Login for search help

Payload Details

First Seen 2026-03-08 (Login for timestamps)
Last Seen 2026-03-08
SHA256 cca62534201d187235527715f648522a29d6cfdbf8ba26952267734762d0b83f
Filetype PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows, 3 sections
Size 453,120 bytes
Distributed By Vidar (Login)
Countries Unknown Country Login for country information
UnpacMe ID 388f1702-0f68-4c5f-835f-a5d660ffefd0
UnpacMe Detections MALWARE:AmadeyTYPE:DOWNLOADERRULE:AmadeyCONFIG:Amadey
UnpacMe Community RULE:win_amadey_auto
Sandbox Detections AmadeyVidarGCleaner
Malcat Kesakode One of the process dumps is 98% similar to VidarVidar 98%One of the process dumps is 100% similar to AmadeyAmadey 100%
Download

Monitored Sandbox Execution

Login required

Non-Monitored Sandbox Execution

Login required

Tasks of Origin (24)

First Seen (UTC) Last Seen (UTC) Family Botnet Exit Task Data View
2026-03-062026-03-12vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-12vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-12vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-12vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-12vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-12vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe
2026-03-062026-03-10vidarLogin
Unknown Country
http://158.94.211.222/amka/random.exe