Google AdWords customers targeted in phishing scam

Customers of Google AdWords have been targeted in a phishing scam urging recipients to re-activate their accounts, according to security vendor Marshal.

The information on the email insists users should sign into and update their accounts by clicking on the included link, http://adwords.google.com/select/login, stated a researcher who posted the details on the Marshal TRACE blog.

The sophisticated scam looks official and appears to be from Google AdWords where email addresses such as support@google.com and adwords-noreply@google.com are used.

“Clicking on the link will take you to a phishing website hosted in China that closely resembles the real Google AdWords login page,” according to the blog.

The TRACE blog also claimed the phishing campaign is being pushed by one of the six existing botnets that generate 85 percent of the world’s spam. In this case the culprit is the Pushdo botnet, which holds six percent of the world's spam botnets.

According to Sophos, the Pushdo Trojan is notorious. Late last year the Pushdo Trojan spammed out nude pictures of the actress Angelina Jolie and was blamed for the surge in malware last September.

Firefox 2 was flagging the website as a possible phishing site at the time Marshal researchers visited the site, the blog said.

What are your thoughts on this article? Add your comment below.

To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.

NOTE: You must be a registered member of SC Magazine to post a comment.

Click here to login | Click here to register
comments powered by Disqus
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read