Open-source atomic malware analysis

Analyze another

@teambit/webpack 1.0.1096

UNKNOWN
Verdict: BENIGN
Mal-ecule
H₃(Cm₂Db₂Os₂)Md₃(LiPa₃)
Size 44.2 KB download
First seen 20 days ago
Analyzed 17 days ago
Ecosystem javascript

Referenced by 4 samples

Micro-behaviors

notable severity, 80% confident.
communications/http/request HTTP GET with query parameters
notable severity, 75% confident.
communications/http/url Contains a hardcoded remote HTTP(S) URL
notable severity, 94% confident.
data/encode JavaScript comment contains Base64-like content
notable severity, 88% confident.
data/source/dynamic Node require call with computed module name
notable severity, 93% confident.
os/module CommonJS side-effect-only package require
notable severity, 95% confident.
os/sysinfo/performance Reads Node.js process memory usage

Metadata

notable severity, 80% confident.
package Package has optional dependencies
notable severity, 90% confident.
package/manifest Repository identifies major Git host
baseline severity, 80% confident.
file/profile Sequential source identifier names
baseline severity, 100% confident.
package/quality package.json defines a package name
component severity, 90% confident.
file/format Source map sourcesContent array

supply-chain

notable severity, 80% confident.
suspicious-package Suspicious package name: 'webpack-assets-manifest'

Identity

SHA-256 ca4732b2ca0eaa0e73df9484bf37e382645caf88daa4448b0d87aea6bf0b0d1d
Canonical SHA-256 01585ddd38bfdde84a9af677ffef99ca90805f55d78f96cf2f20b145dfeb09f5
Filename webpack-1.0.1096.tgz
Package @teambit/webpack
Version 1.0.1096
PURL pkg:npm/@teambit/[email protected]

Origin

Source upload
Ecosystem javascript
Domain npmjs.org
URL https://registry.npmjs.org/@teambit/webpack/-/webpack-1.0.1096.tgz

Timeline

First seen 5 Aug 2026 16:29 UTC
First analyzed 5 Aug 2026 16:31 UTC
Last analyzed 8 Aug 2026 15:46 UTC
Last updated 8 Aug 2026 15:44 UTC

Labeling

Label unknown
Label source upload
Traits version 46d16