-= Per source details. Do not edit below this line.=-
During installation, the package starts a reverse shell.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-03-old-qyrm-pipinject4
Reasons (based on the campaign):
{
"malicious-packages-origins": [
{
"sha256": "9a21af6fd1f0c3069036b62cd769efe0cd35077f9141b1454397e44561c73461",
"modified_time": "2026-03-21T15:46:26.87919Z",
"source": "kam193",
"import_time": "2026-03-21T16:10:28.597653567Z",
"versions": [
"1.0"
],
"id": "pypi/2026-03-old-qyrm-pipinject4/qyrm-pipinject4"
}
]
}