TROYANOSYVIRUS
Back to URLs

cmdsets.2zorelin.surf

https://cmdsets.2zorelin.surf/kiss-m0dem-defndr-myrai-sdf934/kwtor.dll

offlinemalware_downloadSource: urlhaus

URL Details

Hostcmdsets.2zorelin.surf
Schemehttps
Path/kiss-m0dem-defndr-myrai-sdf934/kwtor.dll
TLDsurf
Registered Domain2zorelin.surf
Host Typefqdn
Date Added5/5/2026, 9:53:11 PM
Last Online5/5/2026, 9:53:11 PM
First Seen5/5/2026, 9:53:11 PM
Last Seen5/5/2026, 9:53:11 PM

Tags

ClearFakeSnappyClient

IOC Correlations

urldomain: cmdsets.2zorelin.surf(hosted_on)80%