time-server-analyzer
MAL-2025-191903
PyPImalware2/25/2025
Description
Malicious code in time-server-analyzer (PyPI)
Indicators of Compromise
SHA256 Hashes (4)
aab02b8f1aa98a69e7c2761b0bc8660e04886ef0a5ba0a7818ae139ec1827010
95abdeda4b05cb93bb442d77d1b339498503b1fddb72e3579359f39c5952513b
b8146e88c1a0975f4fef516a10b411f10dd9d474f62b83abb331c773fb4dfee2
c2180252aa10b29ed4ba6b06e80152b041ee9e8e31eceee81cc00d667ea5dfe5
Domains (2)
checktimeserver.orgaliyun-sdk-requests.xyz
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/time-server-analyzerOSV
Details
EcosystemPyPI
Attack Typemalware
Published2/25/2025
Quick Actions