Open-source atomic malware analysis

Analyze another

pkg:npm/[email protected]

UNKNOWN
Verdict: BENIGN
Mal-ecule
H₃(CmOsPo)Md₂(InPa)
Size 52.4 KB download
First seen 6 days ago
Analyzed 6 days ago
Ecosystem npm

Referenced by 1 sample

Micro-behaviors

notable severity, 90% confident.
communications/http/url Cleartext http:// URL
notable severity, 90% confident.
os/module CommonJS require inside try fallback
notable severity, 100% confident.
process/create/shell Executes shell commands synchronously
baseline severity, 80% confident.
data/source/syntax Reads an array element into a variable
component severity, 90% confident.
communications/url JavaScript comment contains a URL
component severity, 86% confident.
data/control-flow Starts a synchronous function expression

Metadata

notable severity, 80% confident.
import require('child_process') import
notable severity, 90% confident.
package/manifest Repository identifies major Git host
baseline severity, 80% confident.
file/profile Contains common English function words
baseline severity, 100% confident.
package package.json defines a package version
baseline severity, 95% confident.
package/files Manifest sits at npm publish root
baseline severity, 100% confident.
package/quality package.json defines a package name
component severity, 80% confident.
build Member under vendor/payload/release dir
component severity, 90% confident.
file File has 30 or more lines
component severity, 70% confident.
package/dependencies npm manifest has many devDependencies

Identity

SHA-256 bfb632ee14c5f101f2cb20e4bbb553f8a6aac862b22aa9cfa781362820840231
Filename pkg:npm/[email protected]

Origin

Source x
Ecosystem npm

Timeline

First seen 23 Aug 2026 12:50 UTC
First analyzed 23 Aug 2026 12:47 UTC
Last analyzed 23 Aug 2026 12:59 UTC
Last updated 23 Aug 2026 13:01 UTC

Labeling

Label unknown