Amadey
Amadey is a botnet that appeared around October 2018 and is being sold for about $500 on Russian-speaking hacking forums. It periodically sends information about the system and installed AV software to its C2 server and polls to receive orders from it. Its main functionality is that it can load other payloads (called "tasks") for all or specifically targeted computers compromised by the malware. Fuente: MISP
Actividad en Jábega · 12 semanas
1 noticias · vista por primera vez el 24 jun 2026 · la última, el 24 jun 2026
Noticias
- ESET participa en la Operación Endgame para interrumpir la botnet Amadey y el infostealer StealcWeLiveSecurity · 24 jun 2026
Aparece junto a
Técnicas MITRE ATT&CK
Ejecución
Persistencia
Descubrimiento
T1016System Network Configuration Discovery 4 reglas SigmaT1033System Owner/User Discovery 26 reglas SigmaT1082System Information Discovery 18 reglas SigmaT1083File and Directory Discovery 17 reglas SigmaT1518.001Security Software Discovery 5 reglas SigmaT1614System Location Discovery 2 reglas Sigma
Recopilación
Mando y control
T1071.001Web Protocols 39 reglas SigmaT1105Ingress Tool Transfer 40 reglas SigmaT1568.001Fast Flux DNS
Exfiltración
Stealth
T1027Obfuscated Files or Information 61 reglas SigmaT1140Deobfuscate/Decode Files or Information 17 reglas Sigma
Defense impairment
Relaciones por coaparición en noticias, no atribución. Fuentes: MISP galaxy, MITRE ATT&CK y SigmaHQ. attack.mitre.org ↗ malpedia.caad.fkie.fraunhofer.de ↗