|
Date Reported: 6th September 2010  |
Risk Level: MEDIUM-HIGH  |
|
|
 |
 |
|
Email Subject: |
Message Update:- Dear NatWest Customer |
|
Apparent Sender: |
National Westminister Bank Plc  |
|
Return Address: |
internetbanking@natwestbank.com  |
|
Email Format: |
HTML  |
|
URL of Web Content: |
http://praatpunt.be/components/Login.php  |
|
Anchor text of URLs: |
1) Log on
, 2) http://praatpunt.be/components/Login.php  |
|
Location: |
Location not available  |
|
Scam number: |
12492-171003-433312 |
|
Comments: |
- Email asks you to confirm/update/verify your account data at National Westminister Bank Plc by visiting the given link. You will be taken to a spoof website where your details will be captured for the phishers.
- National Westminister Bank Plc never send their users emails requesting personal details in this way.
- The anchor text appears as a legitimate URL, but don't be fooled - clicking on it will take you to a phishing site!
|
|
|
|
 |
 |
|
|
|
X-ANTIABUSE: This header was added to track abuse, please include it with any abuse report
X-ANTIABUSE: Primary Hostname - Force.ForceSP.Ro
X-ANTIABUSE: Original Domain - dsl.pipex.com
X-ANTIABUSE: Originator/Caller UID/GID - [99 99] / [47 12]
X-ANTIABUSE: Sender Address Domain - Force.ForceSP.Ro
X-ANTIVIRUS: AVG for E-mail 9.0.851 [271.1.1/3117]
CONTENT-TYPE: multipart/mixed; boundary="=======AVGMAIL-7632649A======="
...
|
|
 Click for full size image |
|
Website: |
|
|
|
|
 Click for full size image |