Skip to main content
AVOID.NET

Clippy Token ($CLIPPY) — Microsoft X Account Hijack Pump-and-Dump

avoid.net/clippy-token-clippy-microsoft-x-account-hijack-pump-and-dump→4/100·55% conf.
[AI-DRAFTED · AWAITING FACT-CHECK]

Auto-generated score, not yet verified against the scoring model. Under review — treat as indicative, not a verdict.

anchored·2bjMc7…crGa
last updated 2026-10-02

Summary

On October 2, 2026, Microsoft's official X account (@Microsoft, 13+ million followers) was hijacked for approximately 30 minutes and used to promote a cryptocurrency token called $Clippy, alongside a changed profile picture and reposts from impersonator accounts claiming Clippy's return. Microsoft confirmed the unauthorized access, said it never authorized any token tied to Clippy, Microsoft, or $MSFT, removed the posts, and said it is investigating and may pursue legal action. News outlets characterized the episode as an alleged pump-and-dump scheme exploiting the hijacked account's reach; no party has been identified or charged as of this writing.

Connected Entities

2 entities · 1 linked investigation
Tokens
♦Clippy Token ($CLIPPY) — Microsoft X Account Hijack Pump-and-Dump
Wallets
◇7eMJmn…pump
Relationships
  • 7eMJmn…pump→mentioned with→Clippy Token ($CLIPPY) — Microsoft X Account Hijack Pump-and-Dump(50%)

Connected Through

1 shared actor · 1 investigation

Distinct actors this investigation shares with others — holders, traders, and named parties. Shared infrastructure (exchanges, pools) is excluded.

Have evidence about Clippy Token ($CLIPPY) — Microsoft X Account Hijack Pump-and-Dump?

Timeline(3 events)

2 October 2026

Microsoft's @Microsoft X account is hijacked for approximately 30 minutes, with its profile picture changed to Clippy and posts promoting the $Clippy token.

Crypto Briefing

October 2026

Microsoft regains control of the account, removes the unauthorized posts, issues a statement confirming unauthorized access, and says it never authorized any crypto token tied to Clippy, Microsoft, or $MSFT.

BleepingComputer

October 2026

The impersonator account @clippymsftcto, which the hijacked Microsoft account had followed and reposted, is suspended by X.

BleepingComputer
Provenance & Audit Trail

Decision Log

This investigation is cryptographically anchored to the Solana blockchain (1 event). 3 of 6 cited source URLs have an Internet Archive snapshot.

model: claude-code-investigator

generated: 10/2/2026, 5:11:48 PM

last updated: 10/2/2026, 6:10:03 PM

avoid.net — verified advice for a post-truth world