ShinoClickFix is a simple web application designed to demonstrate various types of ClickFix attacks. Its purpose is to help educate users and evaluate the effectiveness of security solutions — including EDRs, web gateways, antivirus software, and more.
"ClickFix" refers to a deceptive social engineering tactic used by cybercriminals to trick users into executing malicious code on their computers. Typically, users encounter fake error messages or CAPTCHA prompts on compromised websites, instructing them to perform actions like pressing "Win + R," pasting clipboard content, and hitting "Enter." These steps lead to the execution of malware
Malwares | Just Run It | Run through HTA | Run through PowerShell |
---|---|---|---|
Calc (Safe)Just the Windows Calculator, the most safer test. ![]() |
|||
Fix.exe (Safe)A fake fix.exe file that will only display a MessageBox and will not perform any actions. It serves to demonstrate that a user can be vulnerable to malware infection. ![]() |
N/A | ||
ShinoBOT.ps1 (Danger)Powershell based file-less malware. Good for simulating backdoor, infostealer. Check here for details. ![]() |
N/A | ||
Customize by yourselfYou can type the command you want to run in the text box. |