St George Bank Latest Phishing Scam Victim


Scam emails asking to verify your account details are targeting St George Bank today. The idea behind this scam is to collect login details such as customers bank account number and password. This practice is commonly known as phishing. Phishing is a common scam and all the major Australian banks have been targeted in the past.

So I decided to some investagative work to find out who is behind this phishing scam

Two domains have been registered which are very similar to the official St George Bank web site and can easily mislead St George Bank clients in to believing they are being directed to the St George web site.

Details of the domain names

1. stgeorgeaustralia.com was created on the 26 Feb 2008 and is gosted At&T Internet Services. There is no website at this address.
http://whois.domaintools.com/stgeorgeaustralia.com

2. stgeeorge.com was created on the 26 Feb 2008 and is gosted At&T Internet Services.
http://whois.domaintools.com/stgeeorge.com

Registrant Details

Registrant:
Domain Discreet
ATTN: stgeeorge.com
P.O. Box 278
Yarmouth, NS B5A 4B2
CA
Email:

Registrar Name....: REGISTER.COM, INC.
Registrar Whois...: whois.register.com
Registrar Homepage: www.register.com

Domain Name: stgeeorge.com

Created on..............: Tue, Feb 26, 2008
Expires on..............: Thu, Feb 26, 2009
Record last updated on..: Tue, Feb 26, 2008

Screen Captures

St George Bank Fraud Email

St George Login Page

Information and Links

Join the fray by commenting, tracking what others have to say, or linking to it from your blog.


Other Posts
MD Web Hosting

Write a Comment

Take a moment to comment and tell us what you think. Some basic HTML is allowed for formatting.

Reader Comments

You failed to mention these were fast flux domains and that Phishing website was hosted on a BOTNET. ie. -> IP’s Hosting website, were changing every 15 seconds.

BTW - St.George took down the fakes sites in less than 24 hours.

well i got a new one today and was completely different to those mentioned. so you still need to be careful