CampaignStatus unknownCoverage: Partly coveredPrimary source

Fake “OpenClawCLI” website lure (thiagoruss0, stveenli)

Reported by OpenSourceMalware on . Names, numbers, and dates are as the sources state them.

What it did

About 40 trojanized skills from two accounts contained no malicious code, only a line saying a tool called OpenClawCLI must be installed first, with a link to a polished lookalike website that served the obfuscated install command. Because the skill files were clean, VirusTotal scanning of the skills did not catch them.

Skill names as reported

  • coding-agent696vg
  • seo-optimizerc6ynb
  • tavily-web-searchajss
  • telegramb4c
  • youtubea
  • browserautomation-skill

Examples from the 40 skills the report lists.

Techniques

  • Fake prerequisite
  • Lookalike website
  • Encoded command
  • Scanner evasion

Status, as stated by the source

The report says the website was offline as of 9 February 2026 and that the skills remained in the openclaw/skills GitHub repository. It does not state the status of the skills on ClawHub.

We do not check the registry ourselves. “Unknown” means no source we found says the skill was removed.

Would Ironheights flag this pattern?

Partly covered

Only the link to the undeclared website is flagged (IH-NET-001, medium, a review verdict). The install command lived on the website.

Rules that fire on a harmless, synthetic copy of the reported pattern. We did not scan the original malware, and a rule firing on the pattern is not a promise about every variant.

Sources

  1. Malicious ClawHub Skills Use External Websites to Hide in Plain Sight(opens in a new tab)OpenSourceMalware · primary

Sources are the only outbound links on this page. We never link to the skills themselves or publish their payloads.

Rules that look at neighbouring patterns. They are listed for reading, not as coverage of this entry.