logutilkit
MAL-2026-2120
PyPImalware3/23/2026
Description
Malicious code in logutilkit (PyPI)
Indicators of Compromise
SHA256 Hashes (3)
ac7ea80d57c3c34f71f9245d7c01172c9f5dfb7a757274b58253df1c3dff24e7
25a26f2dc6e0a8e2ba3bd43492fbffa597b39065e3f3378ea976dcabddf8fbf8
99cfee951d34b1de812d4091f47268f203c5aa65cc08c6548e433b7267d53d54
Domains (1)
apachelicense.vercel.app
IP Addresses (1)
66.45.225.94
References (4)
https://bad-packages.kam193.eu/pypi/package/logutilkitOSVhttps://www.virustotal.com/gui/file/9a541dffb7fc18dc71dbc8523ec6c3a71c224ffeb518ae3a8d7d16377aebee58/detectionOSVhttps://www.virustotal.com/gui/file/bb2a89001410fa5a11dea6477d4f5573130261badc67fe952cfad1174c2f0eddOSVhttps://socket.dev/blog/contagious-interview-campaign-spreads-across-5-ecosystemsOSV
Details
EcosystemPyPI
Attack Typemalware
Published3/23/2026
Quick Actions