F-Secure published an article a few days ago about a Google AdWords phishing site.
It includes two screen shots of the site which are very similar. The second one points out two signs that it is a phishing site. One of them shows that the domain ends with .oeaai.cn instead of .com. The other one points out the question which asks the user whether he or she wants Chrome to save/remember their password.
The site tries to steal a user’s username, password, and credit card number.
Source: F-Secure

Articles
Blogs
Kits
Forums
Lee
always look at the url in the status bar before clicking!