Is "PhoenixTool" on JetBrains Marketplace Safe to Install?

yuan zhen · jetbrains · v1.4-version

PhoenixTool is used to publish the system.It integrates the company's existing systems to deploy code. 凤凰社工具组-目标是整合目前公司所有研发可用到的相关系统到此插件,一个插件搞定所有系统的使用问题(仅供京东开发内网使用...

Risk Assessment

Analyzed
100
out of 100
CRITICAL

293 security findings detected across all analyzers

JetBrains plugin analyzed via plugin.xml configuration and static code analysis

Severity Breakdown

0
Critical
67
High
204
Medium
0
Low
0
Info

Finding Categories

67
Malware Signatures
204
IoC Indicators

YARA Rules Matched

8 rules(67 hits)
postinstall obfuscation postinstall network communication postinstall file download postinstall system command postinstall crypto operations postinstall file manipulation postinstall persistence mechanism postinstall registry modification

About This Extension

PhoenixTool is used to publish the system.It integrates the company's existing systems to deploy code. 凤凰社工具组-目标是整合目前公司所有研发可用到的相关系统到此插件,一个插件搞定所有系统的使用问题(仅供京东开发内网使用...

Detailed Findings

89 total

YARA Rule Matches

8 rules

Indicators of Compromise

Network indicators, suspicious strings, and potential IoCs extracted during analysis

IP Addresses
24
Domains
180
Strings
204

All Indicators · 204

Domain
detected Domain: ջc.sj

XIOC detected Domain: ջc.sj

extracted_from_files

IP
detected IP: 3::

XIOC detected IP: 3::

