MAL-2024-10031

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/gentorqkkh1/MAL-2024-10031.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-10031
Published
2024-07-21T11:39:54Z
Modified
2025-12-31T02:58:26.927441Z
Summary
Malicious code in gentorqkkh1 (PyPI)
Details

-= Per source details. Do not edit below this line.=-

## Source: kam193 (23c1a7041a4424ef67ce4e182aee3ead70dc15aacd94d20d63b5f7028224d75c)

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2024-07-ronnyfredd-exfiltr-clipboard

Reasons (based on the campaign):

  • peristence-autorun

  • clipboard-stealing

    -

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "e0f1624d6c01ba26c7fcb7ffb8a659b2aee3dcb6992625961e93d19fd63c74ae",
            "import_time": "2024-10-24T00:56:59.796024427Z",
            "id": "RLMA-2024-08313",
            "modified_time": "2024-10-16T14:41:35Z",
            "source": "reversing-labs",
            "versions": [
                "0.1",
                "0.2"
            ]
        },
        {
            "sha256": "22b8e8b7612572e0413e4cbe22a22183a6a7c767e0f7c00fa4c8c8c45342639f",
            "import_time": "2025-12-02T22:30:55.21817366Z",
            "id": "pypi/2024-07-ronnyfredd-exfiltr-clipboard/gentorqkkh1",
            "modified_time": "2024-07-21T11:39:54Z",
            "ranges": [
                {
                    "events": [
                        {
                            "introduced": "0"
                        }
                    ],
                    "type": "ECOSYSTEM"
                }
            ],
            "source": "kam193"
        },
        {
            "sha256": "23c1a7041a4424ef67ce4e182aee3ead70dc15aacd94d20d63b5f7028224d75c",
            "import_time": "2025-12-02T23:07:18.239956341Z",
            "id": "pypi/2024-07-ronnyfredd-exfiltr-clipboard/gentorqkkh1",
            "modified_time": "2024-07-21T11:39:54Z",
            "ranges": [
                {
                    "events": [
                        {
                            "introduced": "0"
                        }
                    ],
                    "type": "ECOSYSTEM"
                }
            ],
            "source": "kam193"
        },
        {
            "sha256": "a3d98ba1080ae4e791f828e63715db88a37328e2200a1517b6cdf68232847943",
            "import_time": "2025-12-10T21:38:57.505583585Z",
            "id": "pypi/2024-07-ronnyfredd-exfiltr-clipboard/gentorqkkh1",
            "modified_time": "2024-07-21T11:39:54Z",
            "source": "kam193",
            "versions": [
                "0.2",
                "0.1"
            ]
        },
        {
            "sha256": "ef6834f0460f440202429853bfd069b72bee75c4e5ae5511ef5542b62efdd543",
            "import_time": "2025-12-30T22:39:04.087591959Z",
            "id": "pypi/2024-07-ronnyfredd-exfiltr-clipboard/gentorqkkh1",
            "modified_time": "2024-07-21T11:39:54Z",
            "source": "kam193",
            "versions": [
                "0.1",
                "0.2"
            ]
        }
    ]
}
References
Credits

Affected packages

PyPI / gentorqkkh1

Package

Affected ranges

Affected versions

0.*

0.1
0.2

Database specific

source

"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/gentorqkkh1/MAL-2024-10031.json"