Is my online store a target for phishing scams?

A client sent us  a screen capture where on the payment screen she entered the information on her credit card but then she was redirected to another website with domain and in there they asked for her credit card information again. How could this be possible ? and what can I  do?

