MEE6 Controller - Setup.exe
Classification: Malicious
MEE6 Controller - Setup.exe is a malicious file sample. Reported by 1 threat source, last seen 2022-12-29. Detected by 39 antivirus engines.
Detection summary
- 39 antivirus detections (57% detection ratio)
- 1 IDS alerts
- 7 processes observed
- 3 contacted hosts
- 2 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2022-12-29 23:00:04 |
2022-12-29 23:00:04 |
|
|
| Discord.AP |
Hybrid-Analysis |
2020-08-18 16:45:11 |
2020-08-18 16:45:11 |
|
|
Sample information
- Filenames
- MEE6 Controller - Setup.exe
- File type
- PE32 executable (GUI) Intel 80386, for MS Windows
- Size
- 11679989 bytes
- MD5
c7fbbbe6e295905750ffc1a141dce60f
- SHA-1
5c016d85ab18c8106b4c61fed178cd935058273a
- SHA-256
c8dc364bbad7cbaa1a2f39a1155700b9789087316997622eb86e8d1c7c1b461b
- First indexed
- 2020-08-18 16:45:11
- Last updated
- 2022-12-29 23:00:04
Antivirus detections
| Engine | Detection |
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | Trojan.GenericKD.43477549 |
| CAT-QuickHeal | Trojanpws.Msil |
| ALYac | Trojan.GenericKD.43477549 |
| Cylance | Unsafe |
| K7AntiVirus | Password-Stealer ( 0054b4351 ) |
| Alibaba | TrojanPSW:MSIL/Discord.3327b8b4 |
| K7GW | Password-Stealer ( 0054b4351 ) |
| F-Prot | W32/Razy.CN.gen!Eldorado |
| Symantec | Trojan.Gen.MBT |
| GData | Trojan.GenericKD.43477549 |
| Kaspersky | HEUR:Trojan-PSW.MSIL.Agent.gen |
| BitDefender | Trojan.GenericKD.43477549 |
| NANO-Antivirus | Trojan.Win32.Stealer.hhzgle |
| Avast | Win32:PWSX-gen [Trj] |
| Rising | Stealer.Discord!1.B7AA (CLOUD) |
| Ad-Aware | Trojan.GenericKD.43477549 |
| Comodo | Malware@#9ko7vjdj7acv |
| F-Secure | Heuristic.HEUR/AGEN.1127855 |
| DrWeb | Trojan.PWS.Stealer.26221 |
| VIPRE | Trojan.Win32.Generic!BT |
| FireEye | Trojan.GenericKD.43477549 |
| Cyren | W32/Razy.CN.gen!Eldorado |
| Webroot | W32.Trojan.Agent.Gen |
| Avira | HEUR/AGEN.1127855 |
| Arcabit | Trojan.Generic.D2976A2D |
| AegisLab | Trojan.MSIL.Agent.i!c |
| ZoneAlarm | HEUR:Trojan-PSW.MSIL.Agent.gen |
| Microsoft | Trojan:MSIL/Discord.BM!MTB |
| McAfee | Artemis!C7FBBBE6E295 |
| MAX | malware (ai score=88) |
| VBA32 | TrojanPSW.MSIL.Agent |
| ESET-NOD32 | MSIL/PSW.Discord.AP |
| Yandex | Trojan.PWS.Discord! |
| Ikarus | Trojan.MSIL.PSW |
| Fortinet | W32/Discord.AP!tr.pws |
| AVG | Win32:PWSX-gen [Trj] |
| Panda | Trj/CI.A |
| Qihoo-360 | Generic/Trojan.PSW.634 |
Process list
| Name | Command line |
| MEE6Controller-Setup.exe | |
| MEE6Controller-Setup.tmp | /SL5="$B01C0,10886353,724992,C:\MEE6Controller-Setup.exe" |
| MEE6 Controller.exe | |
| MEE6 Controller.exe | |
| MEE6Controller-Setup.exe | |
| MEE6Controller-Setup.tmp | /SL5="$901BA,10886353,724992,C:\MEE6Controller-Setup.exe" |
| MEE6 Controller.exe | |