MAL-2026-1499
Dashboard / Malicious Package / MAL-2026-1499
MAL-2026-1499
Summary: Malicious code in anistream (PyPI)
Details: Source: kam193 (57e4902ca2172a78b93acf6ec1413ab098e72c158dc1ab74c3a84f28f50382f1) Package hides code that downloads and runs malware, likely an infostealer. The code is not directly called in the package suggesting it's a dependency or next stage in the infection chain. Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-03-anistream Reasons (based on the campaign): - Downloads and executes a remote executable. - infostealer - malware
References: https://www.virustotal.com/gui/file/58d2134fcd3a97e5a9668e5ffd515d0a93ba7b6935041e1a47cabdcf448ffc66, https://bad-packages.kam193.eu/pypi/package/anistream
Affected packages
Package
Name: anistream
Purl: pkg:pypi/anistream
Affected ranges
Type: N/A
Events:
