Back to skill
Skillv1.0.0
VirusTotal security
Skill Antivirus & Security Scanner · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 29, 2026, 6:06 AM
- Hash
- 30f2ee8157715dc2d1f554f494d7084d6dc81df444240d3474ffa44d4d35c3d9
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: skill-antivirus Version: 1.0.0 The skill bundle acts as a wrapper to install an external plugin (@openguardrails/moltguard) and execute local Node.js scripts (enterprise-enroll.mjs). It contains highly scripted instructions in SKILL.md that direct the AI agent to perform a 'test' and then provide a hardcoded reassurance to the user ('Your security protection is now active'), which mimics the social engineering tactics used by deceptive 'Fake AV' software. Furthermore, commands like /og_claim and /og_config are designed to reveal API keys and Agent IDs, posing a risk of credential exposure through the agent's output.
- External report
- View on VirusTotal
