All the links contained within lead to a compromised website

Jul 18, 2012 14:04 GMT  ·  By

Spyware Sucks provides an interesting version of a Craigslist scam, which attempts to lure unsuspecting internauts to a compromised website.

It all starts with an email according to which, the recipient has posted an ad for “two Tiffany style Hanging lights.”

The notification contains links that allegedly point to “help,” “safety tips” webpages and to one where the ad can be allegedly viewed.

However, all the links actually lead to an html webpage hosted on a blog owned by an Italian company offering professional WordPress themes.

At press time, the malicious webpage – called lidcr.html – has been removed, but that doesn’t mean the cybercriminals can’t place it on another hijacked domain.

It’s uncertain at this time if the page contained a form designed to steal the victim’s Craigslist credentials, or if it served a piece of malware. In any case, nothing good can happen to those who fall for such scams. Beware!