Top Buzz Trends
No Result
View All Result
  • Entertainment
  • Gaming
  • Tech
  • More
    • Netflix
    • Prime Video
    • Max
    • Celebrity News
    • Movies
    • TV Shows
    • Paramount+
    • Disney+
    • Hulu
    • Apple TV
    • Google TV
  • Entertainment
  • Gaming
  • Tech
  • More
    • Netflix
    • Prime Video
    • Max
    • Celebrity News
    • Movies
    • TV Shows
    • Paramount+
    • Disney+
    • Hulu
    • Apple TV
    • Google TV
No Result
View All Result
Top Buzz Trends
  • Entertainment
  • Gaming
  • Tech
  • More
Home Tech

Malicious Custom GPTs on ChatGPT.com Use ClickFix to Infect Windows PCs

by Scarlet Luka
October 1, 2026
in Tech
Reading Time: 3 mins read
0
Conceptual digital illustration of a compromised software interface with hidden code elements.

Researchers have found that attackers are using the trust of the ChatGPT ecosystem to distribute malware.

Cybersecurity researchers have uncovered a sophisticated social engineering campaign that leverages the official OpenAI domain to distribute a Remote Access Trojan (RAT). By creating malicious “Custom GPTs,” attackers are able to bypass traditional web filters and exploit the inherent trust users place in the ChatGPT ecosystem.

RELATED POSTS

Sweden’s New Anti-Fraud Strategy: Encouraging ‘Un-Swedish’ Rudeness to Stop Vishing

Vivo X500 Pro Max Features Pro-Grade Software for Zeiss G2 Teleconverter

Acemagic K5 Review: Intel 18A ‘Wildcat Lake’ Debuts with Major Trade-offs

The campaign centers on a fraudulent bot named “Plus 5.6,” designed to impersonate an official OpenAI model upgrade. Because this bot is hosted directly on chatgpt.com, it presents a facade of legitimacy that standard security software often fails to flag. When a user interacts with the bot, it claims there is a server connectivity issue and directs the user to a “backup domain” hosted on Google Sites to continue the session.

Abstract visualization of malicious command execution on a computer screen.
The '' technique relies on tricking users into manually executing commands outside of the browser environment.

The ‘ClickFix’ Social Engineering Trap

Once the user navigates to the external Google Sites page, they are met with a “ClickFix” attack. This technique uses a fake Cloudflare CAPTCHA or a simulated system error message to trick the victim into performing a manual software “fix.” In this instance, the site instructs the user to click a “Verify” button, which actually copies a malicious PowerShell command to the user’s clipboard.

The user is then prompted to open the Windows “Run” dialog (Win + R) and paste the command. This maneuver is highly effective because it moves the execution of the attack out of the browser environment—where many security controls live—and into the operating system’s native command line. According to research from Huntress, the PowerShell command uses decimal-formatted IP addresses to further evade automated URL filters that typically look for standard dotted-quad IP notation.

ADVERTISEMENT

The campaign has shown significant persistence. OpenAI removed the original “Plus 5.6” GPT on September 25, 2026, following initial reports. However, researchers observed a replacement bot emerging just two days later, on September 27, 2026, indicating a dedicated effort by the threat actors to maintain their presence on the platform.

Advanced Obfuscation and DLL Sideloading

The attack chain is a multi-stage process designed to stay under the radar of antivirus programs. To deliver the final payload, the attackers utilize “DLL sideloading,” a method where a legitimate, digitally signed application is used to load a malicious file. In the early stages of the campaign, attackers used signed executables from Canon, such as COTFileReadApp.exe. Later iterations of the attack transitioned to using software signed by Stardock.

By using trusted, signed applications to initiate the malicious code, the attackers increase the likelihood that the activity will be ignored by endpoint detection systems. This chain eventually installs a Remote Access Trojan known as “@input.” This specific malware provides the attackers with comprehensive surveillance capabilities, including the ability to:

  • Capture real-time screenshots of the victim’s desktop.
  • Activate and record through the system’s webcam and microphone.
  • Log keystrokes to steal credentials and financial data.
  • Exfiltrate files from the infected machine.

Researchers at Huntress identified at least 40 distinct incidents stemming from the specific Google Sites domain used in this campaign. This suggests the attack is not a theoretical proof-of-concept but a live operation targeting ChatGPT users who may be seeking “Plus” features or advanced models through unofficial channels.

To avoid these traps, users should verify the creator of any Custom GPT. Official OpenAI tools will typically be labeled as such, and any prompt asking a user to run PowerShell commands or copy-paste text into the Windows Run box should be treated as a definitive indicator of a malware attempt.

