Original Reddit post

ChatGPT (official site) dropped me into a malicious Custom GPT mid-task that tried to run a ClickFix malware attack on me Posting this as a warning because it’s a nastier pattern than typical phishing. I use ChatGPT daily. I’m a Plus subscriber and rely on it heavily for coding projects and business automation. I opened it like I always do, started a temporary chat, and asked it to get to work. At first, it attempted an image generation. Once I stopped it and told it to create a PDF, it stopped for a moment, and sometime between stopping its image generation and loading the next message, it dropped me into what turned out to be a custom GPT (URL showed the g-xxxx custom GPT ID pattern, display name “GPT-5.6 Sol,” styled to look like a legit model). I wasn’t browsing the GPT Store or looking for anything custom. The fake verification doesn’t ask for a password. It instructs you to: Press Win+R Type cmd , hit Enter Ctrl+V (paste) Enter That page silently copies a malicious command to your clipboard via JS submitted by /u/BarracudaLittle4376

Originally posted by u/BarracudaLittle4376 on r/ArtificialInteligence