PC Master
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The skill bundle is classified as suspicious due to its broad and powerful capabilities that, while aligned with its stated purpose of controlling Windows from WSL2, present significant security risks if misused or exploited via prompt injection. Key indicators include the ability to execute arbitrary Windows binaries and PowerShell commands (e.g., `cmd.exe /c "start ..."`, direct calls to `.exe` files, PowerShell scripts using `WScript.Shell`) and full read/write access to the Windows file system (`/mnt/c/`). While there is no explicit instruction for malicious actions like data exfiltration or persistence within `SKILL.md`, these capabilities provide a strong foundation for an attacker to perform such actions if they can inject commands or manipulate the agent's behavior.
