Is "TOJ" on JetBrains Marketplace Safe to Install?

congzeng · jetbrains · v5.0

A plugin that supports local rapid test script construction, online pulling of training questions, and submission for scoring. It features rich functionality...

Risk Assessment

Analyzed
100
out of 100
CRITICAL

305 security findings detected across all analyzers

JetBrains plugin analyzed via plugin.xml configuration and static code analysis

Severity Breakdown

0
Critical
74
High
190
Medium
0
Low
0
Info

Finding Categories

74
Malware Signatures
190
IoC Indicators

YARA Rules Matched

8 rules(74 hits)
postinstall system command postinstall registry modification postinstall obfuscation postinstall network communication postinstall crypto operations postinstall persistence mechanism postinstall file manipulation JavaDropper

About This Extension

A plugin that supports local rapid test script construction, online pulling of training questions, and submission for scoring. It features rich functionality...

Detailed Findings

115 total

YARA Rule Matches

8 rules

Indicators of Compromise

Network indicators, suspicious strings, and potential IoCs extracted during analysis

IP Addresses
19
Domains
171
Strings
190

All Indicators · 190

Domain
detected Domain: c.mq

XIOC detected Domain: c.mq

extracted_from_files

Domain
detected Domain: 8.gh

XIOC detected Domain: 8.gh

extracted_from_files

Domain
detected Domain: t2hp.cr

XIOC detected Domain: t2hp.cr

extracted_from_files

Domain
detected Domain: w.cw

XIOC detected Domain: w.cw

extracted_from_files

Domain
detected Domain: v.pk

XIOC detected Domain: v.pk

extracted_from_files

Domain
detected Domain: h6.tc

XIOC detected Domain: h6.tc

extracted_from_files

Domain
detected Domain: htmlcharacterentityreferences.properties

XIOC detected Domain: htmlcharacterentityreferences.properties

extracted_from_files

Domain
detected Domain: contextloader.properties

XIOC detected Domain: contextloader.properties

extracted_from_files

Domain
detected Domain: codecconfigurer.properties

XIOC detected Domain: codecconfigurer.properties

extracted_from_files

Domain
detected Domain: u.eg

XIOC detected Domain: u.eg

extracted_from_files

Domain
detected Domain: f䤀.je

XIOC detected Domain: f䤀.je

extracted_from_files

Domain
detected Domain: i.io

XIOC detected Domain: i.io

extracted_from_files

Domain
detected Domain: l.au

XIOC detected Domain: l.au

extracted_from_files

Domain
detected Domain: ο.bd

XIOC detected Domain: ο.bd

extracted_from_files

Domain
detected Domain: u.es

XIOC detected Domain: u.es

extracted_from_files

Domain
detected Domain: x.va

XIOC detected Domain: x.va

extracted_from_files

Domain
detected Domain: x3-.jp

XIOC detected Domain: x3-.jp

extracted_from_files

Domain
detected Domain: 248.rw

XIOC detected Domain: 248.rw

extracted_from_files

Domain
detected Domain: z.cx

XIOC detected Domain: z.cx

extracted_from_files

Domain
detected Domain: vh.za

XIOC detected Domain: vh.za

extracted_from_files

Domain
detected Domain: a7.ad

XIOC detected Domain: a7.ad

extracted_from_files

Domain
detected Domain: r.nr

XIOC detected Domain: r.nr

extracted_from_files

Domain
detected Domain: ʊ.se

XIOC detected Domain: ʊ.se

extracted_from_files

Domain
detected Domain: d.gr

XIOC detected Domain: d.gr

extracted_from_files

Domain
detected Domain: a.mo

XIOC detected Domain: a.mo

extracted_from_files

Domain
detected Domain: v.yt

XIOC detected Domain: v.yt

extracted_from_files

Domain
detected Domain: p.py

XIOC detected Domain: p.py

extracted_from_files

Domain
detected Domain: 35f.ck

XIOC detected Domain: 35f.ck

extracted_from_files

Domain
detected Domain: o.gq

XIOC detected Domain: o.gq

extracted_from_files

Domain
detected Domain: d.mx

XIOC detected Domain: d.mx

extracted_from_files

Domain
detected Domain: r.mv

XIOC detected Domain: r.mv

extracted_from_files

Domain
detected Domain: cej.ms

XIOC detected Domain: cej.ms

extracted_from_files

Domain
detected Domain: r.kg

XIOC detected Domain: r.kg

extracted_from_files

Domain
detected Domain: d.la

XIOC detected Domain: d.la

extracted_from_files

Domain
detected Domain: ʓ.ps

XIOC detected Domain: ʓ.ps

extracted_from_files

Domain
detected Domain: s.lk

XIOC detected Domain: s.lk

extracted_from_files

Domain
detected Domain: 4.pa

XIOC detected Domain: 4.pa

extracted_from_files

Domain
detected Domain: m.ge

XIOC detected Domain: m.ge

extracted_from_files

Domain
detected Domain: qmm.ht

XIOC detected Domain: qmm.ht

extracted_from_files

Domain
detected Domain: x.om

XIOC detected Domain: x.om

extracted_from_files

IP
detected IP: 3::

XIOC detected IP: 3::

