MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 2f873494b5a1eac3a557a123655f00b7d4c9ff922f3463b8f63bc3f951703ae5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 5
| SHA256 hash: | 2f873494b5a1eac3a557a123655f00b7d4c9ff922f3463b8f63bc3f951703ae5 |
|---|---|
| SHA3-384 hash: | a1f7110b0affd5311e71579086c09469a4d53c7678a0af7c3768b59b8ca5952fda909ea381f79e1db7a47eac170b85c3 |
| SHA1 hash: | 0a35d8e4a0db0500cd98cc11b9decc41cc8bddba |
| MD5 hash: | 17a3f08fabef51428e0c7c1ab40fc282 |
| humanhash: | double-yellow-pizza-arkansas |
| File name: | c.hta |
| Download: | download sample |
| File size: | 3'133 bytes |
| First seen: | 2025-10-14 17:49:20 UTC |
| Last seen: | Never |
| File type: | |
| MIME type: | text/html |
| ssdeep | 96:mv+lYfS1C8idnOElboi+XoHzocoi2oC/AytqDE:mvoWS1oc34HE3kC/H |
| TLSH | T1F3513419BC41906B9762C1426362FB3CA18D9336C74AD6C5F2BD45627FCEACA48472AC |
| Magika | html |
| Reporter | |
| Tags: | hta |
Intelligence
File Origin
# of uploads :
1
# of downloads :
38
Origin country :
DEVendor Threat Intelligence
Verdict:
Clean
Score:
99.9%
Tags:
n/a
Result
Verdict:
Clean
File Type:
HTA File
Payload URLs
URL
File name
http://www.squarespace.com
HTA File
Verdict:
Suspicious
Labled as:
Trojan.HTA.Agent
Verdict:
Unknown
File Type:
Result
Threat name:
n/a
Detection:
suspicious
Classification:
spyw
Score:
22 / 100
Signature
Opens network shares
Behaviour
Behavior Graph:
Score:
0%
Verdict:
Benign
File Type:
SCRIPT
Verdict:
inconclusive
YARA:
2 match(es)
Tags:
Html
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2025-10-14 17:50:44 UTC
File Type:
Text (HTML)
Extracted files:
1
AV detection:
5 of 24 (20.83%)
Threat level:
5/5
Detection(s):
Suspicious file
Result
Malware family:
n/a
Score:
8/10
Tags:
discovery
Behaviour
System Location Discovery: System Language Discovery
Badlisted process makes network request
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Web download
hta 2f873494b5a1eac3a557a123655f00b7d4c9ff922f3463b8f63bc3f951703ae5
(this sample)
Delivery method
Distributed via web download
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.