TROYANOSYVIRUS
Back to URLs

freightbird.rodrules.surf

https://freightbird.rodrules.surf/draw-msft-cl0ud-acc-trust7934/gettwo.dll

offlinemalware_downloadSource: urlhaus

URL Details

Hostfreightbird.rodrules.surf
Schemehttps
Path/draw-msft-cl0ud-acc-trust7934/gettwo.dll
TLDsurf
Registered Domainrodrules.surf
Host Typefqdn
Date Added5/6/2026, 1:41:08 PM
Last Online5/6/2026, 1:41:08 PM
First Seen5/6/2026, 1:41:08 PM
Last Seen5/6/2026, 1:41:08 PM

Tags

ClearFakeSnappyClient

IOC Correlations

urldomain: freightbird.rodrules.surf(hosted_on)80%