The package is not malware. The YARA rule match is likely a placeholder URL in a type definition file.
No verification record available.
The YARA rule hardcoded_host_port_over_10k matched in the http2.d.ts file. The matched pattern http://example.org:8000 is likely a placeholder or example URL within the type definition file. This does not strongly indicate malicious behavior, especially considering this is a type definition file and the confidence is low. There is no other evidence to suggest that this package is malware.