Redcross Phishing Site

Are you some kind of a philanthropist and willing to help those in need?

I hope your donations will really reach those who need it and not those opportunistic phishers waiting to get rich!

I got an alert from one of our sources that there is a Redcross phishing site set-up in the internet. I verified the information and found out that it is indeed a Redcross phishing site! Look below and take a look at the supposedly Redcross’s donation page.


click to enlarge


At first look, it may look legit but, look again emphasizing on the url of the site (refer to the enlarged picture). Now, does it still look legitimate to you? I hope you will agree with me for a big NO! That is one of the common techniques of Phishing, the supposedly real url is appended at the end of the actual site or domain you are visiting (in this case its www.quadrate-stadt.de). This may actually happen to those users who do not enable the view for the address bar.




By enabling the view for the address bar you can have an idea of what site or domain you are really in.

Notice the distorted rollover image (enclosed by the smaller circle)? This must have been intentional because the location where the rollover image points to is the same location where you will be redirected after you have provided the required information and pressed the continue button as shown in the next picture.




Now, this should be a lesson for all those people who use their credit or debit cards or same sort online, to be responsible enough not to disclose any information on an unsecured channel, which in this case is the use of http protocol. We should be aware that the current standard way of disclosing such information is through the use of SSL protocol or simply put sites that starts withhttps. In this way, we have at least an assurance that the information that we send in the internet is really going to the right recipient and the information is intact.

I”ve checked the different urls presented on the web site and I found out that only the location where “Continue”, “Cancel”, and “Verisign” buttons point to are the fake ones. So, if you will try to check the other clickable images or hyperlinks on the site aside from the three (3) buttons just mentioned, you will be redirected to the real site! Stealthy, isn”t it?




There are a number of phishing sites out there in the World Wide Web and many of them can be circumvented by just observing basic security measures just as I mentioned above.

These phishers continually operates or sad to say, getting inspired to set-up one because there are many online users who are still getting hooked by their scams.

If we can at least update ourselves on the current threats and especially their countermeasures such as these, we are one step ahead to securing our own identity and at the same time helping the security community to fight against this malicious activity.

And most importantly, your offered help will be received by those who really need it!:=)