extracted_from_files

Domain
detected Domain: r.jm

XIOC detected Domain: r.jm

extracted_from_files

Domain
detected Domain: r.fi

XIOC detected Domain: r.fi

extracted_from_files

Domain
detected Domain: r.cz

XIOC detected Domain: r.cz

extracted_from_files

Domain
detected Domain: o.nz

XIOC detected Domain: o.nz

extracted_from_files

Domain
detected Domain: g.tn

XIOC detected Domain: g.tn

extracted_from_files

Domain
detected Domain: hi.ec

XIOC detected Domain: hi.ec

extracted_from_files

Domain
detected Domain: d.gd

XIOC detected Domain: d.gd

extracted_from_files

Domain
detected Domain: b.ag

XIOC detected Domain: b.ag

extracted_from_files

Domain
detected Domain: ɵ1.is

XIOC detected Domain: ɵ1.is

extracted_from_files

Domain
detected Domain: ꨀ.gl

XIOC detected Domain: ꨀ.gl

extracted_from_files

Domain
detected Domain: z.es

XIOC detected Domain: z.es

extracted_from_files

Domain
detected Domain: a.jp

XIOC detected Domain: a.jp

extracted_from_files

Domain
detected Domain: exceptionmessages.properties

XIOC detected Domain: exceptionmessages.properties

extracted_from_files

Domain
detected Domain: helpformattermessages.properties

XIOC detected Domain: helpformattermessages.properties

extracted_from_files

Domain
detected Domain: 4iu.gi

XIOC detected Domain: 4iu.gi

extracted_from_files

Domain
detected Domain: h.vg

XIOC detected Domain: h.vg

extracted_from_files

Domain
detected Domain: 4.bs

XIOC detected Domain: 4.bs

extracted_from_files

Domain
detected Domain: l.ro

XIOC detected Domain: l.ro

extracted_from_files

Domain
detected Domain: 5.at

XIOC detected Domain: 5.at

extracted_from_files

Domain
detected Domain: jm.ag

XIOC detected Domain: jm.ag

extracted_from_files

Domain
detected Domain: ٧.uy

XIOC detected Domain: ٧.uy

extracted_from_files

Domain
detected Domain: ti.ki

XIOC detected Domain: ti.ki

extracted_from_files

Domain
detected Domain: ۯݷ.cf

XIOC detected Domain: ۯݷ.cf

extracted_from_files

Domain
detected Domain: 7.at

XIOC detected Domain: 7.at

extracted_from_files

Domain
detected Domain: u1.sy

XIOC detected Domain: u1.sy

extracted_from_files

Domain
detected Domain: e.gg

XIOC detected Domain: e.gg

extracted_from_files

Domain
detected Domain: d.md

XIOC detected Domain: d.md

extracted_from_files

Domain
detected Domain: index.st

XIOC detected Domain: index.st

extracted_from_files

Domain
detected Domain: report.st

XIOC detected Domain: report.st

extracted_from_files

Domain
detected Domain: c.bb

XIOC detected Domain: c.bb

extracted_from_files

Domain
detected Domain: cln.bz

XIOC detected Domain: cln.bz

extracted_from_files

Domain
detected Domain: uw.sr

XIOC detected Domain: uw.sr

extracted_from_files

Domain
detected Domain: ɨ.ps

XIOC detected Domain: ɨ.ps

extracted_from_files

Domain
detected Domain: 8.dk

XIOC detected Domain: 8.dk

extracted_from_files

Domain
detected Domain: 8.gu

XIOC detected Domain: 8.gu

extracted_from_files

Domain
detected Domain: x.pr

XIOC detected Domain: x.pr

extracted_from_files

Domain
detected Domain: z.ge

XIOC detected Domain: z.ge

extracted_from_files

Domain
detected Domain: pom.propertiessv.jm

XIOC detected Domain: pom.propertiessv.jm

