wallet-setup
Fail
Audited by Socket on May 8, 2026
1 alert found:
MalwareMalware.clawnet/unsigned-skill.json
HIGHMalwareHIGH
.clawnet/unsigned-skill.json
This module presents strong, direct indicators of malicious supply-chain activity: an embedded encoded payload that explicitly references mnemonic/private-key handling, remote sync/backup to server/storage endpoints, and destructive/sabotage wallet state manipulation (destroy/reset/purge-like actions). While the snippet does not show the exact loader/execution code, the embedded instruction content and high-value targeting (wallet secrets/state) make compromise or harmful activation very likely. Recommended action: treat the package/artifact as malicious, block it, and inspect for decoding/execution logic and any network/file actions in the full package contents.
Confidence: 90%Severity: 95%
Audit Metadata