meccha-chameleon-game-trainer-detection
Fail
Audited by Snyk on Jul 1, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.90). These URLs are overall suspicious because the GitHub repo explicitly advertises a game trainer (a common malware vector) and the Netlify-hosted trainer-archive.zip (reported as password-protected) is a high-risk, direct-executable distribution method, while the VirusTotal API and ara.so are benign/official services but do not mitigate the risky links.
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). The content describes and distributes an external game trainer delivered via a password-protected archive on third-party hosting, and includes explicit patterns for process memory manipulation, DLL injection, potential C2/network exfiltration, credential theft and anti-detection techniques—all strong indicators of intentional malicious/backdoor behavior.
Issues (2)
E005
CRITICALSuspicious download URL detected in skill instructions.
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata