Back to skill
Skillv2.3.7
VirusTotal security
Legado Book Source Developer · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 6, 2026, 8:26 AM
- Hash
- 7a42f9b465f32e2de57dce7de9e6a39e515ae46e12aecc670b3c290cb2fc37e4
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: legado-book-source-developer Version: 2.3.7 The skill bundle contains tools for automated web scraping and a script (upload_book_source.py) that uploads generated JSON data to an external third-party domain (tu.406np.xyz) by default. Additionally, it includes a complex, minified JavaScript file (傲娇的验证大佬v0.2.js) designed for security bypass and captcha evasion (Cloudflare/slider guards). While these capabilities are consistent with the niche purpose of Legado book source development, the combination of automated data exfiltration to a non-standard endpoint and security-evasion logic warrants a suspicious classification.
- External report
- View on VirusTotal
