-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified '@test3.svt/first-npm-package-test' @ 1.0.1 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"versions": [
"1.0.1"
],
"modified_time": "2024-10-03T12:43:13Z",
"import_time": "2024-10-03T12:46:07.588413453Z",
"source": "ossf-package-analysis",
"sha256": "c1c2ce1077d3778b7ed51e8d98f9ba6a9cd57e2be0c134fe9bda021d3a10248b"
},
{
"versions": [
"1.0.4"
],
"modified_time": "2024-10-03T14:45:50Z",
"import_time": "2024-10-03T15:05:50.597534469Z",
"source": "ossf-package-analysis",
"sha256": "f92dd68be15adaab85b9f4b8364e264c2bd6af3fe74810352a6ed04fbf3b4bf1"
},
{
"versions": [
"1.0.7"
],
"modified_time": "2024-10-04T07:15:45Z",
"import_time": "2024-10-04T07:34:21.768767361Z",
"source": "ossf-package-analysis",
"sha256": "90dbe682892e0d79ba3ddfd2a10b15030f8402fe744d6543a62cb85ae1ed3f33"
},
{
"versions": [
"1.0.9"
],
"modified_time": "2024-10-04T12:20:45Z",
"import_time": "2024-10-04T12:45:59.103956679Z",
"source": "ossf-package-analysis",
"sha256": "1b13251c5e94b81ce5a6f68d80cf76cc5a436940a04e90ead392ae491070fad6"
},
{
"versions": [
"1.1.8"
],
"modified_time": "2024-10-08T07:40:47Z",
"import_time": "2024-10-08T08:06:57.614610288Z",
"source": "ossf-package-analysis",
"sha256": "16682c9d188855723cc49a64df1a5678ab5b80e9a79026ea0b15704babf3f0c6"
},
{
"versions": [
"1.1.5"
],
"modified_time": "2024-10-08T07:35:42Z",
"import_time": "2024-10-08T08:06:57.489613986Z",
"source": "ossf-package-analysis",
"sha256": "2b1b5c48f5ae939b8d526e9e2c64b6abbdf23f5c60ea0d55a7a86f234c51f89f"
}
]
}