{"schema_version":"1.7.3","id":"MAL-2025-48661","published":"2025-10-26T19:03:27Z","modified":"2025-12-02T10:09:34.889023Z","summary":"Malicious code in dhpgemrdhs92007 (npm)","details":"The package dhpgemrdhs92007 was found to contain malicious code.\n\n---\n_-= Per source details. Do not edit below this line.=-_\n","affected":[{"package":{"name":"dhpgemrdhs92007","ecosystem":"npm","purl":"pkg:npm/dhpgemrdhs92007"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"versions":["1.250613.11337","1.250613.11348","1.250613.11356","1.250613.11359","1.250613.11405","1.250613.11409","1.250613.11623","1.250613.11633","1.250614.11345","1.250614.11914","1.250614.11944","1.250614.12045","1.250614.12049","1.250616.11423","1.250617.11905","1.250618.10904","1.250618.10912","1.250618.10943","1.250618.11316","1.250618.11333","1.250618.11338","1.250618.11350","1.250618.11401","1.250618.11439","1.250618.11446","1.250618.11456","1.250618.11543","1.250618.11613","1.250618.11625","1.250618.11629","1.250618.12154","1.250619.11037","1.250619.11100","1.250620.10922","1.250620.11139","1.250620.11143","1.250620.11152","1.250620.11305","1.250620.11404","1.250620.11516","1.250621.12138","1.250621.12142","1.250621.12150","1.250621.12211","1.250621.12216","1.250621.12219","1.250621.12222","1.250622.11710","1.250622.11729","1.250623.10929","1.250623.11449","1.250623.11557","1.250624.10913","1.250624.11146","1.250624.11313","1.250624.11342","1.250628.11523","1.250628.11529","1.250628.11534","1.250628.11544","1.250628.11547","1.250628.11604","1.250628.11609","1.250628.11802","1.250630.11442","1.250630.11456","1.250630.12016","1.250702.11001","1.250702.11523","1.250702.11629","1.250703.11559","1.250713.11312","1.250725.11617","1.250729.11557","1.250731.10832","1.250806.12030","1.250807.11323","1.250809.11719","1.250813.12031","1.250814.11151","1.250814.11318","1.250814.11410","1.250820.12010","1.250910.11820","1.250918.11409","1.250918.11951","1.250924.11816"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/dhpgemrdhs92007/MAL-2025-48661.json"}}],"references":[{"type":"WEB","url":"https://www.getsafety.com/blog-posts/javascript-rat-targets-banks"}],"database_specific":{"malicious-packages-origins":[{"id":"RLMA-2025-05755","import_time":"2025-12-02T09:09:46.375544498Z","modified_time":"2025-12-01T13:08:12Z","sha256":"9c7ee80fbf4548ed0f39cc90609f1e25fe5a8ad3d0ebb12fd8e6167fe82ef671","source":"reversing-labs","versions":["1.250613.11337","1.250613.11348","1.250613.11356","1.250613.11359","1.250613.11405","1.250613.11409","1.250613.11623","1.250613.11633","1.250614.11345","1.250614.11914","1.250614.11944","1.250614.12045","1.250614.12049","1.250616.11423","1.250617.11905","1.250618.10904","1.250618.10912","1.250618.10943","1.250618.11316","1.250618.11333","1.250618.11338","1.250618.11350","1.250618.11401","1.250618.11439","1.250618.11446","1.250618.11456","1.250618.11543","1.250618.11613","1.250618.11625","1.250618.11629","1.250618.12154","1.250619.11037","1.250619.11100","1.250620.10922","1.250620.11139","1.250620.11143","1.250620.11152","1.250620.11305","1.250620.11404","1.250620.11516","1.250621.12138","1.250621.12142","1.250621.12150","1.250621.12211","1.250621.12216","1.250621.12219","1.250621.12222","1.250622.11710","1.250622.11729","1.250623.10929","1.250623.11449","1.250623.11557","1.250624.10913","1.250624.11146","1.250624.11313","1.250624.11342","1.250628.11523","1.250628.11529","1.250628.11534","1.250628.11544","1.250628.11547","1.250628.11604","1.250628.11609","1.250628.11802","1.250630.11442","1.250630.11456","1.250630.12016","1.250702.11001","1.250702.11523","1.250702.11629","1.250703.11559","1.250713.11312","1.250725.11617","1.250729.11557","1.250731.10832","1.250806.12030","1.250807.11323","1.250809.11719","1.250813.12031","1.250814.11151","1.250814.11318","1.250814.11410","1.250820.12010","1.250910.11820","1.250918.11409","1.250918.11951","1.250924.11816"]}]},"credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"},{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}