Analyze your own packages withvet GitHub

182-23run@1.0.0

Suspicious
Analyzed at:7/3/2025, 2:07:50 AM
Source:https://registry.npmjs.org/182-23run/-/182-23run-1.0.0.tgz
SHA256:f5ef7fa35f63bb847b3e67473debef8b1c1849cbfefcd76e7bf0f47c270c23e1
Confidence:Medium
Summary

This analysis was performed using vet and SafeDep Cloud Malicious Package Analysis. Integrate with GitHub using vet-action GitHub Action.

The package is malicious due to HTML injection in index.js redirecting to adult/malicious sites and a YARA match on a suspicious URL.

Details

The package is a malware because the index.js file injects HTML into the document body that contains links to adult content websites and potentially malicious sites. The injected HTML redirects users to external sites without their explicit consent. The YARA rule exotic_tld also matched a suspicious URL in the index.js file.