Your RSA-2048 keys break in 2030. Find every one of them before attackers do.
Malicious package

mailconfirmernpm

mailconfirmer is a confirmed malicious npm package (MAL-2026-5750) that runs destructive / sabotage code (malicious versions 3.2.34, 3.2.35, 3.2.36…). Do not install it — remove it immediately and rotate any exposed credentials.

Malicious code in mailconfirmer (npm)

MAL-2026-5750
Immediate action
Remove the package, then rotate any secrets the build/runtime could reach.
npm uninstall mailconfirmer

What this malware does

The package advertises itself as an email-confirmation utility, but index.js contains only no-op stubs that console.log demo messages. The real behavior is in scripts.postinstall, which runs install-hook.js. That script holds a 280KB+ base64 string, XOR-decodes it with key 0x42, writes the resulting Windows PE to %TEMP%\tmp_<timestamp>.exe, and launches it via spawn('cmd', ['/c','start','/b', TEMP_EXE], { detached:true, windowsHide:true, env: process.env }) — detached, hidden window, with the installer's full environment passed in. The dropped binary is opaque, unsigned, and not justified by the package's stated purpose. Immediately after launching the binary, install-hook.js writes a cleanup_<ts>.js to %TEMP% and spawns it detached. The cleanup script waits ~90 seconds, then deletes mailconfirmer from the host project's package.json and package-lock.json (with a findstr /v fallback), recursively removes the module's own folder under node_modules via cmd /c rmdir /s /q, and registers a schtasks /create fallback to retry the deletion. This self-erasing behavior is anti-forensics intended to hide the dropper after detonation, tampering with the installer's project manifests in the process. Installer impact on Windows hosts: arbitrary attacker-controlled native code executes on npm install with the user's full environment, and traces of the offending package are scrubbed from the project tree.

Any computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.

Malicious versions

47 flagged
3.2.343.2.353.2.363.2.383.2.393.3.113.3.123.3.133.3.153.3.163.3.173.3.183.3.193.3.203.3.213.3.223.3.233.3.243.3.253.3.263.3.273.3.283.3.293.3.303.3.313.3.323.3.333.3.343.3.353.3.363.3.373.3.383.3.393.3.413.3.423.3.433.3.443.3.453.3.463.3.473.3.483.3.513.3.523.3.533.3.543.3.553.3.58

Indicators of compromise (SHA-256)

ab3cad84eca57c86cc11c7bdd3e072acac609d4f034da4f5c72b38461167ee78
de9ef8c8cab85ca4e823488834021667649cf2de0712bf45f5e8018160b4263f
e52f457c75436cfdff28cbf77522b7fd1e8c4470cee05d2058b6dbb3ad3c9adb
eede6f1c9fae38c807231ada52a36f68c02665da89e136a5067c7b2fbd2e278d
fa2d157af30e6767ee02f791a0371ca0be7f3f9d4e8b3ebb949ef7f7c0b3a1aa
fbadb3bfdda7f6b7d425f83f9d5007a59d92c19c75fee43181a471a5627fac7f
b407412bea355d5ff296e45c1b9fc4afdcd20624f98a8bf3f32cb37ef64b2f41
d66737fba6d2c0034f50352ebfa965356b9f75500f2adc19833be3628b7b9430
c43cfccea6627445299d1a18d897f564e4610561fba85e20bd600d220918bc08
fe6e4238c7d06ee494cc058621c32c1f5e5ac862c0f51eb5602c606482a51c81
4c0dba18b93c2e2761bd877ff2febd7fbbb225e2ea185866b9a6bd4145f959d3
ae541a902f73e2de2bd99456e01c11067a93875c80abde0d6dd1619a12fbf19d
e1250c4ef040a535924ca7ee499fc2a36062b78877df9d438dda1e1730e3f7cf
2954edc27f88d20b40849c5acc0c767f93d3494109c990b7c740c5b024c2e5e8
47deebec60df0408e6b3695be4006e27da5f9f8fc57240314c73f528e38eb03b
7835644412aa1eac4b85ee65bd6a604909c0fa74ab13e380980128ead555aa13
8c2ef5e9fb2c782cffa3fe85d78cd36e8d181312d602d905fe2152d1a41ef9ee
642b07f04633e24d6fa9f706f0bd1c6b4a6b377097c251383c9c108ad61baae1
7876a369c430a99441b261c79640394b0f4275c16aab71a17edbcb47d5084741
8b61fea165c909570b96288a7e7076bd0e8b2372785f545edb50a735d71fa867
91428fc68c7a2c1dac155ae81018a1f3c50a0898817c62c265e1c17565c01b35
9933f1e26bd3e09fff39c8474ef14f4c26ca368f2c49d801d869a853a905246c
f400ceca841f121b69e3491e3beff0013e3530b7eca8a5e6efa9c2ed034977b9
0c926b45ccc6f73ff7489354d07ef7a0ebbe5e10af83edf5081d4cb2482e9e41
77804192d2d4bf2bbca46d975d982cdbbf61f1afcb0256e48f298a8e179db1bc
9ee8735a788175ac76593cc58d41a253a19b86d2fdb8cc38cb3517ed6963219d
1077351efea0e6287abf70f1fa8799799142cac8223019595948fa373d73534e
2f909b4f1d1f9d15451f563aed233ce3239f8004a3b8912fbfc8c7d2a5a1b0e0
48eba03f8f1300c01b3687906d85b684c69c9552baecfe2a1f45be8130827a00
dfb184ffa15fd011b84658a6b5cd68582e78827258a8373f0da1ef34248bfb09
18a21f2fe429974b77fe76da225deba9499c4cedb596d654a5d221e32da29b94
3852d21a5d489f8b12da94e9ce22a3624e5a569208ab1e71423f13c8485ac706
479eb9985277414e94d42e9bb8c0a68c0cb0c324364d3d2d1fe0a46fde522593
4238120e52fb0af590df03427ce596434ea560124288cd88bf0d5274b489afb4
4bce24fd06093063011bb8aa8c52282b51a685658f247681b91629f92e832770
8eeb1ca2efe5dd95b674d5222210ee31e19a5dba4ef6c2a8e3ff9bb3cca107ba
b37a89f22743523a81ece1b012f2af33732a961d8e33a7ffc262a6b01178928d
fc32a141661948aae43466b72af3285c946943211cd7d114976c4664628997a8
18002c66df6c31303b185a7358e21371d9ea649800308283377542e6a67ab289
27db2aefa76406519435d87aed757d090c1316563c2b94ff0d0f051ce6a2b097
b01dd6d98ad877db72d4a0a40785f0b4605668982186ced2f9c26473c809460c
ec77a2de3295a9308499152de92c90d6982143abae15ef54d253edc82e6fcb34
2abe0078dda404f50a345b92be74903b6d41eddc9fda824315cfa8364fe43daa
824060babc300865e907e0ac62d0eae988432885a74685311df01efd14bb0e8d
927c4251756045fbc55862dfb3fc4100f301da06eb87e23b77fb35f51e1bffb1
b8c19efa85d26533ef005e25225fd080006b10a8af06db14617f54ecf8f20b30
f827c15d1d80375727d870ea4c22c9099dc1f18ee904561d9cec3e3aaa48b941
d01c922e66894121e2c1f19cead16d7facf5662c17a483301131d8c9855a9f32
aab64ae25a98927d2d1a223ff6ba1f1085c7deaf8c39b54c7709319994018e25

