📜 ⬆️ ⬇️

Phishing emails for Russian Standard Bank

Today I received an interesting letter from the Russian Standard Bank on the issue of the WebMoney MasterCard Standard card. Everything would be fine, but I have no such card. I click on the “Download” button next to (!) With the application and it flips me to the Yandex viewer viewer and asks me to enter a password. Almost slumped))



After clicking on the button "Download" throws here:


(Reference: document-viewer-yandex-verification-user-05918645636468694.e-email.org )
')
Then it turned out that when you click on any link on the page (and not just in the letter), it jumps to the authorization page. Looking at the source of the page, I found a wonderful code in the body of the letter:


<area shape="rect" coords="0,0,3000,3000"
href="http://document-viewer-yandex-verification-user-05918645636468694.e-email.org/?doc=CardStatement.doc&login=login@yandex.ru" target="_self"
alt="">


Everything is very simple. In the body of the letter inserted a card that covers the entire screen. When you click on any place throws on the authorization form.
Be careful and warn your loved ones.

ps In Yandex wrote, hosters, too,

Source: https://habr.com/ru/post/177493/


All Articles