internet_explorerpatch.hta

The file internet_explorerpatch.hta has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The file has been seen being downloaded from 657.ce1x.weequcooco.com.
MD5:
6dbc454b51e6310b42642411e6999b5e

SHA-1:
ca7e4d45863a67b126246fddb24b03c7bc34d9d6

SHA-256:
81976e35543320e7fac444af8d6b6fa4ea765bf3d0db7c06076640dfce910827

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
2/27/2025 10:31:26 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Downloader.Meta (M)
16.1.13.10

File size:
548 Bytes

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\internet_explorerpatch.hta

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12:7amQtf3qnkcbBdS7CRGRgRIMimngd3pokz1QhUcTQUkaTu4a4cWJW0J78OMa:7amilc0CRGRgtr2ehFrTJYOMa

The file internet_explorerpatch.hta has been seen being distributed by the following URL.

Remove internet_explorerpatch.hta - Powered by Reason Core Security