URLhaus Database

You are currently viewing the URLhaus database entry for http://update.cg100iii.com/cg100/Update.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2881768
URL: http://update.cg100iii.com/cg100/Update.exe
URL Status:flame Online (spreading malware for 1 year, 11 month, 26 days, 13 hours, 24 minutes)
Host: update.cg100iii.com
Date added:2024-06-10 05:27:38 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2026-05-18 19:01:24 UTC to abuse{at}alibaba-inc[dot]com,intl-abuse{at}list[dot]alibaba-inc[dot]com)
Tags:32 exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-01Update.exeexe a779e9e4d86137250580c2a464e2976387de3aa503d9dc4718a864616e126b2bn/a 
2025-05-14Update.exeexe 71328401153f53e0de7ea877ac89c368f3e3657cd945b158a3fa553c5c5f4a98n/a 
2025-05-08Update.exeexe b482bd6c16dd85214f4ec91d88de630459f9c6fa0a39dbf5c3d3c17762425933n/a 
2025-03-30n/aexe 8b4f7881860eefead071653b4add0c8ef8004ecc1346e582592815ed61145f53n/a 
2025-01-27n/aexe 244c9d4c159ed44288ce435d1b5e7b617e3150ded10abf328b6cb88204779088n/a 
2025-01-25n/aexe 5123a34d7ab8957d375f2492135db903d8478a4992b1f9d51923add271cc3dabn/a 
2025-01-13n/aexe c5e55495d6403fe40865e634d715378448fbfd710a5429275b06559892ec3ffdn/a 
2025-01-06n/aexe bc29ae71ead0e0cc71a45c1d670a49cc193576c445ce7c46016794bf5d5e94d0n/a 
2025-01-02n/aexe 35214ffae637cc9e6af0a3b5153c18b7390cfcafc8c399b2aa947c12d7c07472n/a 
2024-12-31n/aexe 05397046e2fc7864e9d0c9417efb2dcb063db33ad7ba7ec710060ac028a3ad4fn/a 
2024-12-27n/aexe a4c976a33133dfb541d6a85720291bf24f3c0019bb33019d0d68b3c527c7a678n/a 
2024-12-02n/aexe c3f5292b09a0994fb7dd7e6d7386d3b95868c477c94980ffc1a99ef6755b094en/a 
2024-11-30n/aexe 8596ea168f6bd85f068f3bb5bc39c242b3df23c9c95cd8d8f95a2438ab0a2997n/a 
2024-11-14n/aexe 724ecb638414782a2ce64fef0d26c583938a6d914da910116907a4f19ac3e503n/a 
2024-10-31n/aexe 91100722706077cac27a4889f99cc5d75855d0f2dcc869692295a1c12f350a61n/a 
2024-09-28n/aexe 220c7627661ba2ad0a986ce51ef967f0abbc82b7a1f71e6979b87764a4e3728bn/a 
2024-09-28n/aexe 2fa215f71c6aa43fffcada966d7da8ca4b3e3376577b571083210f553ddb3c3en/a 
2024-06-10n/aexe a1dc127add3ab677c6e342e9b4a4952ca9a28e0b23024ab060b6667bd12673c4Virustotal results 61.97%