HIGH RISK NaN/100

ScrollBlock

Unknown developer · 3 users at risk

Threat Summary

Risk Level
Critical Issues
High Issues
Total Findings

Key Security Threats

HIGH Malware Signature

YARA rule match: -postinstall_obfuscation

/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js

HIGH Malware Signature

YARA rule match: -postinstall_file_manipulation

/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js

HIGH Malware Signature

YARA rule match: -postinstall_network_communication

/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js

HIGH Malware Signature

YARA rule match: -postinstall_file_download

/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js

HIGH Malware Signature

YARA rule match: -NoUseWeakRandom

/tmp/extract-514c7e40fa8ac9ac2c0706957756d80c9f043f22ababbd4e182a40bd115e1655-2756795993/unlock-card.js

All Findings (35)

View all 35 security findings
Malware Signature

YARA rule match: -postinstall_obfuscation

Malware Signature

YARA rule match: -postinstall_file_manipulation

Malware Signature

YARA rule match: -postinstall_network_communication

Malware Signature

YARA rule match: -postinstall_file_download

Malware Signature

YARA rule match: -NoUseWeakRandom

Malware Signature

YARA rule match: -postinstall_file_manipulation

Malware Signature

YARA rule match: -postinstall_network_communication

Malware Signature

YARA rule match: -postinstall_file_download

Malware Signature

YARA rule match: -postinstall_network_communication

Malware Signature

YARA rule match: -postinstall_network_communication

Malware Signature

YARA rule match: -postinstall_file_download

Malware Signature

YARA rule match: -postinstall_system_command

Malware Signature

YARA rule match: -postinstall_system_command

Malware Signature

YARA rule match: -postinstall_system_command

Suspicious Network Activity

Network call of type 'fetch' detected.

Suspicious Network Activity

Network call of type 'fetch' detected.

manifest-analysis

Potentially sensitive permission 'tabs' declared in manifest.

Suspicious Network Activity

Network call of type 'fetch' detected.

Indicator of Compromise

XIOC detected Domain: signingca1.addons.mozilla.org

Indicator of Compromise

XIOC detected URL: https://opentdb.com/api.php?amount=3&category=$

Indicator of Compromise

XIOC detected MD5 Hash: ebe19e64544b318493222f0c4fbc901f

Indicator of Compromise

XIOC detected Domain: fire.style

Indicator of Compromise

XIOC detected Domain: fire.style.top

Indicator of Compromise

XIOC detected Domain: overlay.id

Indicator of Compromise

XIOC detected Domain: style.id

Indicator of Compromise

XIOC detected Domain: script.id

Indicator of Compromise

XIOC detected Domain: answers.map

Indicator of Compromise

XIOC detected URL: http://addons.mozilla.org/ca/crl.pem0N

Indicator of Compromise

XIOC detected Domain: mozilla.com

Indicator of Compromise

XIOC detected Domain: content-signature.mozilla.org

Indicator of Compromise

XIOC detected Domain: t119155f4dbbe80305610e48023b1e126.ebe19e64544b318493222f0c4fbc901f.addons.mozilla.org

Indicator of Compromise

XIOC detected Domain: i.ao

Indicator of Compromise

XIOC detected Domain: opentdb.com

Indicator of Compromise

XIOC detected Domain: response.data

Indicator of Compromise

XIOC detected Domain: fire.id

Recommended Action

This extension has significant security concerns that warrant careful review. Consider uninstalling or finding a safer alternative. If you must use it, limit the permissions and monitor for suspicious activity.

Analysis performed on 3/27/2026 · Version 1.0

Data sourced from automated security scanning. For detailed analysis, view the full security scorecard.