The package is not classified as malware due to a single low-confidence YARA rule match indicating multiple GCC versions used for building.
No verification record available.
The YARA rule multiple_gcc_high matched the file rollup.linux-riscv64-gnu.node. While this indicates the file was built with multiple versions of GCC, it is not sufficient evidence to classify the package as malware. The confidence level is low, and there are no other strong indicators of malicious behavior. Without further evidence, it's safer to assume this is a legitimate build process, possibly involving cross-compilation or other valid techniques.