VS Code Marketplace

BOO UI编辑器

by boo-best · 100 users
29c59379-0095-57d7-ac8a-21bc58152314 | v4.3.4
100/ 100
CRITICAL risk
+15 since v4.2.5
Risk verdict
Do not install

Score-based assessment (critical risk, 100/100). No analyst review available.

Analysis record

Analysed
1 weeks ago
Version
v4.3.4
Artifact
SHA256 F76…D30
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

308 detail rows

YARA Rule Matches

19 rules
SeverityRuleHitsFilesMetadata
HIGHEmotet

detect Emotet in memory

1
tools/PakBridge/bin/lib/unicorn/lib/unicorn.dll
JPCERT/CC Incident Response Group FP 5%
LOWLocalStorageShouldNotBeUsed 1
media/vendor/tabulator/tabulator.min.js
-
LOWDebuggerStatementsShouldNotBeUsed 1
tools/PakBridge/bin/python312.dll
-
LOWcredential env files 9
out/utils/cache-storage.jsout/utils/pak-reader.jsout/providers/deepseek-view.js +6 more
-
LOWWeakSSLTLSProtocolsShouldNotBeUsed 2
tools/PakBridge/bin/lib/_ssl.pydtools/PakBridge/bin/lib/libssl-3-x64.dll
-
LOWpostinstall persistence mechanism 10
out/providers/map-preview.jsout/utils/quick-files.jstools/PakBridge/bin/lib/library.zip +7 more
-
LOWpostinstall file download 14
data/constants-gom.jsondata/variables.jsondata/constants-gee.json +11 more
-
LOWNoUseEval 2
tools/PakBridge/bin/lib/more_itertools/recipes.pyctools/PakBridge/bin/python312.dll
-
LOWSQLInjection 2
out/assistant.jsmedia/editor.html
-
LOWNoUseWeakRandom 3
out/utils/database-browser.jsout/assistant.jsout/utils/custom-language.js
-
LOWpostinstall obfuscation 51
out/ui-dialog/variable-resolver.jsout/utils/map-marker-state.jstools/PakBridge/bin/lib/pkg_resources/api_tests.txt +48 more
-
LOWpostinstall crypto operations 19
out/utils/webview-security.jsout/utils/jpk-reader.jsout/utils/pak-reader.js +16 more
-
LOWpostinstall file manipulation 46
out/utils/original-map-tile-cache.jsout/utils/original-map-tile-resource-provider.jsdata/functions.json +43 more
-
LOWpostinstall system command 80
media/csv-editor.htmlthemes/boo-aurora-theme.jsonout/utils/archive-resource-provider.js +77 more
-
LOWAlertStatementsShouldNotBeUsed 1
out/assistant.js
-
LOWpostinstall registry modification 14
out/providers/npc-dialog-visual.jsout/providers/map-preview.jsout/providers/patch-manager.js +11 more
-
LOWpostinstall network communication 26
out/reload.jsmedia/table-editor.jsmedia/npc-dialog-visual.js +23 more
-
LOWUsingShellInterpreterWhenExecutingOSCommands 1
out/reload.js
-
LOWpostinstall environment access 1
tools/PakBridge/bin/lib/pkg_resources/api_tests.txt
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

4,018 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Limited evidence

boo-best

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

29
Noisy-finding weight
x1.00
Publisher domain
No domain
Missing
Store verification signal
Not exposed
Not exposed
Extension portfolio
1
Portfolio

12 evidence rows available.

Finding Categories

1
Malware Signatures
18
Obfuscation
2
Network
4,018
IoC Indicators

YARA Rules Matched

19 rules(284 hits)
Emotet LocalStorageShouldNotBeUsed DebuggerStatementsShouldNotBeUsed credential env files WeakSSLTLSProtocolsShouldNotBeUsed postinstall persistence mechanism postinstall file download NoUseEval SQLInjection NoUseWeakRandom postinstall obfuscation postinstall crypto operations postinstall file manipulation postinstall system command AlertStatementsShouldNotBeUsed postinstall registry modification +3 more

Security Analysis Summary

Security Analysis Overview

BOO UI编辑器 is a Visual Studio Code Marketplace extension published by boo-best. Version 4.3.4 has been analyzed by the Risky Plugins security platform, receiving a risk score of 100/100 (CRITICAL risk) based on 4326 security findings.

Risk Assessment

This extension presents critical security risk. Severe issues were detected, potentially including malware indicators, exposed secrets, or dangerous behaviors. Installation is strongly discouraged until these issues are addressed.

Findings Breakdown

  • Critical: 17 finding(s)
  • High: 1 finding(s)
  • Medium: 4021 finding(s)
  • Low: 287 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

BOO UI编辑器 is published by boo-best on the Visual Studio Code Marketplace marketplace. The extension has approximately 100 users.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

VS Code version history

Risk trend by version

7 analyzed versions. Each point is the latest successful scan for that version; failed zero-score scans are hidden. Dates are based on first seen by risky plugins.

Selected
100
Change since first
+42
Change from previous
+15
Versions:
First analyzed version
4.0.3
Jun 25, 2026
Risk range
58 to 100
Across analyzed versions
Latest analyzed version
4.3.4
Sep 10, 2026
Selected version
critical
Version
v4.3.4
1 weeks ago
Risk score
100
Findings
4326
Change vs previous
+15

Pick any point on the chart to explore that version's code below.

About This Extension

面向传奇类游戏 GM 的 VS Code 开发工具,提供脚本智能提示、UI 可视化编辑、PAK/JPK 读取、数据库与地图查看及 M2 重载。

Frequently Asked Questions