Back to skill
Skillv1.0.0
VirusTotal security
公司情报侦察 · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 30, 2026, 3:16 AM
- Hash
- 4f5ea60177d4d58106d13043882189b48dca2d01812725d4277d14c87e7e4b79
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: farreach-company-intel Version: 1.0.0 The skill bundle utilizes the `exec` tool to run Python scripts that perform raw SMTP socket connections for email verification (Phase 3) and interact with the OKKI CRM CLI (Phase 4). Direct SMTP probing (using `RCPT TO` checks) is a high-risk reconnaissance technique that can lead to IP blacklisting or be flagged as network abuse. While these capabilities are aligned with the stated purpose of company intelligence, the use of `exec` for network-level probing and the inclusion of hardcoded user IDs in `SKILL.md` represent significant security risks and potential for unintended network activity.
- External report
- View on VirusTotal
