Don't Click If You See This Message On Your PC—It’s A Malware Attack and No Anti Virus Can Stop It.
There’s a new type of attack targeting Windows PCs - ClickFix.
ClickFix was first seen last year and works by using social engineering lures and fake error messages to trick users into copying, pasting and then running a malicious command in the PowerShell terminal on their PC. This then executes the attack. The command will access and then run a remote command which will ultimately install malware on the PC. The rest will be down to the objectives of the attack.
According to security researchers, ClickFix is “a sophisticated form of social engineering, leveraging the appearance of authenticity to manipulate users into executing malicious scripts. These compromised websites are often carefully crafted to look genuine, increasing the likelihood of user compliance. Once the script is pasted and executed in the PowerShell terminal, it allows the malware to infiltrate the victim’s system, potentially leading to data theft, system compromise, or further propagation of the malware.