-= Per source details. Do not edit below this line.=-
This package is malicious and typosquating the legitimate pyspellchecker library. This package will deploy a remote-access trojan that allows the attacker full control of the victim's host.
{
"iocs": {
"domains": [
"dothebest.store"
],
"urls": [
"dothebest.store/allow/inform.php",
"dothebest.store/refresh.php"
]
},
"malicious-packages-origins": [
{
"sha256": "762292d92c617c287b3c6b54f7c4a8b8630e7dd893b40dd05bade462fec7ca26",
"modified_time": "2025-12-02T00:36:12Z",
"import_time": "2025-12-02T00:36:18.917048Z",
"versions": [
"0.0.1"
],
"source": "google-open-source-security",
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
]
}
]
}