Skip to content
ClickFix Campaign Uses Fake BSOD Screens to Distribute Malware in Hospitality Sector

ClickFix Campaign Uses Fake BSOD Screens to Distribute Malware in Hospitality Sector

First seen 5 Jan 2026, 23:26 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

A ClickFix social engineering campaign is targeting the hospitality sector in Europe by using fake Windows Blue Screen of Death (BSOD) screens. This tactic tricks users into manually compiling and executing malware on their systems. The campaign was first identified in December 2025 by researchers at Securonix, who have labeled it as 'PHALT#BLYX.'

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 183d ago How this analysis works

More articles in this cluster (11)

Following this threat?

Track Dark Crystal RAT in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed