internet_explorerpatch.hta
The file internet_explorerpatch.hta has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The file has been seen being downloaded from 770.quyn-ox5f.kieghhostea.net.
File name:
internet_explorerpatch.hta
MD5:
ff57a3bd346ca51dc321074f65de36b3
SHA-1:
c27052369046c28ba427b018c0dc47b86ba0ec32
SHA-256:
b418d7a161942f83efeaeef2adc10b341c8d923ce238a04a8ac83c8104129076
Scanner detections:
1 / 68
Status:
Potentially unwanted
Analysis date:
11/24/2024 2:45:54 AM UTC (today)
Scan engine
Detection
Engine version
Reason Heuristics
PUP.Downloader.Meta (M)
16.2.12.4
Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\internet_explorerpatch.hta
CTPH (ssdeep):
12:7amQtf3qnkcbBdS7AcZtk8NgRIMimngd3pokz1QhUcTQUkaTu4a4cWJW0J78OMa:7amilc0ACW/tr2ehFrTJYOMa
The file internet_explorerpatch.hta has been seen being distributed by the following URL.