Skip to content
Tech News
← Back to articles

Malicious custom GPT lures ChatGPT users into ClickFix RAT infection

read original get Malwarebytes Premium Security Software → more articles
GoKawiil Brief

Huntress researchers found a custom ChatGPT variant named 'Plus 5.6', promoted via sponsored Google search results, that redirects users to a fake Google Sites page mimicking a Cloudflare check. That page instructs visitors to run a PowerShell command which installs a signed application alongside a malicious DLL, deploying a remote access trojan. Huntress says it has investigated at least 40 related incidents, and OpenAI plans to retire the custom GPTs feature on December 11.

Why It Matters

GoKawiil's interpretation of the reporting above, not reported fact.

Hosting the malicious redirect instructions on the legitimate chatgpt.com domain lends the scam unusual credibility, since victims are less likely to suspect a trusted AI platform of directing them to malware. The RAT's capabilities—remote desktop access, camera and audio capture, and file searching—suggest attackers could use it for espionage or further compromise beyond a single infection. This case indicates attackers are increasingly exploiting trusted AI ecosystems and their customization features as new social-engineering vectors, which could push AI platforms to tighten review of user-generated content before broader retirement of such features.

Key Takeaways
Worth a Look

Malwarebytes Premium Security Software — With attackers using fake ChatGPT tools and ClickFix scams to trick users into running malicious PowerShell commands, having real-time malware protection is essential. Malwarebytes Premium actively blocks malicious scripts and phishing sites before they can compromise your system, offering an extra layer of defense against these evolving social-engineering attacks.

See Malwarebytes Premium Security Software on Amazon → Affiliate link — we may earn a commission on purchases, at no extra cost to you. Product picked by AI based on this article; it is not a tested recommendation.

Source: bleepingcomputer.com, 2026-09-29

Published there as: “Custom ChatGPTs push ClickFix attacks to deploy RAT malware”

Read the original report → The summary and analysis above are GoKawiil's own, written from reporting by the source above. Facts and quotes belong to the original publisher.