URLhaus Database

You are currently viewing the URLhaus database entry for https://catbaparadisehotel.com.vn/wp-content/uploads/2024/E_default.bmp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2765586
URL: https://catbaparadisehotel.com.vn/wp-content/uploads/2024/E_default.bmp
URL Status:flame Online (spreading malware for 2 years, 3 months, 16 days, 21 hours, 23 minutes)
Host: catbaparadisehotel.com.vn
Date added:2024-02-20 14:23:18 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-12-20 07:40:36 UTC to hm-changed{at}vnnic[dot]vn)
Tags:dropped-by-PrivateLoader encrypted

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-09E_default.bmpunknown d45d80d84007a79ae90596c60fc4bf0ac54ebeafc2b6315ecbf3097b3f4344ffn/a 
2025-04-27E_default.bmpunknown 5352104f67b440402a51a29ac287a61c45e0c6f93eb8a6fb71bac4b4fa819bf0n/a 
2025-04-25E_default.bmpunknown c42c0582bcafa1b9d5e57720e83285c63208a0b7b8538269430a5c5d2a1b1865n/a 
2024-05-31n/aunknown 650ad129fd03296e50e814a0f83485bb30a64166e5f75267ddbc0307644819e6n/a 
2024-02-20n/aunknown 2148956fd98e0fa14636377a2e024308002b2d45a5ca7c98f019d2dd090ff9cfn/a