Chrome Web Store Verified

Intelbras Cloud

by [email protected] · 20.0K users · 2.4 rating
1786891e-1e5d-5670-ae98-9032a5e93d16 | v0.9.0.4
100/ 100
CRITICAL risk
Risk verdict
Do not install

Score-based assessment (critical risk, 100/100). No analyst review available.

Analysis record

Analysed
6 days ago
Version
v0.9.0.4
Artifact
SHA256 15C…65F
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

478 detail rows
Showing 25 of 62 · highest severity first

YARA Rule Matches

15 rules
SeverityRuleHitsFilesMetadata
HIGHshylock

Shylock Banker

1
glibc/Release/lib64/libdhnetsdk.so
Jean-Philippe Teissier / @Jipe_ FP 5%
HIGHsupply chain sourcemap appended iife 2
js/jquery-1.10.1.min.jsassets/js/jquery-1.10.1.min.js
-
LOWpostinstall persistence mechanism 13
glibc/Release/lib64/libppapi_cpp.soglibc/Release/lib64/libc.so.1106743aglibc/Release/lib64/libnacl_io.so +10 more
-
LOWDebuggerStatementsShouldNotBeUsed 1
assets/js/highlight.min.js
-
LOWspyeye 2
glibc/Release/NaclVVeye_x86_64.mapglibc/Release/NaclVVeye_x86_32.map
-
LOWpostinstall obfuscation 49
assets/js/jquery-ui-1.11.0.custom/jquery-ui.min.js_20141218assets/js/jquery.min.jsassets/js/jquery-1.10.1.min.js +46 more
-
LOWpostinstall network communication 71
glibc/Release/lib64/runnable-ld.sojs/device_login/deviceLogin.jsglibc/Release/NaclVVeye_x86_32.nexe +68 more
-
LOWpostinstall crypto operations 53
glibc/Release/lib32/libpthread.so.1106743aglibc/Release/NaclVVeye_x86_64.nexeassets/js/jquery-ui-1.11.0.custom/external/jquery/jquery.js +50 more
-
LOWpostinstall system command 73
js/page_lapse/page_lapse.jsglibc/Release/lib64/runnable-ld.sojs/device_login/deviceLogin.js +70 more
-
LOWpostinstall file manipulation 88
glibc/Release/NaclVVeye_x86_32.nexejs/page_lapse/page_lapse.jsglibc/Release/lib64/runnable-ld.so +85 more
-
LOWNoUseEval 2
assets/js/jquery.easyui.min.jsassets/js/jquery-ui-1.11.0.custom/external/jquery/jquery.js
-
LOWpostinstall file download 39
assets/js/jquery.jsassets/fonts/font-awesome/fonts/fontawesome-webfont.ttfjs/page_playblack/page_playblack.js +36 more
-
LOWNoUseWeakRandom 9
assets/js/jquery-1.10.1.min.jsassets/js/jquery.min.jsjs/page_manage/page_device_manage.js +6 more
-
LOWUntrustedContentShouldNotBeIncluded 3
common.jsimage/arrow_up_icon.pngjs/common1.js
-
LOWSQLInjection 10
assets/js/jquery-ui-1.11.0.custom/jquery-ui.min.jsjs/page_preview/page_preview.jsjs/page_manage/page_device_manage.js +7 more
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

687 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Limited evidence

[email protected]

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

Chrome does not expose the same publisher verification data as IDE stores, so this score is deliberately conservative.

47
Noisy-finding weight
x1.00
Publisher domain
intelbras.com.br
Observed
Store verification signal
Limited signal
Limited
Extension portfolio
3
Portfolio

11 evidence rows available.

Finding Categories

3
Malware Signatures
19
Obfuscation
43
Network
687
IoC Indicators

YARA Rules Matched

15 rules(416 hits)
shylock supply chain sourcemap appended iife postinstall persistence mechanism DebuggerStatementsShouldNotBeUsed spyeye postinstall obfuscation postinstall network communication postinstall crypto operations postinstall system command postinstall file manipulation NoUseEval postinstall file download NoUseWeakRandom UntrustedContentShouldNotBeIncluded SQLInjection

Requested Permissions

3 permissions
fullscreen
Low
alwaysOnTopWindows
Low
http://*.intelbrascloud.com.br/*
Low

Security Analysis Summary

Security Analysis Overview

Intelbras Cloud is a Chrome Web Store extension published by [email protected]. Version 0.9.0.4 has been analyzed by the Risky Plugins security platform, receiving a risk score of 100/100 (CRITICAL risk) based on 1165 security findings.

Risk Assessment

This extension presents critical security risk. Severe issues were detected, potentially including malware indicators, exposed secrets, or dangerous behaviors. Installation is strongly discouraged until these issues are addressed.

Findings Breakdown

  • Critical: 16 finding(s)
  • High: 3 finding(s)
  • Medium: 733 finding(s)
  • Low: 413 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

Intelbras Cloud is published by [email protected] on the Chrome Web Store marketplace. The extension has approximately 20K users.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

About This Extension

Um serviço gratuito oferecido pela Intelbras que permite o acesso ao seu sistema de segurança de maneira rápida e fácil, dispensando redirecionamento de portas e configurações complicadas.

Frequently Asked Questions