{"id":"MAL-2025-48667","summary":"Malicious code in dhpgemrdhs94006 (npm)","details":"The package dhpgemrdhs94006 was found to contain malicious code.\n\n---\n_-= Per source details. Do not edit below this line.=-_\n","modified":"2025-12-02T10:09:35.728352Z","published":"2025-10-26T19:03:27Z","database_specific":{"malicious-packages-origins":[{"modified_time":"2025-12-01T13:08:18Z","source":"reversing-labs","sha256":"306d4fdc31d624ce9c248c7323e1a19443e98b92bf9489a64f0c8a4e9effe6eb","import_time":"2025-12-02T09:09:46.739538659Z","id":"RLMA-2025-05760","versions":["1.250909.11837","1.250910.11450","1.250910.11554","1.250910.11838","1.250912.10931","1.250914.11056","1.250917.11518","1.250917.11920","1.250922.11825","1.250924.11133"]}]},"references":[{"type":"WEB","url":"https://www.getsafety.com/blog-posts/javascript-rat-targets-banks"}],"affected":[{"package":{"name":"dhpgemrdhs94006","ecosystem":"npm","purl":"pkg:npm/dhpgemrdhs94006"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"versions":["1.250909.11837","1.250910.11450","1.250910.11554","1.250910.11838","1.250912.10931","1.250914.11056","1.250917.11518","1.250917.11920","1.250922.11825","1.250924.11133"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/dhpgemrdhs94006/MAL-2025-48667.json"}}],"schema_version":"1.7.3","credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"},{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}