Fake Carrefour page revealed

This phishing campaign against Carrefour uses a “reward survey” scheme to steal credit card data and register victims for hidden subscriptions, often promoted via social media. The multi-stage attack involves fake surveys and “lucky” games, designed to trick users into paying a small shipping fee, which is actually a pretext to capture sensitive banking information.

Incident Report: This malicious interface was intercepted, verified, and locked down firsthand by the Antiphishing.biz security team during our automated link scanning workflows. To protect the public, the phishing source domain has been fully defanged within our infrastructure. We document and analyze these live visual patterns to help security researchers and users detect replica fraud techniques before financial damage occurs.

Actual screenshot of "Fake Carrefour page revealed" phishing interface captured during link moderation on our platform.
Figure 1: Visual proof of the active phishing operation isolated on our infrastructure.

Screenshot 1 (Landing Page): Uses legitimate branding and fake social proof (comments) to establish credibility.

Actual screenshot 2 of "Fake Carrefour page revealed" phishing interface captured during link moderation on our platform.
Figure 2: Visual proof of the active phishing operation isolated on our infrastructure.

Screenshot 2 (Survey): Simple questions are used to boost engagement and reduce suspicion.

Actual screenshot 3 of "Fake Carrefour page revealed" phishing interface captured during link moderation on our platform.
Figure 3: Visual proof of the active phishing operation isolated on our infrastructure.

Screenshot 3 (Prize Game): A rigged box-opening game creates a false sense of winning to entice further action.

Actual screenshot 4 of "Fake Carrefour page revealed" phishing interface captured during link moderation on our platform.
Figure 4: Visual proof of the active phishing operation isolated on our infrastructure.

Screenshot 4 (Payment Form): Steals full credit card details (Number, Expiry, CVV) for fraudulent charges and subscriptions.

Protection Measures:
Verify the Domain: Official promotions only occur on the retailer’s official website.
Too Good to Be True: Large prizes for simple surveys are guaranteed scams.
Never Pay for Prizes: Legitimate companies do not charge fees to receive gifts.
Monitor Accounts: Check bank statements for fraudulent charges or unexpected subscriptions.

Leave a comment

Your email address will not be published. Required fields are marked *