extracted_from_files

Domain
detected Domain: s.ro

XIOC detected Domain: s.ro

extracted_from_files

Domain
detected Domain: a.ps

XIOC detected Domain: a.ps

extracted_from_files

Domain
detected Domain: wū.nr

XIOC detected Domain: wū.nr

extracted_from_files

Domain
detected Domain: 6ը.sg

XIOC detected Domain: 6ը.sg

extracted_from_files

Domain
detected Domain: ťɡ.mv

XIOC detected Domain: ťɡ.mv

extracted_from_files

Domain
detected Domain: jm.ad

XIOC detected Domain: jm.ad

extracted_from_files

Domain
detected Domain: v.do

XIOC detected Domain: v.do

extracted_from_files

Domain
detected Domain: g.az

XIOC detected Domain: g.az

extracted_from_files

Domain
detected Domain: 1.sd

XIOC detected Domain: 1.sd

extracted_from_files

Domain
detected Domain: a.fi

XIOC detected Domain: a.fi

extracted_from_files

Domain
detected Domain: ԅ.si

XIOC detected Domain: ԅ.si

extracted_from_files

Domain
detected Domain: r.gb

XIOC detected Domain: r.gb

extracted_from_files

Domain
detected Domain: l.sn

XIOC detected Domain: l.sn

extracted_from_files

Domain
detected Domain: license-univocity-parsers.md

XIOC detected Domain: license-univocity-parsers.md

extracted_from_files

Domain
detected Domain: ڍ.tk

XIOC detected Domain: ڍ.tk

extracted_from_files

Domain
detected Domain: ġ.ru

XIOC detected Domain: ġ.ru

extracted_from_files

IP
detected IP: c::e

XIOC detected IP: c::e

extracted_from_files

Domain
detected Domain: 2.no

XIOC detected Domain: 2.no

extracted_from_files

Domain
detected Domain: t.mc

XIOC detected Domain: t.mc

extracted_from_files

Domain
detected Domain: u.in

XIOC detected Domain: u.in

extracted_from_files

Domain
detected Domain: p.np

XIOC detected Domain: p.np

extracted_from_files

Domain
detected Domain: smi.mz

XIOC detected Domain: smi.mz

extracted_from_files

Domain
detected Domain: license.md

XIOC detected Domain: license.md

extracted_from_files

Domain
detected Domain: ev.ax

XIOC detected Domain: ev.ax

extracted_from_files

Domain
detected Domain: l.jo

XIOC detected Domain: l.jo

extracted_from_files

Domain
detected Domain: dm.ne

XIOC detected Domain: dm.ne

extracted_from_files

Domain
detected Domain: r.pl

XIOC detected Domain: r.pl

extracted_from_files

Domain
detected Domain: q.bg

XIOC detected Domain: q.bg

extracted_from_files

Domain
detected Domain: a.gi

XIOC detected Domain: a.gi

extracted_from_files

Domain
detected Domain: 6.bw

XIOC detected Domain: 6.bw

extracted_from_files

Domain
detected Domain: 4.ga

XIOC detected Domain: 4.ga

extracted_from_files

Domain
detected Domain: jm.pr

XIOC detected Domain: jm.pr

extracted_from_files

Domain
detected Domain: sh.to

XIOC detected Domain: sh.to

extracted_from_files

Domain
detected Domain: i.re

XIOC detected Domain: i.re

extracted_from_files

Domain
detected Domain: ԙ.my

XIOC detected Domain: ԙ.my

extracted_from_files

Domain
detected Domain: ӱ.mv

XIOC detected Domain: ӱ.mv

extracted_from_files

Domain
detected Domain: com.google

XIOC detected Domain: com.google

extracted_from_files

Domain
detected Domain: w.jo

XIOC detected Domain: w.jo

extracted_from_files

Domain
detected Domain: օ.tk

XIOC detected Domain: օ.tk

