description-logoDescription

This indicates that a system might be infected by Amadey Botnet.
Amadey is a malware that can steal password credentials and download additional malware. All botnet signatures from FortiOS 5.6 onwards are under IPS, and have their default action set to "Block".

affected-products-logoAffected Products

Any unprotected Windows system is vulnerable.

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

If required, the signature's action can be set to "Block".
Please use Anti-Virus software to scan and clean the infected devices.

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2022-09-22 22.399
Modified
Sig Added
2022-08-25 21.381
Modified
Sig Added