VOOZH about

URL: https://thehackernews.com/2022/07/smokeloader-infecting-targeted-systems.html

⇱ SmokeLoader Infecting Targeted Systems with Amadey Info-Stealing Malware


-->
πŸ‘ cybersecurity

SmokeLoader Infecting Targeted Systems with Amadey Info-Stealing Malware

ξ „Ravie Lakshmananξ ‚Jul 26, 2022

An information-stealing malware called Amadey is being distributed by means of another backdoor called SmokeLoader.

The attacks hinge on tricking users into downloading SmokeLoader that masquerades as software cracks, paving the way for the deployment of Amadey, researchers from the AhnLab Security Emergency Response Center (ASEC) said in a report published last week.

Amadey, a botnet that first appeared around October 2018 on Russian underground forums for $600, is equipped to siphon credentials, capture screenshots, system metadata, and even information about antivirus engines and additional malware installed on an infected machine.

While a feature improvement spotted last July by Walmart Global Tech incorporated functionality for harvesting data from Mikrotik routers and Microsoft Outlook, the toolset has since been upgraded to capture information from FileZilla, Pidgin, Total Commander FTP Client, RealVNC, TightVNC, TigerVNC, and WinSCP.

Its main goal, however, is to deploy additional plugins and remote access trojans such as Remcos RAT and RedLine Stealer, further enabling the threat actor to conduct an array of post-exploitation activities.

Users are recommended to upgrade their devices to the latest versions of the operating system and the web browser to minimize potential infection routes and steer clear of pirated software.

Found this article interesting? Follow us on Google News, Twitter and LinkedIn to read more exclusive content we post.
⚑ Top Stories This Week
⭐ Featured Resources

Cybersecurity Webinars

A Practical Security Guide

How to Find and Govern Hidden AI Use Across Your Business

Learn how to uncover hidden AI use, see what data it can access, map every AI action to a human owner, and apply practical governance without heavy infrastructure changes.

Tired of False Positives?

How to Stop AI-Powered Attacks Before They Move Across Your Network

Learn how to contain Mythos-style AI attacks with practical Zero Trust controls that reduce exposure, stop lateral movement, and limit risk.

⚑ Latest News
Cybersecurity Resources
5 Steps to Secure Against Software Vulnerabilities Discovered by AI Models
AI has emerged as a potent weapon in cybersecurity. Learn how to best safeguard your organization.
The CISO’s Guide: Transitioning from VPN to Comprehensive ZTNA
Modernize secure access and eliminate lateral movement by connecting users directly to applications, not the network.
Earn a Master's in Cybersecurity Risk Management
Lead the future of cybersecurity risk management with an online Master’s from Georgetown.
​
Expert Insights Articles Videos
πŸ‘ Expert Insights

Building a Security Strategy for AI-Powered Ransomware Attacks

ξ ‚June 22, 2026 Read ➝
πŸ‘ Expert Insights

Identity Security in 2026: The Brutal Truth Enterprises Still Avoid

ξ ‚June 22, 2026 Read ➝
πŸ‘ Expert Insights

Beyond Blocking: Disrupting the Social Engineering Attack Chain

ξ ‚June 22, 2026 Read ➝
πŸ‘ Expert Insights

Why Runtime Scanning Is Too Late for Your CI/CD Supply Chain Security

ξ ‚June 15, 2026 Read ➝