extracted_from_files

Domain
detected Domain: 5.am

XIOC detected Domain: 5.am

extracted_from_files

Domain
detected Domain: ğ5.sc

XIOC detected Domain: ğ5.sc

extracted_from_files

Domain
detected Domain: w.cc

XIOC detected Domain: w.cc

extracted_from_files

Domain
detected Domain: oȏ.fo

XIOC detected Domain: oȏ.fo

extracted_from_files

Domain
detected Domain: t.je

XIOC detected Domain: t.je

extracted_from_files

Domain
detected Domain: x.tv

XIOC detected Domain: x.tv

extracted_from_files

Domain
detected Domain: h.be

XIOC detected Domain: h.be

extracted_from_files

Domain
detected Domain: e.st

XIOC detected Domain: e.st

extracted_from_files

Domain
detected Domain: у.bw

XIOC detected Domain: у.bw

extracted_from_files

Domain
detected Domain: o.il

XIOC detected Domain: o.il

extracted_from_files

Domain
detected Domain: repotext.properties

XIOC detected Domain: repotext.properties

extracted_from_files

Domain
detected Domain: ztz.kz

XIOC detected Domain: ztz.kz

extracted_from_files

Domain
detected Domain: 2dk.ba

XIOC detected Domain: 2dk.ba

extracted_from_files

Domain
detected Domain: ütqr.tj

XIOC detected Domain: ütqr.tj

extracted_from_files

Domain
detected Domain: m.us

XIOC detected Domain: m.us

extracted_from_files

Domain
detected Domain: ˋ.ph

XIOC detected Domain: ˋ.ph

extracted_from_files

Domain
detected Domain: l.sh

XIOC detected Domain: l.sh

extracted_from_files

Domain
detected Domain: oj.cz

XIOC detected Domain: oj.cz

extracted_from_files

Domain
detected Domain: dxwz.ki

XIOC detected Domain: dxwz.ki

extracted_from_files

Domain
detected Domain: lгcé.cd

XIOC detected Domain: lгcé.cd

extracted_from_files

Domain
detected Domain: so.mo

XIOC detected Domain: so.mo

extracted_from_files

Domain
detected Domain: 1.st

XIOC detected Domain: 1.st

extracted_from_files

Domain
detected Domain: xpj.gp

XIOC detected Domain: xpj.gp

extracted_from_files

Domain
detected Domain: ѻ.bn

XIOC detected Domain: ѻ.bn

extracted_from_files

Domain
detected Domain: r.bs

XIOC detected Domain: r.bs

extracted_from_files

Domain
detected Domain: f.mm

XIOC detected Domain: f.mm

extracted_from_files

Domain
detected Domain: l.kh

XIOC detected Domain: l.kh

extracted_from_files

Domain
detected Domain: pom.propertiessv.jm

XIOC detected Domain: pom.propertiessv.jm

extracted_from_files

Domain
detected Domain: eq.kr

XIOC detected Domain: eq.kr

extracted_from_files

Domain
detected Domain: ǥ.mx

XIOC detected Domain: ǥ.mx

extracted_from_files

Domain
detected Domain: a.gs

XIOC detected Domain: a.gs

extracted_from_files

Domain
detected Domain: lw.np

XIOC detected Domain: lw.np

extracted_from_files

Domain
detected Domain: ii.is

XIOC detected Domain: ii.is

extracted_from_files

Domain
detected Domain: xe.af

XIOC detected Domain: xe.af

extracted_from_files

Domain
detected Domain: 6t.ec

XIOC detected Domain: 6t.ec

extracted_from_files

Domain
detected Domain: wn.et

XIOC detected Domain: wn.et

extracted_from_files

Domain
detected Domain: 7.my

XIOC detected Domain: 7.my

extracted_from_files

Domain
detected Domain: r.mm

XIOC detected Domain: r.mm

extracted_from_files

Domain
detected Domain: readme.md

XIOC detected Domain: readme.md

extracted_from_files

Domain
detected Domain: 4.tm

XIOC detected Domain: 4.tm

extracted_from_files

Domain
detected Domain: wto.vc

XIOC detected Domain: wto.vc

extracted_from_files

Domain
detected Domain: m.nc

XIOC detected Domain: m.nc

extracted_from_files

Domain
detected Domain: u4.bg

XIOC detected Domain: u4.bg

extracted_from_files

Domain
detected Domain: 乨c.tr

XIOC detected Domain: 乨c.tr

extracted_from_files

Domain
detected Domain: p.kg

XIOC detected Domain: p.kg

extracted_from_files

Domain
detected Domain: ws.gr

XIOC detected Domain: ws.gr

extracted_from_files

Domain
detected Domain: f.dm

XIOC detected Domain: f.dm

extracted_from_files

Domain
detected Domain: ph.lr

XIOC detected Domain: ph.lr

extracted_from_files

Domain
detected Domain: 1.ie

XIOC detected Domain: 1.ie

extracted_from_files

Domain
detected Domain: x.gd

XIOC detected Domain: x.gd

extracted_from_files

Domain
detected Domain: y.uz

XIOC detected Domain: y.uz

extracted_from_files

Domain
detected Domain: ʄ.fj

XIOC detected Domain: ʄ.fj

extracted_from_files

Domain
detected Domain: h.lt

XIOC detected Domain: h.lt

