Chrome Web Store

Discord VPN | Расширение для браузера – надежный доступ к Discord

by [email protected] · 10.0K users · 3.8 rating
37697c12-084a-5e55-a5f6-98d6311984ad | v3.1
57/ 100
MEDIUM risk
No change since v2.7
Threat verdict
Do not install

Confirmed member of a tracked malicious supply-chain campaign.

Analysis record

Analysed
6 days ago
Version
v3.1
Artifact
SHA256 3D5…D3B
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

61 detail rows

YARA Rule Matches

12 rules
SeverityRuleHitsFilesMetadata
LOWpostinstall persistence mechanism 16
font/Nunito/Nunito-Light.ttffont/Nunito/Nunito-BoldItalic.ttffont/Nunito/Nunito-Regular.ttf +13 more
-
LOWLocalStorageShouldNotBeUsed 4
settings/main.jspopup/main.jstutorial/main.js +1 more
-
LOWpostinstall file download 1
js/bg.js
-
LOWSQLInjection 1
js/jquery.js
-
LOWNoUseWeakRandom 3
js/bg.jspopup/main.jsjs/jquery.js
-
LOWpostinstall crypto operations 3
js/jquery.js_metadata/verified_contents.jsonjs/bg.js
-
LOWpostinstall system command 7
settings/main.jspopup/main.jstutorial/main.js +4 more
-
LOWpostinstall file manipulation 5
popup/main.jstutorial/main.jsjs/jquery.js +2 more
-
LOWpostinstall environment access 1
js/bg.js
-
LOWpostinstall obfuscation 3
popup/main.jsjs/jquery.jsjs/bg.js
-
LOWpostinstall network communication 11
popup/main.jssettings/night.cssjs/conf.js +8 more
-
LOWAlertStatementsShouldNotBeUsed 1
popup/main.js
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

262 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Limited evidence

[email protected]

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

Chrome does not expose the same publisher verification data as IDE stores, so this score is deliberately conservative.

49
Noisy-finding weight
x1.00
Publisher domain
No domain
Missing
Store verification signal
Limited signal
Limited
Extension portfolio
22
Portfolio

11 evidence rows available.

Finding Categories

5
Network
262
IoC Indicators

YARA Rules Matched

12 rules(56 hits)
postinstall persistence mechanism LocalStorageShouldNotBeUsed postinstall file download SQLInjection NoUseWeakRandom postinstall crypto operations postinstall system command postinstall file manipulation postinstall environment access postinstall obfuscation postinstall network communication AlertStatementsShouldNotBeUsed

Requested Permissions

8 permissions
proxy

Control the browser's proxy settings

Dangerous
<all_urls>

Access and modify data on every website you visit

Dangerous
webRequest

Intercept, modify, and block all network requests

High
browsingData
Medium
storage
Low
webRequestAuthProvider
Low
notifications
Low
offscreen
Low

Security Analysis Summary

Security Analysis Overview

Discord VPN | Расширение для браузера – надежный доступ к Discord is a Chrome Web Store extension published by [email protected]. Version 3.1 has been analyzed by the Risky Plugins security platform, receiving a risk score of 56.82/100 (MEDIUM risk) based on 323 security findings.

Risk Assessment

This extension presents moderate security risk. Several findings were detected that may warrant attention. Users should carefully review the permissions and findings before installation.

Findings Breakdown

  • Medium: 267 finding(s)
  • Low: 56 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

Discord VPN | Расширение для браузера – надежный доступ к Discord is published by [email protected] on the Chrome Web Store marketplace. The extension has approximately 10K users.

Recommendation

Exercise caution with this extension. Review the detailed findings and ensure the requested permissions align with the extension's stated functionality before installation.

Chrome version history

Risk trend by version

3 analyzed versions. Each point is the latest successful scan for that version; failed zero-score scans are hidden. Dates are based on first seen by risky plugins.

Selected
57
Change since first
No change
Change from previous
No change
Versions:
First analyzed version
2.6
Mar 11, 2026
Risk range
57 to 57
Across analyzed versions
Latest analyzed version
3.1
Jul 7, 2026
Selected version
medium
Version
v3.1
2 months ago
Risk score
57
Findings
323
Change vs previous
0

Pick any point on the chart to explore that version's code below.

About This Extension

Discord VPN – безопасный доступ без ограничений к сайту Дискорд. ‼️Все работает кроме звонков. Звонки не работают через расширение для браузера. 🔓 Обходите блокировки Discord в 1 клик Получайте стабильный доступ к Discord из любой точки мира. Установил → нажал кнопку → Discord работает. Никаких настроек и сложных инструкций! 📜 Строгая политика "No-Logs" Мы не храним историю ваших подключений и не передаем данные третьим лицам. 🔥 Основные возможности: • Работает с веб-версией • Не требует регистрации • Неограниченный трафик • Легковесное расширение 📌 Идеально для: ✓ Геймеров с ограниченным доступом ✓ Путешественников за границей ✓ Пользователей, ценящих конфиденциальность ✓ Студентов в учебных заведениях 📥 Установите сейчас – общение без границ! 💡 Бесплатная версия доступна | Премиум-версия увеличивает скорость #DiscordVPN #РазблокироватьDiscord #БезопасныйДоступ ❗Политика конфиденциальности / Privacy policy 👇 https://telegra.ph/Politika-konfidencialnosti--Privacy-policy-06-30

Frequently Asked Questions