The "third-party.com" domain, commonly used in documentation to represent an arbitrary external website, API, or service, has been observed hosting a ClickFix attack that impersonates a Cloudflare security check.
Unlike example.com, example.net, and example.org — which IANA reserves specifically for documentation — third-party.com is a normally registered domain whose content its owner can control. That distinction has become a security concern after the domain began serving the malicious page.
Manifold Security first reported the abuse after discovering it while examining public AI skills and MCP server documentation that referenced the domain. BleepingComputer confirmed that the page displays a fake Cloudflare "Performing security verification" CAPTCHA screen containing a "Verify you are human" prompt. When a visitor clicks the verification box, the site copies a malicious PowerShell command to the Windows clipboard and instructs the user to press Windows key + R, paste the contents using Ctrl+V, and press Enter.
If run, the PowerShell command reconstructs the payload URL elxxvvx[.]xyz/f, downloads a PowerShell script from that address, and executes it. The technique, known as ClickFix, uses fake errors, CAPTCHA prompts, or verification pages to convince victims to run commands themselves — a method that can bypass traditional antivirus software because the malware is installed via commands executed by the user rather than downloaded from a website or email attachment.
At the time of BleepingComputer's testing, elxxvvx[.]xyz no longer resolved, leaving the current attack chain broken. However, a Hybrid Analysis report from May 2, 2026, shows the site previously distributed a PowerShell script configured to download a 134MB zip archive from elxxvvx[.]xyz/update2.zip. The script saved the archive as update26.zip, extracted it, and attempted to launch an executable named draw.io.exe. Because the update2.zip archive is no longer available, researchers could not determine what the payload does.
The attack specifically targets Windows users, according to Manifold's Ax Sharma. "A macOS or Linux user-agent gets none of that. It gets a near-identical page that stops at an error: 'macOS is not supported. This website requires a Windows PC to access.' No clipboard poisoning, no payload," Sharma explained. "The attacker only shows the weapon to the targets it works against, which is precisely why a casual look, or a scanner on a Linux datacenter IP, sees nothing wrong."