ScrollBlock
Unknown developer · 3 users at risk
Threat Summary
Key Security Threats
YARA rule match: -postinstall_obfuscation
/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js
YARA rule match: -postinstall_file_manipulation
/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js
YARA rule match: -postinstall_network_communication
/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js
YARA rule match: -postinstall_file_download
/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js
YARA rule match: -NoUseWeakRandom
/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js
All Findings (35)
View all 35 security findings
YARA rule match: -postinstall_obfuscation
YARA rule match: -postinstall_file_manipulation
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_file_download
YARA rule match: -NoUseWeakRandom
YARA rule match: -postinstall_file_manipulation
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_file_download
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_file_download
YARA rule match: -postinstall_system_command
YARA rule match: -postinstall_system_command
YARA rule match: -postinstall_system_command
Network call of type 'fetch' detected.
Network call of type 'fetch' detected.
Potentially sensitive permission 'tabs' declared in manifest.
Network call of type 'fetch' detected.
XIOC detected Domain: signingca1.addons.mozilla.org
XIOC detected URL: https://opentdb.com/api.php?amount=3&category=$
XIOC detected MD5 Hash: ebe19e64544b318493222f0c4fbc901f
XIOC detected Domain: fire.style
XIOC detected Domain: fire.style.top
XIOC detected Domain: overlay.id
XIOC detected Domain: style.id
XIOC detected Domain: script.id
XIOC detected Domain: answers.map
XIOC detected URL: http://addons.mozilla.org/ca/crl.pem0N
XIOC detected Domain: mozilla.com
XIOC detected Domain: content-signature.mozilla.org
XIOC detected Domain: t119155f4dbbe80305610e48023b1e126.ebe19e64544b318493222f0c4fbc901f.addons.mozilla.org
XIOC detected Domain: i.ao
XIOC detected Domain: opentdb.com
XIOC detected Domain: response.data
XIOC detected Domain: fire.id
Recommended Action
This extension has significant security concerns that warrant careful review. Consider uninstalling or finding a safer alternative. If you must use it, limit the permissions and monitor for suspicious activity.