TROYANOSYVIRUS
Back to URLs

refid-1.pavl9ore.surf

https://refid-1.pavl9ore.surf/sh5hne-c8b9b4-sskjy-znq2k2of-ybay3z/usr294-verif.confirm

offlinemalware_downloadSource: urlhaus

URL Details

Hostrefid-1.pavl9ore.surf
Schemehttps
Path/sh5hne-c8b9b4-sskjy-znq2k2of-ybay3z/usr294-verif.confirm
TLDsurf
Registered Domainpavl9ore.surf
Host Typefqdn
Date Added5/5/2026, 6:38:14 PM
Last Online5/5/2026, 6:38:14 PM
First Seen5/5/2026, 6:38:14 PM
Last Seen5/5/2026, 6:38:14 PM

Tags

ClearFakeSnappyClient

IOC Correlations

urldomain: refid-1.pavl9ore.surf(hosted_on)80%