internet_explorerpatch.hta

The file internet_explorerpatch.hta has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The file has been seen being downloaded from 864.iovkg67.aegauibooking.com.
MD5:
b91f1899169c0b3f0f42e7a7590931dd

SHA-1:
49202c6977e757b87cc0628765f44d73aa974acc

SHA-256:
016a2f0ea2aff3b3d0099c1c75554a61172074857a04a2f4cb821bc233a9fce3

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
1/9/2025 7:46:07 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Downloader.Meta (M)
16.2.9.1

File size:
554 Bytes

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\internet_explorerpatch.hta

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12:7amQtf3qnkcbBdS7G+nRIMimngd3pokz1QhUcTQUkaTu4a4cWJW0J78OMa:7amilc03ntr2ehFrTJYOMa

The file internet_explorerpatch.hta has been seen being distributed by the following URL.

Remove internet_explorerpatch.hta - Powered by Reason Core Security