Microsoft has warned users about a Windows malware strain called “Crypto Clipper” that is being spread through USB drives, according to Cointelegraph. The company said the malware is not limited to one function. Instead, it blends data theft with remote code execution, combining financial stealing behavior with a capability that lets attackers run code on affected machines.

Microsoft described the shift as “turning a financially motivated stealer into a lightweight backdoor.” In cryptocurrency security usage, a crypto clipper generally refers to malware that interferes with the copy-and-paste flow for cryptocurrency wallet addresses, placing the threat close to the point where users handle addresses and transfers.
The warning centers on two points: the use of USB drives as a spread mechanism and the added remote code execution feature. Microsoft’s wording indicates that the malware has moved beyond a simple stealing tool and now carries backdoor-like behavior while remaining lightweight in design.

