IOC Report
https://us.ps-tracks.top/us/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 124
ASCII text, with very long lines (35025), with no line terminators
dropped
Chrome Cache Entry: 125
ASCII text, with very long lines (1898), with no line terminators
downloaded
Chrome Cache Entry: 126
Unicode text, UTF-8 text, with very long lines (4486), with no line terminators
downloaded
Chrome Cache Entry: 127
MS Windows icon resource - 4 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (951)
downloaded
Chrome Cache Entry: 129
Unicode text, UTF-8 text, with very long lines (4486), with no line terminators
dropped
Chrome Cache Entry: 130
ASCII text, with very long lines (2039), with no line terminators
downloaded
Chrome Cache Entry: 131
ASCII text, with very long lines (52436)
downloaded
Chrome Cache Entry: 132
Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (6351), with no line terminators
downloaded
Chrome Cache Entry: 134
Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
dropped
Chrome Cache Entry: 135
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 136
ASCII text, with very long lines (65324)
downloaded
Chrome Cache Entry: 137
ASCII text, with very long lines (2613), with no line terminators
downloaded
Chrome Cache Entry: 138
ASCII text, with very long lines (2613), with no line terminators
dropped
Chrome Cache Entry: 139
ASCII text, with very long lines (1898), with no line terminators
dropped
Chrome Cache Entry: 140
ASCII text, with very long lines (322)
downloaded
Chrome Cache Entry: 141
ASCII text, with very long lines (2039), with no line terminators
dropped
Chrome Cache Entry: 142
ASCII text, with very long lines (52436)
dropped
Chrome Cache Entry: 143
ASCII text, with very long lines (35025), with no line terminators
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (6351), with no line terminators
dropped
Chrome Cache Entry: 145
HTML document, ASCII text, with very long lines (435)
downloaded
Chrome Cache Entry: 146
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 147
MS Windows icon resource - 4 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 148
Unicode text, UTF-8 text, with very long lines (65124), with no line terminators
downloaded
There are 16 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1992 --field-trial-handle=1904,i,3069198429602057297,17173043204891689206,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://us.ps-tracks.top/us/"

URLs

Name
IP
Malicious
https://us.ps-tracks.top/us/
malicious
https://us.ps-tracks.top/us/assets/09bf01f8KXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/62ff200fKXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/dc6d90ceKXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/c27b6911KXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/3213f1cfKXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/
malicious
https://us.ps-tracks.top/us/assets/index-4b020bd6.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/667bf194TeKnX.css
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/f6170fbbTeKnX.css
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/78d59236KXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/143268e9KXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/4cd1ec68TeKnX.css
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/f0ee2557KXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/us/assets/7357514cKXMp5.js
47.90.141.9
malicious
https://us.ps-tracks.top/favicon.ico
47.90.141.9
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://us.ps-tracks.top/api/MC41NTM0OTUwMDA1ODIxNjk=
47.90.141.9
https://getbootstrap.com/)
unknown
There are 8 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
www.google.com
142.250.186.132
fp2e7a.wpc.phicdn.net
192.229.221.95
us.ps-tracks.top
47.90.141.9

IPs

IP
Domain
Country
Malicious
47.90.141.9
us.ps-tracks.top
United States
239.255.255.250
unknown
Reserved
142.250.186.132
www.google.com
United States
192.168.2.4
unknown
unknown
192.168.2.6
unknown
unknown

DOM / HTML

URL
Malicious
https://us.ps-tracks.top/us/
https://us.ps-tracks.top/us/
https://us.ps-tracks.top/us/