registry  /  internallib_v234  /  1.0.7

internallib_v234@1.0.7

Static Scan Results

scanned 6h ago · by rust-scanner

Static analysis completed at 94.0% confidence. No malicious behavior was detected; 2 low-signal pattern(s) were surfaced and cleared.

Static reason
No blocking static signals were detected.; source fingerprint signature matched known malicious package; routed for review

Decision evidence

public snapshot
Behavioral surface
Source
ChildProcessShell
Supply chainNo supply-chain packaging signals triggered.
ManifestNo manifest risk signals triggered.
scanned 2 file(s), 613 B of source

Source & flagged code

1 flagged · loading source
index.jsView file
matchType = malicious_source_fingerprint_signature signature = cc24d6303ef257bb signatureType = suspicious_hashes sourceLabel = final_verdict:malicious matchedPackage = internallib_v234@1.0.6 matchedPath = index.js matchedIdentity = npm:aW50ZXJuYWxsaWJfdjIzNA:1.0.6 similarity = 1.000 shingleOverlap = 2 summary = package final verdict is malicious
High
Known Malware Source Fingerprint Signature

Source fingerprint signature matches a known malicious package signature; route for source-aware review.

index.jsView on unpkg

Findings

1 High1 Low
HighKnown Malware Source Fingerprint Signatureindex.js
LowScripts Present