Monday, February 13, 2012

Kijiji phishing fraud to watch out for: "Session Expired"

Some Kijiji users complain of getting lot of scam email -- the ubiquitous wire fraud, overseas shipping, generic phishing mail and such. I very rarely get any. That is, I can't remember the last time I received any.


But this week I was sent an email that was obvious to me as a phishing attempt, though some inexperienced surfers may not be so alert. I figured I'd post it here for reference. Here's the email:


Some signs that this is a scam:
- The FROM: Email is "update@kittymail.com" -- if the address even exists, it's at a free web-based email service, not from Kijiji
- The TO: line has a bunch of email addresses. If Kijiji sent you a mass message, you would not be seeing the addresses of other people.
- The SUBJECT: line doesn't make sense -- session expired? Update my account? Designed to confuse the recipient
- The warning is in broken English: "Due to the massive fraud that we are facing in the last months,we advice you to update your account for a better collaboration" ... What massive fraud? The last months? No space after the comma? We "advice" you? For a better collaboration? Really bad English.
- The link goes to http://kililiupdtaccnt.hostzi.com/Uptdate_kilili.html -- what the hell is that? Kilili? Who on earth is hostzi? UPTDATE?
- I'm sure I could dig more evidence from the email headers, but we've already made it obvious that this is bogus

Just ignore it. Don't reply, and certainly don't click the link.

The text:

Canada
Over 3,797,199 Free Local Classifieds

Due to the massive fraud that we are facing in the last months,we advice you to update your account for a better collaboration

In order to verify your account please click on the link below.

Verify and Update your account here


Thanks for your cooperation.

Copyright © 2005-2011 Kijiji International Limited

0 Responses to “Kijiji phishing fraud to watch out for: "Session Expired"”

Post a Comment

Need a media interview about You Suck at Kijiji? Contact me!