time-server-analysis
MAL-2025-191902
PyPImalware2/25/2025
Description
Malicious code in time-server-analysis (PyPI)
Indicators of Compromise
SHA256 Hashes (4)
1f5c39effd97bdc30fa2ac25092493389ec164216931fc56db4cf2a372841069
5f796bcefeb9b8d3af4bde36c54545d77afdcd6b63284ae58b0a6078b0bbb561
10311e52562738a47d786b814f73f909e8a40fccbdc7326641b290d3b1179883
effa41af816c48d4f56ddba29da0ece7f31d292bcf5270c6dc4317facc329fc8
Domains (2)
checktimeserver.orgaliyun-sdk-requests.xyz
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/time-server-analysisOSV
Details
EcosystemPyPI
Attack Typemalware
Published2/25/2025
Quick Actions