live · scanning repos
Scanrepo
github.com
github.com / rafiindistira

rafiindistira/Atria-bot

Python·9 files·commit d92c3da·scanned 2h ago·cached ✓
17/100
LOW RISK
Minor findings consistent with the project type. Nothing reachable from install hooks.
verdict accurate?
Created 6 days ago
Created in the last 7 days
threat-state: lowlive

FINDINGS ░▒▓

warningSuspicious Windows batch commandBatch file contains commands commonly used to download and execute remote payloads (powershell, certutil, bitsadmin, curl to pipe, etc.).run.bat
echo ============================================
powershell -NoProfile -ExecutionPolicy Bypass -File run_step1.ps1
if errorlevel 1 (
  echo [ERROR] astra_glogin.py failed
+5
infoSuspicious file in repoExecutable file (run.bat) in repositoryrun.bat+2
infoSuspicious file in repoExecutable file (run_step1.ps1) in repositoryrun_step1.ps1+2
infoSuspicious file in repoExecutable file (run_step2.ps1) in repositoryrun_step2.ps1+2

Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.

3 files scanned @ d92c3da | 9/25/2026 | heuristic scan — always review manually

risk by category
code execution5
network & exfiltration0
file system access0
obfuscation0
supply chain6
owasp / injection0
telemetry
files 3/9rules hit 4engine v6commit d92c3da

github

rafiindistira/Atria-bot

Auto Regis and inject 9Router

Python
25
17
6d
9 files
3 scanned(33%)
d92c3da

architecture░▒▓

entry (0) flagged (0) pkg (7)
9 nodes · 10 edgesscroll to zoom · click node to jump to finding