JERMING 的个人资料magicalclick space照片日志留言簿更多 ![]() | 帮助 |
|
12月4日 BlockDelete.com Next Gen Phishing and Ad.My friend sent me a link about some great product deal. It turned out that it links to here http://blockdelete.com/ . The web page ask your MSN account name and password in order to search who blocks you. But, guess what, she never sent the link to me. At first it looks like a virus infection, but then, it is simply because she gave out her account information.
At first, I thought it is another Phishing site, but it is technically not one because it specifically claimed it is not affiliated in any way with Microsoft. Digging deeper, a short paragraph indicates that the will use the account for advertisement use, which indeed happened.
Under the agreement, they won't use your account for other use, but how much are you willing to trust them or their security from other hackers? It is highly possible that your confidential may leak to underground world. I highly recommend to change your password, security question, and alternative email address to prevent anyone retain your account again.
Now, how does this happened? How does someone log-on to MSN sending advertisements without logging out the former user? It is supported by the new Live Messenger 9 (still in close door Beta). Such feature is supported by MSN server, thus, you/someone can log-in on other machine without logging out the other user. After this incident, I don't think multiple client log-on is a good idea. The former will never know that someone maybe using his/her account or forgot to log off himself/herself.
Back to the topic, BlockDelete.com is not a malicious Phishing site. I have searched a bit on Live Search. All the MSN block detection requires your account name and password. Whether they are safe to use or not is beyond me. I certainly don't want to try it out, just to be safe. |
|
|