Facebook Alert – A new "campaign" to steal credit card information is underway.
Although initially the message that users receive in their email refers to an attempt to steal access , the cybercriminals' target is the recipients' financial data.
According to cybersecurity, in the first phase, users receive a message in their email that appears to come from Facebook and urges them to visit their account on the popular social networking site.
The message is quite convincing, uses Facebook colors and includes Facebook's real contact information at the bottom. However, the sender is an unrelated email address (eubcrn [at] cafusa.com).
The button that the user is asked to click contains the URL:
https://atelier-saint-hilaire.com/wp-content/overworked.php
The website https://atelier-saint-hilaire.com, however, refers to the atelier of a French decorator and has absolutely nothing to do with data theft or any illegal activity.
However, the suspicious URL immediately redirects the user to the website https://perfectherbswebmart.ru/, an apparently Canadian online store that sells various types of pharmaceutical preparations – with an emphasis on those that “treat” male erectile dysfunction.
The shopping website is "deceptive.".
The first thing that should make the visitor suspicious is that even though it is a Canadian online store, it has a URL with a Russian ending (.ru), while the second and most important thing is that the address bar is missing "https". This practically means that the credit card data that the "buyer" will fill in is certain to end up in the "hands" of hackers.
If you receive such an email, ignore it!
Source: zougla.gr

