Search our Spoof Library...
Another Spoof Email and Phishing Scam report by MillerSmiles.co.uk - click this image to go to our home page.

CITIBANK: URGENT SECURITY NOTICE FOR CUSTOMERS
23rd August 2004

please forward any scams you've received to spoof@millersmiles.co.uk

Report Summary
Date Reported
23rd August 2004
Apparent Sender
Citibank
Return Address
Citi <online.support@citibank.com>
Subject
CITIBANK: URGENT SECURITY NOTICE FOR CUSTOMERS
Format
HTML
Method

Submitted form data on spoof webpage is forwarded to a local script.

Bogus Web Content?
Yes
URL of web content

http://www.usbank.ro/.https/.web.da-us/citibank.com/signin/scripts/login/user_setup.html

disguised as:

https://web.da-us.citibank.com/sigin/scripts/login/user_setup.jsp

traced to a server in Bucurest.

RISK LEVEL
MEDIUM
WARNINGS

1. The spoof email pretends to be from Citibank and requests verification of account details. Details are captured by a remote script at http://usbank.mvhosted.com/citibank/secure/script/login.php, traced to a server in Houston, USA.

2. Link opens a spoof popup page for entry of account details whilst a script loads the real Citi page in the backgound to make the whole thing seem more genuine.

3. Citibank never send out emails requesting details like this.

4. Note the bad grammar and layout of the email. A sure sign this is not professional, hence not a real bank, hence a scam!

 

" Dear CitiBank customer, Recently there have been a large number of identity theft attempts targeting Citibank customers."...

If you have received this email, please remember that it is very common for these email scams to be redistributed at a later date with only slightly different content or the same but with the fake page(s) hosted by a different provider. Also, once you have received one of these hoaxes, it is also common place to receive at least another one and usually a day or two after the first, although not necessarily from the same apparent sender.

 

The Spoof Email ...




 

The Spoof Webpage...




Stay informed of the latest Spoof Email Phishing Scams with either of our FREE alert services...
 

Stay informed of the latest Spoof Email Phishing Scams with either of our FREE alert services...

Email Alerts
Add your email address to our email alert service...
Subscribe

Privacy Policy

RSS News Feed
Tap into our Scam Alert service using your News Reader or Aggregator (including My Yahoo!).
Scam Alert News Feed

You can even put the latest alerts on your own web site.

Click here to learn more about RSS News Feeds and our Scam Alert Service!

Resources links - use one of the links below to access more information on Spoof Email & Phishing Scams.

Library of Spoof Email Phishing Scams

Brief guide to Phishing

Full article on spoof email scams

Spoof URL Checker

Link Checker

Browser URL Spoofing Vulnerability Check

Latest browser bug aids Phishing Scams - beware!

Destinations - other resources available on the MillerSmiles.co.uk web site.

Click the arrow to return to previous page

Home

Guides...

Book Terminology

How to identify a first edition book

Auction Watcher

List of the main Auction Sites world wide