extracted_from_files

Domain
detected Domain: ξs.ci

XIOC detected Domain: ξs.ci

extracted_from_files

Domain
detected Domain: 0.gq

XIOC detected Domain: 0.gq

extracted_from_files

Domain
detected Domain: q.vi

XIOC detected Domain: q.vi

extracted_from_files

Domain
detected Domain: x.hr

XIOC detected Domain: x.hr

extracted_from_files

Domain
detected Domain: 0.qa

XIOC detected Domain: 0.qa

extracted_from_files

Domain
detected Domain: ǂs.ac

XIOC detected Domain: ǂs.ac

extracted_from_files

Domain
detected Domain: uc.hk

XIOC detected Domain: uc.hk

extracted_from_files

Domain
detected Domain: r.bh

XIOC detected Domain: r.bh

extracted_from_files

Domain
detected Domain: u.cg

XIOC detected Domain: u.cg

extracted_from_files

Domain
detected Domain: 2g5.tv

XIOC detected Domain: 2g5.tv

extracted_from_files

Domain
detected Domain: 2.ls

XIOC detected Domain: 2.ls

extracted_from_files

Domain
detected Domain: bw.ga

XIOC detected Domain: bw.ga

extracted_from_files

Domain
detected Domain: h.so

XIOC detected Domain: h.so

extracted_from_files

Domain
detected Domain: x.vi

XIOC detected Domain: x.vi

extracted_from_files

Domain
detected Domain: p.lb

XIOC detected Domain: p.lb

extracted_from_files

Domain
detected Domain: ӕ.id

XIOC detected Domain: ӕ.id

extracted_from_files

Domain
detected Domain: w.lr

XIOC detected Domain: w.lr

extracted_from_files

Domain
detected Domain: ۓ.cd

XIOC detected Domain: ۓ.cd

extracted_from_files

Domain
detected Domain: w.bs

XIOC detected Domain: w.bs

extracted_from_files

Domain
detected Domain: d.ch

XIOC detected Domain: d.ch

extracted_from_files

IP
detected IP: ::d

XIOC detected IP: ::d

extracted_from_files

IP
detected IP: b::b

XIOC detected IP: b::b

extracted_from_files

IP
detected IP: d::1

XIOC detected IP: d::1

extracted_from_files

Domain
detected Domain: nl.sc

XIOC detected Domain: nl.sc

extracted_from_files

Domain
detected Domain: f.re

XIOC detected Domain: f.re

extracted_from_files

Domain
detected Domain: q.mr

XIOC detected Domain: q.mr

extracted_from_files

Domain
detected Domain: 4.cv

XIOC detected Domain: 4.cv

extracted_from_files

Domain
detected Domain: u.fr

XIOC detected Domain: u.fr

extracted_from_files

Domain
detected Domain: giے.io

XIOC detected Domain: giے.io

extracted_from_files

Domain
detected Domain: γ.gi

XIOC detected Domain: γ.gi

extracted_from_files

Domain
detected Domain: z.tn

XIOC detected Domain: z.tn

extracted_from_files

Domain
detected Domain: d6.ac

XIOC detected Domain: d6.ac

extracted_from_files

Domain
detected Domain: 8.cg

XIOC detected Domain: 8.cg

extracted_from_files

Domain
detected Domain: ҽ.do

XIOC detected Domain: ҽ.do

extracted_from_files

Domain
detected Domain: h.es

XIOC detected Domain: h.es

extracted_from_files

Domain
detected Domain: j.li

XIOC detected Domain: j.li

extracted_from_files

Domain
detected Domain: bp.rw

XIOC detected Domain: bp.rw

extracted_from_files

Domain
detected Domain: k.bn

XIOC detected Domain: k.bn

extracted_from_files

Domain
detected Domain: y.vg

XIOC detected Domain: y.vg

extracted_from_files

Domain
detected Domain: y.sd

XIOC detected Domain: y.sd

extracted_from_files

Domain
