Hostile 100% javascript Download

mamadoos-test 11.0.0

Preinstall exfiltrates system info to OOB

Curl exfils sysinfo to webhook/OOB serviceInstall script performs data exfiltration
SHA-256db7e1ff134b60fc4abb4dcf79103463795e51db8a2d801b0a512289fa9484836

Also flagged by osv (MAL-2026-4605: Malicious code in mamadoos-test (npm)) +2 more.

Evidence

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.