URLhaus Database

You are currently viewing the URLhaus database entry for http://www.teknoarge.com/update/ana/Update.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:1657096
URL: http://www.teknoarge.com/update/ana/Update.exe
URL Status:flame Online (spreading malware for 4 years, 2 months, 11 days, 1 hours, 24 minutes)
Host: www.teknoarge.com
Date added:2021-10-06 04:39:04 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-12-20 07:38:40 UTC to abuse{at}vodafone[dot]net[dot]tr)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-25n/aexe 2c1fbb342af98b10dcfc8c6993b4fe4bb6717ab12f89fd8cc585fe009fc1bdcdn/a 
2024-09-28n/aexe e0b78de3a4797dad0fae4e77fb49841724211b3e51101d937ef65ad49b9a2131n/a 
2024-09-10n/aexe ab443fc05ec5cee0a7474eec1e05a8ba24bdf99d24c54b81abf2dfc6c40a6f67n/a 
2024-03-19n/aexe d380332da6c4533935e6d18421fcb4c3c6178f45886ae30f8b00670b979bd791n/a 
2024-03-18n/aexe 8d54a643ae09aab4939436289436503e205535aae52fbb140e9c86e460ef230cn/a 
2024-03-18n/aexe a78fc2f520e2b40cd429e220f8310a5bb5380eb85f8a752f2a86af866ae4dfbcn/a 
2024-03-16n/aexe f584f047a8920999241ed24e75e7cb5291c2283020bb3caaee0aa848984f5508n/a 
2024-03-16n/aexe 576b2faaffb2ccff4c03d28723d2ada56ef6bc8d7f853276dcf7c7da734eaf12n/a 
2024-03-15n/aexe b598ad5c2fab793fea7f18291b544d2741acb3d6976068a050ec71f9217bfcf5n/a 
2024-03-15n/aexe 2b9d4fcd06a7b28328b37cc24d117b04ad30f2f89b8ced8c00a36672471b1aacn/a 
2024-03-15n/aexe 0168b2d22c3d6d2f72bbd46d3476337419f0b27199418c5efdb8abe0dbde20e5n/a 
2024-03-15n/aexe 06cbc67bc01e13113c3dafa763b5020ed48b84766b0e065e785366a407f9cccfn/a 
2024-03-14n/aexe e23223af2c100b49b6ba87c22df614573576c527a1d5bb6db4567c715687a2bcn/a 
2024-03-14n/aexe 91f8acfc04de5bef85ee4d3e8bd1735d890570a679e370fb2ae365e7ca6bdf43n/a 
2024-01-30n/aexe 6808a9e0677bbc29c7257952bd2ba84efb2f33780685b63796794fa609429619n/a 
2023-08-02n/aexe e899fdb46bf383890fff72a12a40232b1bad67f4b57acd097cc404978e964384n/a 
2023-08-01n/aexe 9b187e27fbce9e029faad8cd5f762b7a7b1be55372e30957b6fbf97003b16bf8n/a 
2023-07-14n/aexe 765c8f99826089800c63ab1995ae6c13caafb7f9dc4ad653b1c12d6ccfb5c8ffn/a 
2021-11-16n/aexe 35efc0520b78a1b413afee5dbe5d8b0674eea2acfc7d943de70a99b5b2fd92efn/a
2021-11-11n/aexe 4b49fa19d91a1d4e99951b51a46990d45978f0940a0a609c5d1ea5ce4a1f86ean/a 
2021-11-11n/aexe 3fa7ba3f830628125f1205a3e265106554db191e9d191cb4fd044250e808c053n/a 
2021-11-11n/aexe a35c6b6ee21627b9cc7d9c261f4f3762f012dd6c1d682a2c6680457324299eabn/a 
2021-10-13n/aexe 203cdec559936bf85ac018ed1e6816ac09d9aff81b1158ede2644a502281a98fn/a
2021-10-06n/aexe 45c888a043acd745d8a25044c2b336d09f68ca059eb392e3008c13240cfd2539Virustotal results 48.53%RedLineStealer