Alternatively, it was a spoofed website using a spoofed SMS message/sender, trying to get them to click on the website link and give up their login. ;)