgi/eBayISAPIdll/ 
Phish site on :  www. feedback-required-ebay.us


http://www.antiphishing.org/phishing_archive/07-27-04%20Ebay%20(Update%20Your%20Billing%20Informations).html


 

Leave a Reply