This advice will not work if the infection is just doing key logging. The key log will just show an incorrect password followed by the correct credentials.
Originally Posted by
KenF
From this article "
Phishers target frequent flyer schemes in Brazil" (excepts extracted, read the article for the full horror

):
Standard advice in these situations is to intentionally get your password WRONG if you have
any concerns. Possibly even use an intentionally wrong FF number. Any website that will log you in with known wrong credentials
has to be bogus, as only the
real website actually knows what your credentials are to say they are wrong.
Willard the Bear - Anyone who tries to steal my (Ouch! Sorry, Ken's) miles will have a face full of fur if I catch them!!!