extracted_from_files

Domain
detected Domain: ʟ.aq

XIOC detected Domain: ʟ.aq

extracted_from_files

Domain
detected Domain: t.pt

XIOC detected Domain: t.pt

extracted_from_files

Domain
detected Domain: l.pr

XIOC detected Domain: l.pr

extracted_from_files

Domain
detected Domain: x.om

XIOC detected Domain: x.om

extracted_from_files

Domain
detected Domain: 2.aq

XIOC detected Domain: 2.aq

extracted_from_files

Domain
detected Domain: y.sv

XIOC detected Domain: y.sv

extracted_from_files

Domain
detected Domain: 8.ir

XIOC detected Domain: 8.ir

extracted_from_files

Domain
detected Domain: j.tl

XIOC detected Domain: j.tl

extracted_from_files

Domain
detected Domain: n.fr

XIOC detected Domain: n.fr

extracted_from_files

Domain
detected Domain: 2.jm

XIOC detected Domain: 2.jm

extracted_from_files

Domain
detected Domain: i.uk

XIOC detected Domain: i.uk

extracted_from_files

Domain
detected Domain: v.it

XIOC detected Domain: v.it

extracted_from_files

Domain
detected Domain: i.my

XIOC detected Domain: i.my

extracted_from_files

Domain
detected Domain: 6.cx

XIOC detected Domain: 6.cx

extracted_from_files

Domain
detected Domain: v.ee

XIOC detected Domain: v.ee

extracted_from_files

Domain
detected Domain: ry.ht

XIOC detected Domain: ry.ht

extracted_from_files

Domain
detected Domain: a.bw

XIOC detected Domain: a.bw

extracted_from_files

Domain
detected Domain: h.ar

XIOC detected Domain: h.ar

extracted_from_files

Domain
detected Domain: dd.sb

XIOC detected Domain: dd.sb

extracted_from_files

Domain
detected Domain: α.cg

XIOC detected Domain: α.cg

extracted_from_files

Domain
detected Domain: s.ky

XIOC detected Domain: s.ky

extracted_from_files

Domain
detected Domain: n.ng

XIOC detected Domain: n.ng

extracted_from_files

Domain
detected Domain: r.sz

XIOC detected Domain: r.sz

extracted_from_files

Domain
detected Domain: v.tt

XIOC detected Domain: v.tt

extracted_from_files

Domain
detected Domain: a.vg

XIOC detected Domain: a.vg

extracted_from_files

Domain
detected Domain: o.mm

XIOC detected Domain: o.mm

extracted_from_files

Domain
detected Domain: b.gf

XIOC detected Domain: b.gf

extracted_from_files

Domain
detected Domain: g.va

XIOC detected Domain: g.va

extracted_from_files

Domain
detected Domain: 7.mh

XIOC detected Domain: 7.mh

extracted_from_files

Domain
detected Domain: i.mp

XIOC detected Domain: i.mp

extracted_from_files

Domain
detected Domain: s.ng

XIOC detected Domain: s.ng

extracted_from_files

Domain
detected Domain: f.li

XIOC detected Domain: f.li

extracted_from_files

Domain
detected Domain: sn.pl

XIOC detected Domain: sn.pl

extracted_from_files

Domain
detected Domain: ʢ.cn

XIOC detected Domain: ʢ.cn

extracted_from_files

Domain
detected Domain: 1.bh

XIOC detected Domain: 1.bh

extracted_from_files

Domain
detected Domain: 81.mk

XIOC detected Domain: 81.mk

extracted_from_files

Domain
detected Domain: s.gr

XIOC detected Domain: s.gr

extracted_from_files

Domain
detected Domain: pzܥ.ag

XIOC detected Domain: pzܥ.ag

extracted_from_files

IP
detected IP: ::0

XIOC detected IP: ::0

extracted_from_files

Domain
detected Domain: lmifj.bf

XIOC detected Domain: lmifj.bf

extracted_from_files

Domain
detected Domain: p.dk

XIOC detected Domain: p.dk

extracted_from_files

Domain
detected Domain: p.jp

XIOC detected Domain: p.jp

extracted_from_files

Domain
detected Domain: a.bt

XIOC detected Domain: a.bt

extracted_from_files

Domain
detected Domain: δ.lt

XIOC detected Domain: δ.lt

extracted_from_files

Domain
detected Domain: t.pn

XIOC detected Domain: t.pn

extracted_from_files

Domain
detected Domain: r.ps

XIOC detected Domain: r.ps

extracted_from_files

Domain
detected Domain: h.fr

XIOC detected Domain: h.fr

extracted_from_files

Domain
detected Domain: m.mw

XIOC detected Domain: m.mw

extracted_from_files

Domain
detected Domain: com.alibaba

XIOC detected Domain: com.alibaba

extracted_from_files

Domain
detected Domain: b.hk

XIOC detected Domain: b.hk

extracted_from_files

Domain
detected Domain: rf.dz

XIOC detected Domain: rf.dz

extracted_from_files

Domain
detected Domain: jof.es

XIOC detected Domain: jof.es

extracted_from_files

Domain
detected Domain: w.gq

XIOC detected Domain: w.gq

extracted_from_files

Domain
detected Domain: ә.mg

XIOC detected Domain: ә.mg

extracted_from_files

