Skip to content

Campaign record

XWorm via ChatGPT malvertising

XWorm delivered by ChatGPT-themed malvertising on content recommendation widgets

Status as last assessed
Active
First seen
2024-10-19
Last seen
2024-10-19
Indicators
4
Sources
1
Targets
Windows
  • AI tool impersonation
  • Fake CAPTCHA verification
  • XWorm
  • Malvertising

Original research

This page summarises and structures that research; it is not a substitute for the original.

Researchers: if anything here misrepresents your work, email corrections@clickfixreport.com — we correct within 5 working days, no questions asked.

Summary

Seen from the middle of October 2024, with indicators dated the 19th. Outbrain recommendation panels on a large technology site carried a teaser promising more from ChatGPT; following it led to a site presenting itself as a prompt-writing service. The page ran a restyled build of the same public fake-CAPTCHA kit, this time framed as an invitation to join a community, with the clipboard trick sitting behind it. Running what had been copied invoked mshta against an obfuscated HTA file, which reached out for two further scripts: one loaded XWorm by way of RegAsm and started its hidden-desktop plugin, the other planted a registry autorun so the first came back at every boot. Proofpoint noted Russian comments in the site's script that a language model had probably written.

What changed since publication

The accounts above describe these indicators as they were on the day each was written. We re-check them ourselves and record every check, including the ones that find nothing — which is the only reason the gaps below can be stated rather than hidden.

Indicators checked
1 of 4
Checks recorded
2
Checks since publication
2
Never checked
3

Observation window 2026-08-10 to 2026-08-22. Checks are sampled, not continuous; the sampling policy is on /methodology. 3 indicators have never been checked by us at all.

Current recorded state

  • 1 Unregistered
  • 3 Not checked by us

Nothing has changed state between our first check and our most recent one. A domain that still resolves is not necessarily still serving anything — registrar hold pages answer DNS indefinitely, which is why the state above distinguishes “parked or suspended” from “resolving”.

Execution mechanisms

How the pasted command actually ran, as the published accounts describe it. Every row under “Mechanism” is one this campaign records; “Across the corpus” is the share of the 44 published campaigns in this corpus that record the same one — a baseline we can only state because we hold the whole set.

Execution mechanisms recorded for this campaign, with their frequency across the corpus
MechanismAcross the corpusATT&CK
Windows Run dialog23 of 4452%T1204.004
mshta.exe7 of 4416%T1218.005

Both of these mechanisms appear together in 5 of the 44 campaigns on record, this one included. We record a mechanism only where a source describes one: an absent mechanism means nobody wrote it down, not that it did not happen.

Indicators

4 indicators, each present verbatim in at least one of the sources above. Values are shown defanged and are not links to the hosts — the link goes to our page for that indicator.

Indicators recorded for this campaign, shown defanged
IndicatorTypeRoleAssessmentFirst seenLast seenStateReport an error
domain, shown defanged for safety: promptcraft dot onlinedomainLure pageNot yet assessed2024-10-192024-10-19Not checked by usReport an error in domain record 771fc07e-fb14-4a77-a3da-a4e2cc381d13
domain, shown defanged for safety: promtcraft dot onlinedomainLure pageAttacker-controlled2024-10-192024-10-19Unregistered2026-08-22Report an error in domain record f768b46f-2935-4f0d-bd2a-9384c212d63d
ip, shown defanged for safety: 185 dot 147 dot 124 dot 40ipCommand and controlNot yet assessed2024-10-192024-10-19Not checked by usReport an error in ip record 11cd6003-96e0-4dbb-8ef2-1c8c8e776643
url, shown defanged for safety: hxxp colon slash slash 185 dot 147 dot 124 dot 40/Capcha dot htmlurlStagingNot yet assessed2024-10-192024-10-19Not checked by usReport an error in url record 06472b0e-444d-4f64-a43a-9745aae1bdb4

“Assessment” is who controls the host, not how dangerous it is. Many of these are compromised legitimate sites whose owners are victims, and they are excluded from every blocklist file we publish.

Not on this record

This record does not yet carry a second publisher's account or any overlap with another campaign in this corpus. Each appears on this page as its own section once it exists; none of it is inferred.

Cite as

ClickFixReport, “XWorm via ChatGPT malvertising”, campaign ID fcb64726, retrieved 2026-08-07, snapshot fb0eed7.

https://clickfixreport.com/campaigns/fcb64726/xworm-chatgpt-malvertising-clickfix

Published under CC BY 4.0. Reuse it, including commercially, with attribution. The date above is when this record last changed, not when you opened it — the page is a versioned record, so that is the date a reader needs to find what you saw.