Did some analysis.
1. The fake page uses the same login script as traderji.com. If this script is the same for all BB-driven sites, then the cracker did not have to try too hard. The name of the script is login.php and the location is
http://traderji.freeweb7.com/investors-grieviences/login.php
As soon as you open it, it redirects you to the original traderji login page.
2. The retard is a script kiddie, or a lame windows user. I say this because he did not account for the cookies. Example, when I visited the original site, it did not ask me for a passwd because I had not logged off. Then when I saw the privae message and clicked on the link, it asked me to enter the passwd. How can cookies be deleted just like that?
3. Phishing is illegal in India. Moreover, He has used the traderji logo. Thats further illegal.
4. Turning on the windows firewall won't prevent phishing attempts.
So, how to prevent phishing?
1. Read the URL carefully. It has to be the original website (like whatever.traderji.com or traderji.com/whatever. If its traderji.someothersite.com, or someothersite.com/traderji, then its malicious.
2. Look for the padlock sign on the bottom right of your browser when you are on a page that asks you for a passwd.
3. Use firefox. It highlights the URL in yellow if its a secure login. (dont know about IE)
Thats it. Please be careful.