Domain
detected Domain: t.sb

XIOC detected Domain: t.sb

extracted_from_files

Domain
detected Domain: d.fr

XIOC detected Domain: d.fr

extracted_from_files

Domain
detected Domain: h.af

XIOC detected Domain: h.af

extracted_from_files

Domain
detected Domain: ev.ru

XIOC detected Domain: ev.ru

extracted_from_files

Domain
detected Domain: q.ad

XIOC detected Domain: q.ad

extracted_from_files

Domain
detected Domain: l.mn

XIOC detected Domain: l.mn

extracted_from_files

Domain
detected Domain: y.cx

XIOC detected Domain: y.cx

extracted_from_files

Domain
detected Domain: ap.ar

XIOC detected Domain: ap.ar

extracted_from_files

Domain
detected Domain: tpk.us

XIOC detected Domain: tpk.us

extracted_from_files

Domain
detected Domain: certpathreviewermessages.properties

XIOC detected Domain: certpathreviewermessages.properties

extracted_from_files

Domain
detected Domain: de.properties

XIOC detected Domain: de.properties

extracted_from_files

Domain
detected Domain: b7.vi

XIOC detected Domain: b7.vi

extracted_from_files

Domain
detected Domain: ф.lb

XIOC detected Domain: ф.lb

extracted_from_files

Domain
detected Domain: 4hd.lr

XIOC detected Domain: 4hd.lr

extracted_from_files

Domain
detected Domain: lp.bn

XIOC detected Domain: lp.bn

extracted_from_files

Domain
detected Domain: l.gr

XIOC detected Domain: l.gr

extracted_from_files

Domain
detected Domain: f.gf

XIOC detected Domain: f.gf

extracted_from_files

Domain
detected Domain: e.qa

XIOC detected Domain: e.qa

extracted_from_files

Domain
detected Domain: u.ye

XIOC detected Domain: u.ye

extracted_from_files

Domain
detected Domain: w.mp

XIOC detected Domain: w.mp

extracted_from_files

Domain
detected Domain: k.gi

XIOC detected Domain: k.gi

extracted_from_files

Domain
detected Domain: l.cr

XIOC detected Domain: l.cr

extracted_from_files

Domain
detected Domain: jm.ad

XIOC detected Domain: jm.ad

extracted_from_files

Domain
detected Domain: u.bn

XIOC detected Domain: u.bn

extracted_from_files

Domain
detected Domain: nj.gy

XIOC detected Domain: nj.gy

extracted_from_files

Domain
detected Domain: k.cz

XIOC detected Domain: k.cz

extracted_from_files

Domain
detected Domain: u.kp

XIOC detected Domain: u.kp

extracted_from_files

Domain
detected Domain: m.nr

XIOC detected Domain: m.nr

extracted_from_files

Domain
detected Domain: z.re

XIOC detected Domain: z.re

extracted_from_files

Domain
detected Domain: 2.bi

XIOC detected Domain: 2.bi

extracted_from_files

Domain
detected Domain: 3.am

XIOC detected Domain: 3.am

extracted_from_files

Domain
detected Domain: u.gu

XIOC detected Domain: u.gu

extracted_from_files

Domain
detected Domain: 4.jo

XIOC detected Domain: 4.jo

extracted_from_files

Domain
detected Domain: k.gu

XIOC detected Domain: k.gu

extracted_from_files

Domain
detected Domain: 1.vn

XIOC detected Domain: 1.vn

extracted_from_files

Domain
detected Domain: q.np

XIOC detected Domain: q.np

extracted_from_files

Domain
detected Domain: wc.cw

XIOC detected Domain: wc.cw

extracted_from_files

Domain
detected Domain: d.ao

XIOC detected Domain: d.ao

extracted_from_files

Domain
detected Domain: ڠ.mw

XIOC detected Domain: ڠ.mw

extracted_from_files

Domain
detected Domain: h0.at

XIOC detected Domain: h0.at

extracted_from_files

Domain
detected Domain: 9.tg

XIOC detected Domain: 9.tg

extracted_from_files

Domain
detected Domain: mjl.fk

XIOC detected Domain: mjl.fk

extracted_from_files

Domain
detected Domain: w.ee

XIOC detected Domain: w.ee

extracted_from_files

Domain
detected Domain: q.sm

XIOC detected Domain: q.sm

extracted_from_files

Domain
detected Domain: zm.md

XIOC detected Domain: zm.md

extracted_from_files

Domain
detected Domain: e.fo

XIOC detected Domain: e.fo

extracted_from_files

Domain
detected Domain: h.gw

XIOC detected Domain: h.gw

extracted_from_files

Domain
detected Domain: 8.sk

XIOC detected Domain: 8.sk

extracted_from_files

Domain
detected Domain: r.fyi

XIOC detected Domain: r.fyi

extracted_from_files

Domain
detected Domain: r.jm

XIOC detected Domain: r.jm

extracted_from_files

Domain
detected Domain: log4j.properties

XIOC detected Domain: log4j.properties

extracted_from_files

IP
detected IP: a::

XIOC detected IP: a::

extracted_from_files

IP
detected IP: ::6

XIOC detected IP: ::6

extracted_from_files

IP
detected IP: 6::