ShareTweetShareSend
Scarlet Luka

Scarlet Luka

Related Posts

A hand pushing away a telephone receiver to symbolize ending a call abruptly.
Tech

Sweden’s New Anti-Fraud Strategy: Encouraging ‘Un-Swedish’ Rudeness to Stop Vishing

September 30, 2026
A conceptual view of a smartphone teleconverter lens showing internal optical elements.
Tech

Vivo X500 Pro Max Features Pro-Grade Software for Zeiss G2 Teleconverter

September 30, 2026
A conceptual 3D render of a glowing microchip representing Intel 18A architecture.
Tech

Acemagic K5 Review: Intel 18A ‘Wildcat Lake’ Debuts with Major Trade-offs

September 30, 2026
Conceptual rendering of a futuristic device hinge acting as a cassette deck.
Tech

Duo-Man App Uses iPhone Duo Hinge to Simulate Classic Walkman

September 29, 2026
A conceptual image of a circuit board with a digital lock icon over a memory chip.
Tech

Raspberry Pi 5 Firmware Update Blocks Manual RAM Upgrades and Swaps

September 29, 2026
Conceptual image of a secure server rack protected by digital barriers.
Tech

Kiteworks Lifts Precautionary Shutdown After Identifying Advanced Forms Vulnerability

September 29, 2026

Popular - Posts

  • Conceptual image of a detective's desk with a case file and magnifying glass.

    10 Essential True Crime Documentaries on Max for September 2026

    0 shares
    Share 0 Tweet 0
  • Brett Goldstein and Alexandra Daddario Lead Prime Video’s ‘Wholesome’ Escort Comedy

    0 shares
    Share 0 Tweet 0
  • The Love Hypothesis Prime Video Release: How to Watch Early on September 22

    0 shares
    Share 0 Tweet 0
  • Trending
  • Comments
  • Latest
A conceptual digital book with a futuristic city hologram rising from its pages.

15 Best Sci-Fi Book-to-TV Adaptations: 2026 Milestones for Silo and Dark Matter

September 27, 2026
A dark, foggy urban street at night with an eerie atmosphere.

Resident Evil 2026 Streaming Release Date: When Will the Reboot Hit Netflix?

September 23, 2026
A conceptual view of a liminal, infinite yellow office maze with fluorescent lighting.

A24’s Backrooms Hits Max as UNABOMBER and A Different World Debut on Netflix

September 26, 2026
Conceptual image of a detective's desk with a case file and magnifying glass.

10 Essential True Crime Documentaries on Max for September 2026

September 29, 2026
Conceptual digital illustration of a compromised software interface with hidden code elements.

Malicious Custom GPTs on ChatGPT.com Use ClickFix to Infect Windows PCs

October 1, 2026
A conceptual illustration of film strips and media icons fading out to represent content leaving a streaming service.

The Hunger Games and Dawson’s Creek Lead Major Netflix Departures in October 2026

October 1, 2026
A cinematic silhouette of a man in a suit against a city skyline

Danny Boyle Names Jack O’Connell as His Top Choice for the Next James Bond

October 1, 2026
A conceptual atmospheric shot of a shadowy London alleyway.

Who Plays Reese Nesmith in Slow Horses Season 6? Lenny Rush Explained

October 1, 2026
  • About Us
  • Contact Us
  • Privacy Policy
  • Disclaimer
  • Editorial Policy
  • Terms and Conditions
  • Use Of Cookies

Top Buzz Trends
Top Buzz Trends is not endorsed, moderated, owned by, or affiliated with TopBuzz or any of its partners in any capacity. Top Buzz Trends is an independent news website for Entertainment, Movies, TV Shows, Netflix, Games, and Gadgets, Software, Computers, Smartphones, and more. All promotional material including but not limited to trailers, images, and videos, are all copyrighted to their respective owners. TopBuzz is a registered trademark of ByteDance Ltd.
© Top Buzz Trends - All Rights Reserved.

No Result
View All Result
  • Entertainment
  • Gaming
  • Tech
  • More
    • Netflix
    • Prime Video
    • Max
    • Celebrity News
    • Movies
    • TV Shows
    • Paramount+
    • Disney+
    • Hulu
    • Apple TV
    • Google TV

Top Buzz Trends
Top Buzz Trends is not endorsed, moderated, owned by, or affiliated with TopBuzz or any of its partners in any capacity. Top Buzz Trends is an independent news website for Entertainment, Movies, TV Shows, Netflix, Games, and Gadgets, Software, Computers, Smartphones, and more. All promotional material including but not limited to trailers, images, and videos, are all copyrighted to their respective owners. TopBuzz is a registered trademark of ByteDance Ltd.
© Top Buzz Trends - All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Go to mobile version