github.com / andromechanic
andromechanic/ JUNE
Python·43 files·commit 943532e·scanned 2h ago·cached ✓
29/100
LOW RISK
Minor findings consistent with the project type. Nothing reachable from install hooks.
verdict accurate?
Created 22 days ago
Created 22 days ago
threat-state: lowlive
FINDINGS ░▒▓
warningSuspicious Windows batch commandBatch file contains commands commonly used to download and execute remote payloads (powershell, certutil, bitsadmin, curl to pipe, etc.).start.bat
rem ---- Ensure Ollama is running -----------------------------------------
powershell -NoProfile -Command "try { (Invoke-WebRequest -Uri 'http://localhost:11434' -UseBasicParsing -TimeoutSec 2).Statu...+5warningHigh-entropy string literalsFound 5 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.ai-visualizer/core.js+3
warningHigh-entropy string literalsFound 3 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.backtalk/backtalk/ears.py+3
warningHigh-entropy string literalsFound 4 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.backtalk/backtalk/main.py+3
Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.
18 files scanned @ 943532e | 9/25/2026 | heuristic scan — always review manually
risk by category
code execution7
network & exfiltration0
file system access0
obfuscation12
supply chain4
owasp / injection0
telemetry
files 18/43rules hit 7engine v6commit 943532e
github
andromechanic/JUNE
0
1
22d
43 files
18 scanned(42%)
943532e
architecture░▒▓
entry (0) flagged (4) pkg (38)
50 nodes · 70 edgesscroll to zoom · click node to jump to finding