-IDEA- New Phishing Theory menu

User Tag List

Results 1 to 13 of 13
  1. #1
    Login Error's Avatar Active Member
    Reputation
    61
    Join Date
    Feb 2008
    Posts
    260
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)

    -IDEA- New Phishing Theory

    Since the WoTLK phishers that were once epic are now obsolete, and account verification phishers fail so horribly, I think it's about time we start using a new kind of phisher.

    I made this email template to supplement the idea.

    Subject: World of Warcraft - Account Change Notice

    Hello,

    This is an automated notification regarding the recent change(s) made to your World of Warcraft account .

    Your password has recently been modified through the Account Management website.

    *** If you made this password change, please disregard this notification.

    However, if you did NOT make changes to your password, we recommend you reset your password at YOUR SITE HERE.

    If you are unable to successfully retrieve your password using the automated system, please contact Billing & Account Services at 1-800-55-BLIZZARD (1-800-552-5499) Mon-Fri, 8am-8pm Pacific Time or at [email protected].

    Account security is solely the responsibility of the accountholder. Please be advised that in the event of a compromised account, Blizzard representatives typically must lock the account. In these cases the Account Administration team will require faxed receipt of ID materials before releasing the account for play.

    Regards,

    The World of Warcraft Support Team
    Blizzard Entertainment
    Blizzard Support
    They would click the link, which would be masked as an official-looking URL and would be redirected to your phishing page. They would come to a page asking for account name, password, full name, CD keys, e-mail account and SQA.

    I'm not sure if it would work, but I figured I'll never find out if I didn't share the idea. If you don't like the idea, hopefully you can atleast appreciate the irony...

    -IDEA- New Phishing Theory
  2. #2
    Henessy's Avatar Contributor
    Reputation
    104
    Join Date
    Sep 2008
    Posts
    1,284
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Cool Idea! +Rep.

  3. #3
    Tierman's Avatar Active Member
    Reputation
    40
    Join Date
    Jan 2009
    Posts
    343
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Cool. I'm sure it could be done easily.

  4. #4
    Allenzo's Avatar Member
    Reputation
    1
    Join Date
    Aug 2006
    Posts
    18
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Very nice! I'm going to try it
    Main, 60 human war illidan
    alt1, 40 dwarf hunter illidan
    alt2, 10 night elf hunter illidan

  5. #5
    camicio's Avatar Banned
    Reputation
    6
    Join Date
    Feb 2009
    Posts
    98
    Thanks G/R
    0/0
    Trade Feedback
    1 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Good idea. Some will just try if their old password still works and at least you get that.

  6. #6
    jacksonn's Avatar Member
    Reputation
    8
    Join Date
    Feb 2008
    Posts
    353
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    this could work but other phishers do still work.

  7. #7
    Poglia's Avatar Contributor
    Reputation
    210
    Join Date
    Jul 2007
    Posts
    388
    Thanks G/R
    2/19
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    This works only on very dumb people. A smart person scenario:

    1) Victim reads the mail, including "Your password has recently been modified through the Account Management website.".
    2) Victim clicks the link.
    3) Victim types his old password.
    4) Victim sees that the old password works.
    5) Victim thinks "The mail said that my password was changed, but it worked.".
    6) Victim realizes that this is a scam.
    7) Victim immediately change his password.

  8. #8
    Gummibär's Avatar Contributor
    Reputation
    115
    Join Date
    Jun 2007
    Posts
    1,053
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Another Scenario:

    1) Victim reads the mail.
    2) Clicks the link.
    3) He falls for it and actually types in his old password.
    4) He types in a new password.
    5) Logs into WoW and realizes the new password doesn't work.
    6) He types in the old password, and will probably go to WorldofWarcraft.com and change it to a totally new one.
    Scammed Gold: 31821g

  9. #9
    Zaphry's Avatar Contributor
    Reputation
    176
    Join Date
    Dec 2007
    Posts
    897
    Thanks G/R
    12/9
    Trade Feedback
    17 (100%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Off topic: Have i seen you somewhere?..
    Your name is familiar somewhy

    Playing a game for the graphics is like watching porn for the storyline.


  10. #10
    Login Error's Avatar Active Member
    Reputation
    61
    Join Date
    Feb 2008
    Posts
    260
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by zaphry View Post
    Off topic: Have i seen you somewhere?..
    Your name is familiar somewhy
    I answered it in the other thread if you want to take a look over there.

  11. #11
    Dendra's Avatar Active Member
    Reputation
    92
    Join Date
    Feb 2009
    Posts
    338
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    I never ask for keys, since most people don't have them ready to hand and it thus lowers the amount of accs i get. Otherwise, good

  12. #12
    Y R U A NUB ?'s Avatar Banned
    Reputation
    103
    Join Date
    Nov 2007
    Posts
    436
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by zaphry View Post
    Off topic: Have i seen you somewhere?..
    Your name is familiar somewhy

    Well, you've probably seen him while trying to login somewhere with the wrong password.

  13. #13
    Login Error's Avatar Active Member
    Reputation
    61
    Join Date
    Feb 2008
    Posts
    260
    Thanks G/R
    0/0
    Trade Feedback
    0 (0%)
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Originally Posted by Dendra View Post
    I never ask for keys, since most people don't have them ready to hand and it thus lowers the amount of accs i get. Otherwise, good
    I do see what you mean, if they don't know their WoW key they may try to call Blizzard instead, but the original WoW key can be used as a substitution for the SQA when you're trying to change the E-mail, so I'de say it's well worth it. You can maintain control over an account for a long time if you have the CD key.

Similar Threads

  1. New phishing idea (Maybe)
    By Kevve in forum WoW Scam Prevention
    Replies: 9
    Last Post: 11-23-2008, 05:24 AM
  2. Need Someone To Photoshop a Picture For New Phishing Pack
    By ubrpwnt in forum WoW Scam Prevention
    Replies: 3
    Last Post: 07-04-2008, 02:51 AM
  3. [idea] new kind of pvp need people to help build and test
    By Sublimepwns_ in forum World of Warcraft Emulator Servers
    Replies: 3
    Last Post: 05-06-2008, 04:35 PM
  4. New Phish Scam - Similair to "Best Scam for Now"
    By purple_viper in forum WoW Scam Prevention
    Replies: 6
    Last Post: 12-09-2007, 12:44 AM
  5. New Phishing idea
    By mahany25 in forum WoW Scam Prevention
    Replies: 1
    Last Post: 06-28-2007, 03:10 PM
All times are GMT -5. The time now is 06:55 PM. Powered by vBulletin® Version 4.2.3
Copyright © 2024 vBulletin Solutions, Inc. All rights reserved. User Alert System provided by Advanced User Tagging (Pro) - vBulletin Mods & Addons Copyright © 2024 DragonByte Technologies Ltd.
Digital Point modules: Sphinx-based search