PDA

View Full Version : want to see a FAKE paypal login site?



sdowney717
December 30th, 2011, 10:02 PM
http://mysecretjordan.com/paypal.com/#

I got this in my junk mail folder.
If you notice the link 'mysecretjordan; is absurdly stupid for anyone to get suckered in on this. Still people click away without thinking.

t0p
December 30th, 2011, 10:27 PM
Firefox gave the link a Fake Website! warning. Nice to see that Mozilla (Google? Someone else?) is on the ball with this kind of crap. The human predisposition to gullibility makes this kind of warning A very very Good Thing.

Just wondering: what happens if you plug this url into IE?

Gone fishing
December 30th, 2011, 10:54 PM
Just wondering: what happens if you plug this url into IE?

Nothing

duncan12
December 30th, 2011, 11:07 PM
Clicking that on Google Chrome gives a "Warning: Phishing Detected" error :)

t0p
December 30th, 2011, 11:26 PM
Nothing

What, like nothing at all? No warning? It doesn't give you a "login failed" message and a redirect to a real login page? It doesn't act as a man-in-the-middle, logging everything you do to some nefarious fraudster's computer? Does entropy stop and the universe stops frozen like in aspic? Something must happen, even if it's just a rickroll.

It's bizarre that phishing attacks like this still happen. Even more bizarre if the presence of "mysecretjordan.com" appears urls. How can there still be folk out there who don't look to see where a link's gonna take them.

I think a phishing attack would be more effective if the attacker just used an IP address. But if people don't get a teensy clue from an url like that... stomm, pass the kool-aid this way...

crazy bird
December 30th, 2011, 11:40 PM
I got this (it is in Dutch):http://img847.imageshack.us/img847/581/selectie013012201123385.png

Frogs Hair
December 31st, 2011, 03:55 AM
Opera

duncan12
December 31st, 2011, 07:20 AM
I logged into the fake site with a random email and password and it came up with
We are currently performing regular maintenance of our security measures. Your account has been randomly selected for this maintenance, and you will now be taken through a series of identity verification pages.

and asked for all your details, credit card number, credit card PIN, address, date of birth, everything.

Yeah... no

Lucradia
December 31st, 2011, 08:14 AM
Nothing

*cough*

http://i.imgur.com/A7x78.jpg

IE9 64-Bit

HappinessNow
January 1st, 2012, 12:41 PM
http://mysecretjordan.com/paypal.com/#

I got this in my junk mail folder.
If you notice the link 'mysecretjordan; is absurdly stupid for anyone to get suckered in on this. Still people click away without thinking.

received this notice in Samsung Series 5 Chromebook:

http://2.bp.blogspot.com/-BHz2ndiix8U/TwBFsZdzVPI/AAAAAAAAPZo/tMB70XHuSTc/s640/screenshot-20120101-033550.png (http://2.bp.blogspot.com/-BHz2ndiix8U/TwBFsZdzVPI/AAAAAAAAPZo/tMB70XHuSTc/s1600/screenshot-20120101-033550.png)

forrestcupp
January 1st, 2012, 09:47 PM
It actually worked without warning with Opera Mobile on my Android tablet.

Gone fishing
January 3rd, 2012, 10:13 PM
*cough*

No warning when I went to the site with IE 9 64 bit.

Lucradia
January 3rd, 2012, 10:24 PM
No warning when I went to the site with IE 9 64 bit.

WorksForMe ™

Gone fishing
January 4th, 2012, 09:54 AM
WorksForMe ™

Probably - however, when I tried Firefox blocked IE didn't - no doubt IE was a little slow off the mark and when I try now with IE the site seems to have been taken down.

However, that's the point, phishing sites are likely to be discovered and taken down quite quickly - it's important that the browsers block quickly, IE didn't.