ClickFix – a scam

Thanks to Mike C.

WHAT:
ClickFix is a scam that tricks people into copying and pasting malicious commands into their computer.
It usually starts with a fake website, pop-up, or email saying:
“Fix this error,” “Verify you’re human,” or “Speed up your PC.”
The site asks you to copy a command and paste it into Run (Win+R), PowerShell, or Terminal.
Once you do this, the attacker takes control of your computer.
For more information view the article here: https://www.microsoft.com/en-us/security/blog/2025/08/21/think-before-you-clickfix-analyzing-the-clickfix-social-engineering-technique/

IMPACT:
Malware is installed on your computer.
Hackers can steal your passwords, files, and financial information.
They can spy on your activity or even lock your device for ransom.

What DO I DO?
Never copy and paste commands from websites or pop-ups.
Ignore “Fix It” messages that ask you to open Run, PowerShell, or Terminal.
If you’re unsure, STOP and contact the Help Desk immediately.
Report any suspicious emails to phishing@dwt.com
REMEMBER: Legitimate companies will never ask you to copy commands to fix an issue.

This entry was posted in Uncategorized. Bookmark the permalink.