Proton ICS Auto-Importer
Unknown developer · 3 users at risk
Threat Summary
Key Security Threats
YARA rule match: -postinstall_obfuscation
/tmp/extract-6165d1d147e4975798956320affa601f9d1f633ce1d59f9f2ff165e47aeed05e-1910991049/content-intercept.js
YARA rule match: -postinstall_network_communication
/tmp/extract-6165d1d147e4975798956320affa601f9d1f633ce1d59f9f2ff165e47aeed05e-1910991049/content-intercept.js
YARA rule match: -postinstall_file_download
/tmp/extract-6165d1d147e4975798956320affa601f9d1f633ce1d59f9f2ff165e47aeed05e-1910991049/content-intercept.js
YARA rule match: -postinstall_obfuscation
/tmp/extract-6165d1d147e4975798956320affa601f9d1f633ce1d59f9f2ff165e47aeed05e-1910991049/background.js
YARA rule match: -postinstall_file_manipulation
/tmp/extract-6165d1d147e4975798956320affa601f9d1f633ce1d59f9f2ff165e47aeed05e-1910991049/background.js
All Findings (30)
View all 30 security findings
YARA rule match: -postinstall_obfuscation
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_file_download
YARA rule match: -postinstall_obfuscation
YARA rule match: -postinstall_file_manipulation
YARA rule match: -postinstall_network_communication
YARA rule match: -NoUseWeakRandom
YARA rule match: -postinstall_obfuscation
YARA rule match: -postinstall_file_manipulation
YARA rule match: -postinstall_network_communication
XIOC detected Domain: signingca1.addons.mozilla.org
XIOC detected URL: https://account.proton.me/u/1/calendar/import-export?ics_id=*
XIOC detected MD5 Hash: ac88a85cf6f4173553d2e18484f2dc1e
XIOC detected Domain: location.search
XIOC detected Domain: importbtn.click
XIOC detected Domain: resp.meta.name
XIOC detected Domain: submitbtn.click
XIOC detected URL: http://addons.mozilla.org/ca/crl.pem0N
XIOC detected URL: https://account.proton.me/u/1/calendar/import-export?ics_id=
XIOC detected URL: https://account.proton.me/
XIOC detected Domain: mozilla.com
XIOC detected Domain: addons.mozilla.org
XIOC detected Domain: content-signature.mozilla.org
XIOC detected Domain: tbb6d87a3a61422258ebec547752ec264.ac88a85cf6f4173553d2e18484f2dc1e.addons.mozilla.org
XIOC detected Domain: account.proton.me
XIOC detected Domain: date.now
XIOC detected Domain: message.id
Potentially sensitive permission 'tabs' declared in manifest.
Network call of type 'fetch' detected.
Network call of type 'fetch' detected.
Recommended Action
This extension has significant security concerns that warrant careful review. Consider uninstalling or finding a safer alternative. If you must use it, limit the permissions and monitor for suspicious activity.