Phishing Scams and Phishing Reports at MillerSmiles.co.uk

     
 
Home
Search
Archives
News
Submit Scam
Articles
F.A.Q.
Forum
About Us
Contact Us
Links
 


 

Important: digital certificate issued

Bank of America


 

 
Scam Report
Date Reported: 23rd March 2008 Whats this? Risk Level: MEDIUM Whats this?
 
Details
 
Email Subject:
 Important: digital certificate issued
Apparent Sender:
 Bank of America Whats this?
Return Address:
 < customer_service. id9139186cert@bankofamerica.com > Whats this?
Email Format:  HTML Whats this?
 
URL of Web Content:
 http://direct-certs.bankofamerica.com.kaodl. la/direct/certpickup.asp? session=410973069579064395714 264633586595142656519942053 Whats this?
Location:
 DC, US Whats this?
 
Scam number:
 aa-6755
 
Comments:
  • Email asks you to confirm/update/verify your account data at Bank of America by visiting the given link. You will be taken to a spoof website where your details will be captured for the phishers.


  • Bank of America never send their users emails requesting personal details in this way.


  • The REAL URL of the spoof website is disguised as "http://direct-certs.bankofamerica. com/direct/certpickup.asp?session= 41097306957906439571426463358659514 2656519942053".


  • The spoof website this email links to was not online at time of this report, but variations of the scam which link to working websites are bound to exist, so be wary! The website may have been taken down or disabled by the hosts, but quite often these websites are hosted on the personal computer of the phishers, so may only be online at certain times.


  • The REAL URL of the spoof website has been chosen to look very similar to the actual Bank of America URL. Do not be fooled!
     
Content
 
 
 
"Please have your Bank of America Direct login information readily available when completing this process. "

Dear Bank of America Direct User:
Our records indicate that a new digital certificate has been issued to your Bank of America Direct user ID.
Digital certificates are computer-based records issued to individual user IDs that allow Bank of America Direct to validate your identity and protect your information from unauthorized access. In order to access Bank of America Direct, you must use a valid digital certificate.

Installation Instructions
To install your newly-granted digital certificate, please access the Digital Certificate Pick-Up site at:

http://direct-certs.bankofamerica. com/direct/certpickup.asp? session=4109730695790643957 14264633586595142656519942053

Please have your Bank of America Direct login information readily available when completing this process.
Should you have any questions regarding this process, please consult your Company Administrator or contact your regional customer support center for further assistance.

Sincerely,
Bank of America Direct Technical Care Center

NOTE: This is an automatically generated communication.
 
Website:    
 
Spoof website not online at time of report...

 
  See our most recent scam reports Browse our scam report archives Search


Please send us any scam/phishing emails you have received by reporting them here

For access to our huge blacklist of domain names and to sign up to our live feed of ALL the scams we receive please take a look at our Honeytrap service

If you have received the email below, please remember that it is very common for these email scams to be redistributed at a later date with only slightly different content, such as a different subject or return address, or with the fake webpage(s) hosted on a different webserver.

We aim to report every variant of the scams we receive, so even if it appears that a scam you receive has already been reported, please submit it to us anyway.