URLhaus Database

You are currently viewing the URLhaus database entry for https://catbaparadisehotel.com.vn/wp-content/uploads/2024/E_r1.bmp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2765933
URL: https://catbaparadisehotel.com.vn/wp-content/uploads/2024/E_r1.bmp
URL Status:flame Online (spreading malware for 2 years, 3 months, 16 days, 18 hours, 6 minutes)
Host: catbaparadisehotel.com.vn
Date added:2024-02-20 20:15:20 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2026-03-11 20:25:17 UTC to hm-changed{at}vnnic[dot]vn)
Tags:dropped-by-PrivateLoader encrypted

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-25E_r1.bmpunknown a3120b1101ed18539b9f94d159caf30848d17d9cad172b0e9ab077342cad77fan/a 
2025-04-23E_r1.bmpunknown 2b76549ce9720c4ee1b19c4203057d2f1f9126820d7f03d7d81583806108e86dn/a 
2025-01-25n/aunknown 77a5a00001ba5605430ee49e63d62a356b635c862699fb0964123b4595bf9dc9n/a 
2024-05-31n/aunknown cba88553b74b72f5eb6ce7f1213d4550355b058a8bc4db7d1f3cae92cc659446n/a 
2024-05-31n/aunknown 5b6aa540d4432bf08fd3291f37f8ffb2748c14d61c2665b18da011cdd0bddedan/a 
2024-02-20n/aunknown 2f1fc260702b21ebd462a6d8a347f02002924fb1d2bd25050c00a87e6881f1bdn/a