network_egress_test
Fail
Audited by Socket on Feb 26, 2026
1 alert found:
MalwareMalwareTOOL.py
HIGHMalwareHIGH
TOOL.py
This module contains explicit, high-risk malicious functionality: clear data exfiltration to multiple hardcoded external endpoints and a remote command-and-control fetch whose response is executed locally via exec(), enabling arbitrary remote code execution. Treat this as malicious: remove from systems, block listed endpoints at network perimeter, and investigate any hosts that executed this code. The implementation is sloppy (bare except handlers and a typo), but that does not reduce the severity of the backdoor/exfiltration behavior.
Confidence: 75%Severity: 90%
Audit Metadata