PhishTrackers.com

Report Phishing Scams Easily & Anonymously


Regarding Account Missuse (shanghai city, China)

Report# A213

Reported on: Friday, 25 January, 2008  19:47
Updated On: Tuesday, 15 May, 2012  14:08
Reply to: (Use contact form below)
Date Reported 25th February 2005
Apparent Sender WAMU

Return Address WAMU < info@wamu.com >


Subject Regarding Account Missuse
Format HTML
Method Spoof email links to a spoof webpage where victim is prompted to enter their details believing the site is genuine. Details are then forwarded to a local script and captured.


Bogus Web Content? Yes
URL of web content http://210.22.107.248/l


RISK LEVEL MEDIUM
WARNINGS 1. Email claims to be from WAMU asking you to confirm your account data by clicking on the link. You will be taken to a spoof login page where your details will be captured by the phishers.

2. WAMU never send users emails requesting details in this way.

3. URL of spoof website disguised as " https://internetbanking.wamu.com/l ". This looks secure (https), but is NOT!

4. Real URL looks nothing like WAMU!

5. Website traced to shanghai city, China.






" Dear Wamu Member, We recently have determined that different computer have logged into your Online Banking
account, and multiple password failures were present before the logons."

If you have received this email, please remember that it is very common for these email scams to be redistributed at a later date with only slightly different content or the same but with the fake page(s) hosted by a different provider. Also, once you have received one of these hoaxes, it is also common place to receive at least another one and usually a day or two after the first, although not necessarily from the same apparent sender.



The Spoof Email ...



Important Security Issue

Dear Wamu Member,

We recently have determined that different computer have logged into your Online Banking
account, and multiple password failures were present before the logons.


We now need you to re-confirm your account information to us. If this is not completed
within 24h , we will be forced to suspend your account as it may have been comrpomised.

We thank you for your cooperation in this matter.


https://internetbanking.wamu.com/l

Thank you for your promt attention to this matter. Please understand that this is a security
measure meant to help protect you and your account.

We apologize for any inconvenience.

If you choose to ignore our request you leave us no choice but to temporarily suspend your
account.

Thank you for using WAMU! The WAMU Team





The Spoof Website ...

Spoof website not online at time of report...