XIOC detected IP: 6::

extracted_from_files

IP
detected IP: 5::4

XIOC detected IP: 5::4

extracted_from_files

IP
detected IP: ::b

XIOC detected IP: ::b

extracted_from_files

IP
detected IP: d::

XIOC detected IP: d::

extracted_from_files

IP
detected IP: ::e

XIOC detected IP: ::e

extracted_from_files

IP
detected IP: ::d

XIOC detected IP: ::d

extracted_from_files

IP
detected IP: f::

XIOC detected IP: f::

extracted_from_files

IP
detected IP: 0::

XIOC detected IP: 0::

extracted_from_files

IP
detected IP: ::9

XIOC detected IP: ::9

extracted_from_files

IP
detected IP: 7::

XIOC detected IP: 7::

extracted_from_files

IP
detected IP: ::2

XIOC detected IP: ::2

extracted_from_files

IP
detected IP: 1::

XIOC detected IP: 1::

extracted_from_files

IP
detected IP: 8::

XIOC detected IP: 8::

extracted_from_files

IP
detected IP: e::

XIOC detected IP: e::

extracted_from_files

IP
detected IP: ::8

XIOC detected IP: ::8

extracted_from_files

IP
detected IP: c::e

XIOC detected IP: c::e

extracted_from_files

IP
detected IP: 5::e

XIOC detected IP: 5::e

extracted_from_files

IP
detected IP: 2e::b

XIOC detected IP: 2e::b

extracted_from_files

IP
detected IP: ::7

XIOC detected IP: ::7

extracted_from_files

Domain
detected Domain: 8.us

XIOC detected Domain: 8.us

extracted_from_files

Domain
detected Domain: r.je

XIOC detected Domain: r.je

extracted_from_files

Domain
detected Domain: ɪw.sg

XIOC detected Domain: ɪw.sg

extracted_from_files

Domain
detected Domain: ł.km

XIOC detected Domain: ł.km

extracted_from_files

Domain
detected Domain: 0.biz

XIOC detected Domain: 0.biz

extracted_from_files

Domain
detected Domain: tlh.gn

XIOC detected Domain: tlh.gn

extracted_from_files

Domain
detected Domain: x.ge

XIOC detected Domain: x.ge

extracted_from_files

Domain
detected Domain: pom.properties

XIOC detected Domain: pom.properties

extracted_from_files

Domain
detected Domain: ځy.kr

XIOC detected Domain: ځy.kr

extracted_from_files

Domain
detected Domain: jgittext.properties

XIOC detected Domain: jgittext.properties

extracted_from_files

Domain
detected Domain: r.tm

XIOC detected Domain: r.tm

extracted_from_files

Domain
detected Domain: h.cf

XIOC detected Domain: h.cf

extracted_from_files

Domain
detected Domain: mcs.in

XIOC detected Domain: mcs.in

extracted_from_files

Domain
detected Domain: y4.sj

XIOC detected Domain: y4.sj

extracted_from_files

Domain
detected Domain: w.na

XIOC detected Domain: w.na

extracted_from_files

Domain
detected Domain: iz.cc

XIOC detected Domain: iz.cc

extracted_from_files

Domain
detected Domain: 2.ws

XIOC detected Domain: 2.ws

extracted_from_files

Domain
detected Domain: plugin.properties

XIOC detected Domain: plugin.properties

extracted_from_files

Domain
detected Domain: r.zw

XIOC detected Domain: r.zw

extracted_from_files

Domain
detected Domain: d.gi

XIOC detected Domain: d.gi

extracted_from_files

Domain
detected Domain: u.zw

XIOC detected Domain: u.zw

extracted_from_files

IP
detected IP: ::9b

XIOC detected IP: ::9b

extracted_from_files

Domain
detected Domain: 8.cg

XIOC detected Domain: 8.cg

extracted_from_files

Security Analysis Summary

Security Analysis Overview

PhoenixTool is a jetbrains extension published by yuan zhen. Version 1.4-version has been analyzed by the Risky Plugins security platform, receiving a risk score of 100/100 (CRITICAL risk) based on 293 security findings.

Risk Assessment

This extension presents critical security risk. Severe issues were detected, potentially including malware indicators, exposed secrets, or dangerous behaviors. Installation is strongly discouraged until these issues are addressed.

Findings Breakdown

  • High: 67 finding(s)
  • Medium: 204 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

PhoenixTool is published by yuan zhen on the jetbrains marketplace. The extension has approximately 1K users.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

Frequently Asked Questions