Trojan Amadey Analysis

Trojan Amadey
Updated on 2023-09-15 (10 months ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.138.174
DB Version:2023-09-15 07:02:35

Trojan.Win32.Amadey.bot

Amadey is a formidable Windows infostealer threat, characterized by its persistence mechanisms, modular design, and ability to execute various malicious tasks. It typically infiltrates systems through phishing emails or malicious downloads. Once inside a system, Amadey can capture sensitive information such as login credentials, personal data, and financial details. Its modular structure allows threat actors to customize its functionality, making it a versatile tool in cybercriminal arsenals.

Checked2023-09-15 04:59:13
MD501347dd4214ef8ce566216467f2c8047
SHA103348c2c52d6cf90bc66a9556fa7e86884c669d2
SHA256a3c341fdeeaa3c8d1462042aef68f99c75c5c301bab46b0d6973db1fc905918c
SHA5123c594143af7861f524cb7bbb8b77cab7711be6867c65505d9d1f7f0ce043274f6c6e73857c9834a0bbac2e89199ceffd8fe58662d158568187038a41d934462e
File Size8563057 bytes

Trojan.Win32.Amadey.bot Removal

Trojan.Win32.Amadey.bot Removal

Gridinsoft has the capability to identify and eliminate Trojan.Win32.Amadey.bot without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

Portable Executable Info

Image Base:0x7c900000
Entry Point:0x7c912c48
Compilation:2009-02-09 12:10:48
Checksum:0x000bc674 (Actual: 0x0082f74e)
OS Version:5.1
PEiD:PE32 executable (DLL) (console) Intel 80386, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:4
Imports: 0
Exports: 5586
Resources:0

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x0007c1e2 0x0007c200 40f000af5d509960197383eeccf9afda 6.50
.data 0x0007e000 0x00004a00 0x00003200 1eaf15d3cc94d40f7f3307fe8d626a0a 7.02
.rsrc 0x00083000 0x0002be78 0x0002c000 c78fa5691d2362bb4469e6b44de48d10 6.82
.reloc 0x000af000 0x00002eb8 0x00003000 2e12f7f36691012e4cfbd811a1a45df1 6.82

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware