internet_explorerpatch.hta

The file internet_explorerpatch.hta has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The file has been seen being downloaded from 50.cus426fijny.ceihueasyincontro.com.
MD5:
edb28b5753db5bcad6cbbd3542634b8a

SHA-1:
cabe8d044098a3c615f4b53d3f8b99ca90accc26

SHA-256:
270e9dbc0d527c58d7ed39e8b339b05104e85f934d01ae8156a3e9c1601a0a5f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 1:02:41 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Downloader.Meta (M)
16.2.23.15

File size:
561 Bytes

Common path:
C:\users\{user}\downloads\internet_explorerpatch.hta

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12:7amQtf3qnkcbBdS7EnORypRIMimngd3pokz1QhUcTQUkaTu4a4cWJW0J78OMa:7amilc0lRyptr2ehFrTJYOMa

The file internet_explorerpatch.hta has been seen being distributed by the following URL.

Remove internet_explorerpatch.hta - Powered by Reason Core Security