TROYANOSYVIRUS
Back to URLs

getcfg.potion5vealy.lat

https://getcfg.potion5vealy.lat/sh5hne-c8b9b4-sskjy-znq2k2of-ybay3z/usr294-verif.confirm

offlinemalware_downloadSource: urlhaus

URL Details

Hostgetcfg.potion5vealy.lat
Schemehttps
Path/sh5hne-c8b9b4-sskjy-znq2k2of-ybay3z/usr294-verif.confirm
TLDlat
Registered Domainpotion5vealy.lat
Host Typefqdn
Date Added5/4/2026, 5:52:12 PM
Last Online5/4/2026, 5:52:12 PM
First Seen5/4/2026, 5:52:12 PM
Last Seen5/4/2026, 5:52:12 PM

Tags

ClearFakeSnappyClient

IOC Correlations

urldomain: getcfg.potion5vealy.lat(hosted_on)80%