actully i through about something.
what about making a ingame phisher addon that works like this.
person logs into wow.
when they have loaded their char, they will get a fake DC screen.
they write their username and password again.
the addon send the username and password to ourself via a guild even manegar addon/wow calender to our trial account.
the addon then logs them out, so they at char selection again.
they load there char again.
the addon could be made so that the fake dc screen only apear the first time they login.
dont know if its possible, but will look into it.