Email Scam: Targeting Bendigo Bank Customers
30 Nov 2007 - A new phishing email scam targeting Bendigo Bank customers is now circulating on the Internet.
The story is the same as other phishing scams. You are asked to log on to a fake website in order to "verify your detail". Internet users are warned not to click on the link.
|
|
SAMPLE OF PHISHING EMAIL
Received: from SPOOFED WEBSITE (unknown [88.253.147.108])
Message-ID: <001301c8339d$02ce0f80$0141d864@orcun>
X-Mailer: Microsoft Outlook Express 6.00.2900.3000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.3000
Date: Fri, 30 Nov 2007 22:04:43 +0200
From: "Phyllis Sarasija" <SPOOFED EMAIL ADDRESS>
Subject: Please Update Your Profile - Personal Information Error
Bendigo Bank is constantly working to increase security for all e-banking users. To ensure the integrity of our online payment system randomly selected accounts are placed under an advanced updating process based on merchant accounts/bank relations and on-file credit cards.
To lift up this restriction, you have to complete our verification process. All restricted accounts have their billing information unconfirmed, meaning that you may no longer send money or withdraw cash from your account until you have updated your billing information on records. To initiate the update confirmation process please follow the link below and fill in the necessary requirements:
Click here. [ Leads to http://www.bendigobank.com.au.iwimage.com/banking/BBLIBanking/ - a phishing website ]
* Your account is not suspended, but if in 48 hours after you receive this message your account is not confirmed we will terminate your Bendigo e-banking subscription.
* If you received this notice and you are not an authorized Bendigo Bank account holder, please be aware that it is in violation of Bendigo Bank policy to represent as an Bendigo Bank user. Such action may also be in violation of local, national and/or international law.
* Bendigo Bank is committed to assist law enforcement with any enquiries related to attempts to misappropriate personal information with the intent to commit fraud or theft.
* Information will be provided with the request of law enforcement agencies to ensure that perpetrators are prosecuted to the full extent of the law.
We apologize in advance for any inconvenience this may cause you and we would like to thank you for your cooperation
Sincerely,
Bendigo Bank Customer Service
Please do not reply to this e-mail. Mail sent to this address will not be received.
Copyright 2007 Bendigo Bank Limited, ABN 11 068 049 178 AFSL No 237 879.
Type of Scam: Phishing
Phishing
is a scam that uses fraudulent emails to entice people to surrender
their banking or credit card details. The emails are crafted to look
like a legitimate email from a financial institution and often contain
links to authentic looking but fraudulent websites. The rule of thumb
is that a financial institution will never ask you for your account
details via email. If in doubt, contact the institution by phone.
What NOT to do
Do
not ever click on the link in the email to login. By supplying your
login details to the fraudsters, they will be able to clean out your
account within minutes.
How To Detect A Phishing Scam
These
scam emails tend to look very authentic, even including the bank's logo
and website addresses. The important thing to look out for is the link
that the fraudsters want you to click to log in. If you place your
mouse cursor over the link, you will see the real underlying URL the
link is sending you to.
|