SUSPICIOUS — 075cea3baa6a400975db18d15730efa9afcf11d54ea6082d1e07987c084da996.hta
SUSPICIOUS — 075cea3baa6a400975db18d15730efa9afcf11d54ea6082d1e07987c084da996.hta is a hta sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (57/100). 2 of 53 detection engines flagged it.
Identification
- SHA-256:
075cea3baa6a400975db18d15730efa9afcf11d54ea6082d1e07987c084da996 - SHA-1:
044392c176f02c1b3dc7e7e813bf3e948ceefdbd - MD5:
fc3ffa32b2fdf299f5246f04bff9df54 - ssdeep:
48:pf3ZRwXbXGm7DObkZ94SFFU2S4KRmqI9cqR4anDY4RuDNM:fRwXLJL94WFUIqIbR4aDPuRM - TLSH:
T1BB16282CDA21388BED57326626F73FE9EC41D8622096F0B62A867153C15BD38095C71E - Submitted as: 075cea3baa6a400975db18d15730efa9afcf11d54ea6082d1e07987c084da996.hta
- File type: hta · Size: 3115 bytes
- Verdict: suspicious (57/100)
Source: MalwareBazaar · first seen 2026-08-03T00:00:00.000Z · SHA-256 verified
Detections (2 of 53 engines)
- Emsisoft (Emergency Kit): Trojan.GenericKD.81018152
- Kaspersky (KVRT): HEUR:Trojan.Script.Generic
Why this verdict
The suspicious score of 57/100 is the fusion of 2 weighted signals:
- Obfuscated javascript script: dynamic-exec (layers: char-code) (rule
script-deobfuscation) - static signal, weight 0.55, confidence 0.75 - Document contains macros/active content: hta-application, activex - static signal, weight 0.35, confidence 0.75
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report