Back to skill
Skillv2.3.7

VirusTotal security

Legado Book Source Developer · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 6, 2026, 8:26 AM
Hash
7a42f9b465f32e2de57dce7de9e6a39e515ae46e12aecc670b3c290cb2fc37e4
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: legado-book-source-developer Version: 2.3.7 The skill bundle contains tools for automated web scraping and a script (upload_book_source.py) that uploads generated JSON data to an external third-party domain (tu.406np.xyz) by default. Additionally, it includes a complex, minified JavaScript file (傲娇的验证大佬v0.2.js) designed for security bypass and captcha evasion (Cloudflare/slider guards). While these capabilities are consistent with the niche purpose of Legado book source development, the combination of automated data exfiltration to a non-standard endpoint and security-evasion logic warrants a suspicious classification.
External report
View on VirusTotal