Analyze your own packages withvet GitHub

ecinc-cloud-moaxmpp@9.6.234

Suspicious
Analyzed at:7/13/2025, 11:55:47 AM
Source:https://registry.npmjs.org/ecinc-cloud-moaxmpp/-/ecinc-cloud-moaxmpp-9.6.234.tgz
SHA256:4d1ad10a6a083df2a700c8ad31f4b55c58fb2c1ae799cfc5445c75c9b9d9a109
Confidence:Medium
Summary

This analysis was performed using vet and SafeDep Cloud Malicious Package Analysis. Integrate with GitHub using vet-action GitHub Action.

Package exhibits multiple malicious behaviors: Office doc access/encryption, DB interaction, local storage clearing, arbitrary code execution, /dev/shm ref.

Details

The package exhibits multiple indicators of malicious behavior. It accesses and potentially encrypts/archives office documents, interacts with databases based on environment variables, clears local storage without justification, and uses eval and Function constructor which allows arbitrary code execution. The presence of /dev/shm reference is also suspicious.