open mail function for hotmail goes to a fake hotmail site

Auke Zaagman alzaagman at hotmail.com
Wed Aug 17 04:26:22 EDT 2011


Dear Reader,

I just used the open mail function from within Pidgin and I ended up at a website looking like this, which is the old hotmail layout:



NoScript stopped this Javascript:

<iframe src="https://secure.footprint.net/xscmsn/c/hotmail/S/1033/header.html?cbpage=fslogin&mkt=EN-US&lc=1033&x=11.0.18474.0" width="100%" height="112" frameborder="0" scrolling="no" align="top" marginwidth="0" marginheight="0" name="i6000"></iframe>
Link in URL bar:

https://login.live.com/ppsecure/md5auth.srf?lc=1033&auth=EwAAAswbAQAUs1%2FVcBU2sH7mwYy3BysWZ71CRDGAAE4SuDJZPnhj%2FhvkzWlh4BDGkc8rnNRmnX3LD6peNWZOjzBG%2Btzr8C0VRo5eNMDOzhUorbovYLuhRXOk5NxLpKN3V3wPo%2F1hMLMA2yn%2Fn6PH9WyVbBS6Eujy2plvy2QMF0aQg%2BGYIqr6BRwuIKAF8wpwFrzUYXq3GWcZpsoh1yqHA2YAAAhtNxGz2%2FHUb1AB%2FupQANajQiBvTYXoYeJYqRq6XONemNbJNElEonUz7hciJlRl5DXvhbaqzrhQ9U7gDiVUu5WWwiDF6QCOCDvSLMavkgW0QO9HxcI%2B6NV2EcLSIDqV4mLIYEwR%2FppRVJUbaZpsQ4A68D%2FTqM7WQG52rbEPZUzgsLz6SidttXoGI47aA0BOr2saFwcUFkWjJ8NrbqPltznFgf0pkZkWBwin8rUl9NMbmHJTtjPrc0ZBm5%2BD9%2F48sgSeX52si6qUBExwMGeXfUqMhvyx4GoTgxJRc5m9r1lTxRm%2Bwvkz5zL%2FD2SL9bQbb2BElDJ1ALaQZ9AuDVoC34NpVCoYWT6qEMEC4vpP1q62QNJZ%2BQdu3jAgcREL2W1rfT79nBwPVhySe7a%2BvEy5ATHXkCQbftsyebM2y7dXTCtvgQEljY4rXw4lUNmXVmLxLmQYE5BSKnCciZV3fQE%3D%26p%3D&creds=60125141b69b18f041ba7cd0987a25bc&sl=-2&username=alzaagman@hotmail.com&mode=ttl&sid=72652&id=2&rru=/cgi-bin/HoTMaiL&svc=mail&js=yes

Am I being paranoid?

Regards,

Auke Zaagman
 		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://pidgin.im/cgi-bin/mailman/private/security/attachments/20110817/fb351a5c/attachment-0001.html>


More information about the security mailing list