detected Domain: p.az

XIOC detected Domain: p.az

extracted_from_files

Domain
detected Domain: com.alibaba

XIOC detected Domain: com.alibaba

extracted_from_files

Domain
detected Domain: l.gp

XIOC detected Domain: l.gp

extracted_from_files

Domain
detected Domain: c.su

XIOC detected Domain: c.su

extracted_from_files

Domain
detected Domain: 81.mk

XIOC detected Domain: 81.mk

extracted_from_files

Domain
detected Domain: d.mt

XIOC detected Domain: d.mt

extracted_from_files

Domain
detected Domain: pom.properties

XIOC detected Domain: pom.properties

extracted_from_files

Domain
detected Domain: 2ȇ.cl

XIOC detected Domain: 2ȇ.cl

extracted_from_files

Domain
detected Domain: m.hm

XIOC detected Domain: m.hm

extracted_from_files

Domain
detected Domain: mm.ml

XIOC detected Domain: mm.ml

extracted_from_files

Domain
detected Domain: i.tc

XIOC detected Domain: i.tc

extracted_from_files

Domain
detected Domain: k.cg

XIOC detected Domain: k.cg

extracted_from_files

IP
detected IP: ::4

XIOC detected IP: ::4

extracted_from_files

IP
detected IP: 1::

XIOC detected IP: 1::

extracted_from_files

IP
detected IP: ::a

XIOC detected IP: ::a

extracted_from_files

IP
detected IP: e::9

XIOC detected IP: e::9

extracted_from_files

Domain
detected Domain: 39.sb

XIOC detected Domain: 39.sb

extracted_from_files

Domain
detected Domain: 5k.sg

XIOC detected Domain: 5k.sg

extracted_from_files

Domain
detected Domain: qzt.ml

XIOC detected Domain: qzt.ml

extracted_from_files

IP
detected IP: ::4d

XIOC detected IP: ::4d

extracted_from_files

IP
detected IP: 6::

XIOC detected IP: 6::

extracted_from_files

IP
detected IP: 7::

XIOC detected IP: 7::

extracted_from_files

IP
detected IP: ::f

XIOC detected IP: ::f

extracted_from_files

IP
detected IP: d::

XIOC detected IP: d::

extracted_from_files

IP
detected IP: a::

XIOC detected IP: a::

extracted_from_files

IP
detected IP: 0::

XIOC detected IP: 0::

extracted_from_files

IP
detected IP: 2::

XIOC detected IP: 2::

extracted_from_files

IP
detected IP: f::

XIOC detected IP: f::

extracted_from_files

IP
detected IP: ::5

XIOC detected IP: ::5

extracted_from_files

Domain
detected Domain: 2.kz

XIOC detected Domain: 2.kz

extracted_from_files

Domain
detected Domain: ΐ.cg

XIOC detected Domain: ΐ.cg

extracted_from_files

Domain
detected Domain: թ.sl

XIOC detected Domain: թ.sl

extracted_from_files

Security Analysis Summary

Security Analysis Overview

TOJ is a jetbrains extension published by congzeng. Version 5.0 has been analyzed by the Risky Plugins security platform, receiving a risk score of 100/100 (CRITICAL risk) based on 305 security findings.

Risk Assessment

This extension presents critical security risk. Severe issues were detected, potentially including malware indicators, exposed secrets, or dangerous behaviors. Installation is strongly discouraged until these issues are addressed.

Findings Breakdown

  • High: 74 finding(s)
  • Medium: 190 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

TOJ is published by congzeng on the jetbrains marketplace. The extension has approximately 193 users.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

Frequently Asked Questions