VYPR

pypi · Malicious package advisory

Malware

syswatch

GHSA-mpch-m5gg-4894

Malicious code in syswatch (PyPI)

Details

**Severity:** Critical

**Affected versions:** `= 1.0.0`

## Source: kam193 (e01fd8b85a9d6bdfbefb70261f49496f8a6c224d98da6400ef0ca06f18404d27)
During import, malicious code is started in the background. On Windows, it downloads and installs a malicious executable, and disguises it as a system utility. After installation, the code attempts to cover its tracks by cleaning logs and removing downloaded files. The installed executable is a heavily obfuscated malware with multiple sandbox evasion techniques, finally running an infostealer identifying itself as "Snow Stealer". It collects at least browser data and modifies cryptowallet applications.


---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.


Campaign: 2026-08-envprovision


Reasons (based on the campaign):


 - infostealer


 - Downloads and executes a remote executable.


 - obfuscation


 - action-hidden-in-lib-usage


 - exfiltration-browser-data


 - The package contains code to detect if it is running in a sandbox environment.


 - exfiltration-crypto


 - malware


 - covering-tracks


 - persistence

---

Credit: [OpenSSF](https://github.com/ossf/malicious-packages) ([source](https://github.com/ossf/malicious-packages/blob/047ae5511245cfdfc1f48e09eb4f300a3581e7f3/osv/malicious/pypi/syswatch/MAL-2026-15811.json))

**References:**
- https://bad-packages.kam193.eu/pypi/package/syswatch
- https://github.com/ossf/malicious-packages/blob/047ae5511245cfdfc1f48e09eb4f300a3581e7f3/osv/malicious/pypi/syswatch/MAL-2026-15811.json
- https://www.virustotal.com/gui/file-analysis/MGQ3ZGViMWFhYzU0YjY3ODllZWI1ZGJkMDY4Nzk3NGM6MTc4NzUxODgyOQ==
- https://www.virustotal.com/gui/file/d49fa53949d9350ee34c4e1279ee72e6fafc294ae338825f66c33c7f188b878c/details
- https://github.com/ossf/malicious-packages/blob/ca35a319f3c5255ac2d7f28cf58023d75de17a35/osv/malicious/pypi/syswatch/MAL-2026-15811.json
- https://pypi.org/project/syswatch/1.0.0
- https://github.com/advisories/GHSA-mpch-m5gg-4894

Compromised versions (1)

  • = 1.0.0

Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.