Detection & response playbook

Destructive / sabotage
  1. Find it

    Scan your lockfiles (package-lock.json, pnpm-lock.yaml, yarn.lock, requirements.txt, poetry.lock, etc.) and build artifacts for mailconfirmer (47 malicious versions). O3 Security's supply-chain scanner checks every dependency against known-malicious package intelligence at install time and in CI, flagging mailconfirmer across your stack and pipelines.

  2. If you installed it — respond

    mailconfirmer carries a destructive/sabotage payload. Remove it immediately, restore any affected data from clean backups, and verify integrity of build outputs that may have been tampered with.

  3. Did it already run?

    If mailconfirmer was ever installed, its post-install/runtime payload may have already executed. O3's L7 egress monitoring and runtime eBPF sensors detect the credential exfiltration or command-and-control callback after install and block the malicious outbound channel, so you catch and contain the actual compromise — not just the presence of the package.

  4. How O3 protects you

    O3 blocks mailconfirmer before install through its supply-chain scanner, and if it has already run, detects and severs the exfiltration or C2 callback at runtime through L7 egress monitoring and eBPF.

Frequently asked questions

No. mailconfirmer on npm has been identified as a malicious package (versions 3.2.34, 3.2.35, 3.2.36, 3.2.38, 3.2.39, 3.3.11, 3.3.12, 3.3.13, and 39 more flagged). It should be removed immediately — do not install or keep it in your dependency tree.

Campaign

IN-MAL-2026-006411IN-MAL-2026-006407IN-MAL-2026-006405IN-MAL-2026-006410IN-MAL-2026-006406IN-MAL-2026-006408IN-MAL-2026-006409IN-MAL-2026-006404IN-MAL-2026-006479IN-MAL-2026-006474IN-MAL-2026-006476IN-MAL-2026-006481IN-MAL-2026-006478IN-MAL-2026-006475IN-MAL-2026-006480IN-MAL-2026-006477IN-MAL-2026-006482IN-MAL-2026-006614IN-MAL-2026-006654IN-MAL-2026-006615IN-MAL-2026-006613IN-MAL-2026-006653IN-MAL-2026-006728IN-MAL-2026-006739IN-MAL-2026-006738GHSA-4rw6-v77j-67gxIN-MAL-2026-006770IN-MAL-2026-006772IN-MAL-2026-006771IN-MAL-2026-006773IN-MAL-2026-008903IN-MAL-2026-008823IN-MAL-2026-008904IN-MAL-2026-008931IN-MAL-2026-008921IN-MAL-2026-008924IN-MAL-2026-008913IN-MAL-2026-008928IN-MAL-2026-008932IN-MAL-2026-008918IN-MAL-2026-008917IN-MAL-2026-008926IN-MAL-2026-008923IN-MAL-2026-008911IN-MAL-2026-008927IN-MAL-2026-008929IN-MAL-2026-008919IN-MAL-2026-008925IN-MAL-2026-009490

References

Credits

  • Amazon Inspector · finder

Detect & block this

O3 blocks mailconfirmer-class packages before install and in CI — and if it already ran, its runtime egress monitoring catches the malicious outbound activity and severs the channel.

Explore

mailconfirmer (npm) malicious package — MAL-2026-5750 | O3 Security