So I was just looking at ebay and saw there is an Audya 5 from a US seller (gabfaith) for £1300 ($2000). I thought thats obviously a scam but clicked on the item anyway to have a look. I clicked on the username to see his feedback and ebay prompted me to enter my user name and password which I did. the next page was the conformation of Buy It Now.

Thats odd I thought, I must have clicked on the wrong button...or

I checked the address bar. It said:
http://p2ks.com/ws/eBay...... and so on


Buried in the listing is a script that redirects you from ebay to the cloned site above that tries to get get your user information and money. I telephoned ebay and they conformed the listing is redirecting me (not a problem with malware on my local computer)

This is quite clever and the first I have seen something like this in action (on ebay anyway).

I will be checking the address bar more reguarly from now on!