Have a look on the next image:
Do you see the text in address (URL, URI) field? miscrosoft.com? But page displayed bellow obviously is not the Miscorsoft™ page. How it is achieved? Easy: it is the page you will get by click on the next link if your browser is vulnerable.