Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Spam Reports

June 30th, 2010, 11:11 GMT · By

Free Recharge Code Scam Targets Orkut Users

SHARE:

Adjust text size:

Orkut users targted in 'free recharge code' scam
Enlarge picture
Scammers are tricking Orkut users into pasting malicious JavaScript code in their browser's address bar, with the promise of receiving a free recharge code for their mobile phones. Users who fall for the scam end up with their Google login credentials stolen.

It all starts with users receiving a link on Orkut that takes them to a website displaying a big banner that reads: "Recharge your mobile here!" According to information presented on this page, the user will receive a free recharge code in their Orkut scrapbook if they copy and paste some JavaScript code into the address bar.

Doing so will force the browser to access a Snurl.com shortened URL. "That triggers a big page of javascript code located at orkutaddict(dot)net/freerecharge/dpd(dot)js. At this point, the path branches off depending on whether you’re logged into Orkut or not," Christopher Boyd, a security researcher at Sunbelt, explains.

Spam website advertising fake mobile recharge codes
Enlarge picture
Those who are not authenticated will see a JavaScript alert instructing them to log in to their Orkut account in order to receive the promised free code that recharges their call credit. After closing this alert, they will be taken to a phishing page displaying a fake Google Account sign-in form.

Meanwhile, logged in users will see a different series of alerts, including the one that asks them for their phone number and claiming that they are getting closer to receiving that code. When all alerts are over, they are also redirected to a phishing site.

However, as Mr. Boyd points out, authenticated users are less fortunate because they start sending out messages advertising this scam through their Orkut profiles right away. They also automatically join a group called "Free mobile recharge!" which has over 1,800 members. "As you’ve probably guessed, all of the spamlinks on the profiles and in the group take you to more sites asking victims to cut and paste Javascript into their browser," the researcher writes.

Judging by the number of users in that single group, this type of scam is rather successful. This might be because over 70% of Orkut users are from Brazil or India, countries where rechargeable prepaid phone cards are more popular than monthly subscriptions.

You can follow the editor on Twitter @lconstantin


9,644 hits · 3 comments
Link to this article · Print article · Send to friend

MUST-READ RELATED ARTICLES:


'View Your Profile Visitors' Scam Back on Facebook

YouTube World Cup Videos Used to Promote Scams

Twitter Invitation Email Scam Spreads Malware Downloader

iPad-Related Scams Still Common

Weekend Adware Scam Returns to Facebook

READER COMMENTS:


Comment #1 by: Jasim on 06 Jul 2010, 15:05 UTC reply to this comment

This topic is too discussed on the Orkut Help Forum.
Check this thread,
http://www.google.com/support/forum/p/orkut/thread?tid=77c0106a42af9ea6&hl=en


Thanks
Jasim Manniyil


Comment #2 by: netra prakash on 11 Jul 2010, 17:57 UTC reply to this comment

how can it recharge with 13th digits no .....
the recharge card must be 16th digits for recharging.....


Comment #3 by: A Singh on 14 Jul 2010, 02:30 UTC reply to this comment

I have copy n paste that scipt in my profile but....
when it prompted me to that fishing page for login I didn't entered my id n password and directly written orcut.co.in in my address bar....
profile descriptions was changed... is it will harm my account or phone?
kindly help someone and mail ur response to my mail address hzldzsclaims@gmail.com

Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM