Open-source atomic malware analysis

Analyze another

frontend.py

PYTHON
Verdict: BENIGN
Mal-ecule
KO₅(C₂As₂IPS)H(Db)Md(Pa)
Size 33.3 KB download
First seen 110 days ago
Analyzed 105 days ago
Ecosystem pypi

Well-known

component severity, 92% confident.
malware/backdoor VIPERTUNNEL static import cluster

Objectives

notable severity, 75% confident.
command-and-control/remote-command Remote feature config endpoint
baseline severity, 80% confident.
anti-static/obfuscation/code-metrics High ratio of embedded code in strings
component severity, 95% confident.
anti-static/obfuscation/payload Python source extension basename
component severity, 75% confident.
anti-static/obfuscation/string Python substring membership check
component severity, 100% confident.
supply-chain Derived raw condition for docutils

Micro-behaviors

baseline severity, 90% confident.
fs/file Opens a file
baseline severity, 80% confident.
os/sysinfo Python sys.platform conditional check
baseline severity, 100% confident.
process/create shell script command substitution
component severity, 100% confident.
data/text "Environment" keyword

Metadata

baseline severity, 95% confident.
import imports sys
baseline severity, 95% confident.
import/python::docutils imports docutils.error_reporting
baseline severity, 95% confident.
import/python::os imports os.path
component severity, 90% confident.
package File has 30 or more lines

Identity

SHA-256 0cfbc4bf9c6e308b156af893f4466bae9898ba596f8febe1b4eedcd9f4034346
Filename frontend.py

Origin

Source harvest
Ecosystem pypi

Timeline

First seen 24 Apr 2026 16:11 UTC
Last analyzed 29 Apr 2026 23:05 UTC
Last updated 29 Apr 2026 23:05 UTC

Labeling

Label good
Label source harvest
Traits version f6eaa