Threat Search: 

ThreatExpert's Statistics for Application.Ardamax_Keylogger [PC Tools]:

Application.Ardamax_Keylogger [PC Tools] is also known as:
Threat AliasNumber of Incidents
Keylog-Ardamax.dll [McAfee]61,464
Spyware.Ardakey [Symantec]50,354
MonitoringTool:Win32/Ardamax [Microsoft]49,809
not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab]48,455
Trojan-Spy.Ardamax.J [Ikarus]39,968
Win-Trojan/Xema.variant [AhnLab]20,588
TrojanSpy.Ardamax.WQ [PC Tools]18,190
Application.Ardamax!ct [PC Tools]12,411
Keylog-Ardamax [McAfee]1,340
not-a-virus:Monitor.Win32.Ardamax.x [Kaspersky Lab]811
not-a-virus:Monitor.Win32.Ardamax.w [Kaspersky Lab]792
not-a-virus:Monitor.Win32.Ardamax.ah [Ikarus]659
not-a-virus:Monitor.Win32.Ardamax.r [Kaspersky Lab]527
Win-Trojan/Ardamax.404480 [AhnLab]455
Virus.Win32.Ardamax.CI [Ikarus]355
Mal/Generic-A [Sophos]336
Win-Trojan/Ardamax.484864.C [AhnLab]297
not-a-virus:Monitor.Win32.Ardamax.y [Kaspersky Lab]253
RiskWare.ArdamaxView.A [PC Tools]216
Trojan.Generic [Ikarus]100
not-a-virus:Monitor.Win32.Ardamax.24 [Kaspersky Lab]85
Win-Trojan/Ardamax.403968 [AhnLab]56
TROJ_KEYLOGGE.AK [Trend Micro]29
not-a-virus:Monitor.Win32.Ardamax.24 [Ikarus]27
Generic.dx [McAfee]21
not-a-virus:Monitor.Win32.Ardamax [Ikarus]20
not-a-virus:Monitor.Win32.Ardamax.u [Kaspersky Lab]16
not-a-virus:Monitor.Win32.Ardamax.o [Kaspersky Lab]15
Win-Trojan/Ardamax.403456 [AhnLab]15
Virus.Win32.Ardamax.EK [Ikarus]14
not-a-virus:Monitor.Win32.Ardamax.25 [Ikarus]13
not-a-virus:Monitor.Win32.Ardamax.af [Kaspersky Lab]13
not-a-virus:Monitor.Win32.Ardamax.eh [Kaspersky Lab]9
Spyware.Ardakey!sd6 [PC Tools]9
Trojan-Spy.Win32.Ardamax.e [Kaspersky Lab]9
Spyware.Ardamax!sd5 [PC Tools]8
Trojan-Spy.Win32.Ardamax.t [Kaspersky Lab]8
not-a-virus:Monitor.Win32.Ardamax.cm [Kaspersky Lab]7
Spy-Agent.cv [McAfee]7
TSPY_ARDAMAX.HR [Trend Micro]7
Suspicious.MH690 [Symantec]6
Trojan-Spy.Win32.Ardamax [Ikarus]6
Win-Trojan/Ardamax.417280 [AhnLab]6
Win-Trojan/Ardamax.482816.F [AhnLab]6
not-a-virus:Monitor.Win32.Ardamax.21 [Kaspersky Lab]5
TROJ_AGENT.AGAZ [Trend Micro]5
Trojan-Spy.Win32.Ardamax.n [Kaspersky Lab]5
not-a-virus:Monitor.Win32.Ardamax.23 [Kaspersky Lab]4
not-a-virus:Monitor.Win32.Ardamax.eg [Kaspersky Lab]4
not-a-virus:Monitor.Win32.Ardamax.hi [Kaspersky Lab]4
Win-Trojan/Agent.470528.G [AhnLab]4
Win-Trojan/Ardamax.479232 [AhnLab]4
Win-Trojan/Ardamax.5120.B [AhnLab]4
Dropper/Downloader.817294 [AhnLab]3
Generic PWS.y [McAfee]3
Keylog-Ardamax.dll!a [McAfee]3
Mal/Dropper-AE [Sophos]3
not-a-virus:Monitor.Win32.Ardamax.ah [Kaspersky Lab]3
not-a-virus:Monitor.Win32.Ardamax.cn [Kaspersky Lab]3
TSPY_ARDAMAX.CM [Trend Micro]3
Win-Trojan/Ardamax.14848.G [AhnLab]3
Win-Trojan/Ardamax.402944.B [AhnLab]3
Win-Trojan/Ardamax.4608.B [AhnLab]3
Win-Trojan/Ardamax.538624 [AhnLab]3
Win-Trojan/Keylogger.470528 [AhnLab]3
Backdoor.Win32.Bifrose [Ikarus]2
Constructor.Win32.Bifrose.j [Kaspersky Lab]2
New Malware.b [McAfee]2
not-a-virus:AdWare.Win32.AdMedia.ed [Kaspersky Lab]2
not-a-virus:AdWare.Win32.Agent.idt [Kaspersky Lab]2
not-a-virus:AdWare.Win32.Agent.kim [Kaspersky Lab]2
not-a-virus:Monitor.Win32.Ardamax.af [Ikarus]2
not-a-virus:Monitor.Win32.Ardamax.ak [Kaspersky Lab]2
not-a-virus:Monitor.Win32.Ardamax.as [Kaspersky Lab]2
not-a-virus:Monitor.Win32.Ardamax.dn [Kaspersky Lab]2
Rootkit.Win32.Agent.hex [Kaspersky Lab]2
Trojan.Win32.Agent.bqeo [Kaspersky Lab]2
Trojan.Win32.Agent.brht [Kaspersky Lab]2
Trojan.Win32.Chifrax.a [Kaspersky Lab]2
Trojan-Dropper.Agent [Ikarus]2
Virus.Win32.Agent [Ikarus]2
Virus.Win32.Virut.n [Kaspersky Lab]2
W32.Popwin [Symantec]2
W32/Vetor-A [Sophos]2
W32/Virut.gen [McAfee]2
Win-Trojan/Ardamax.402944.E [AhnLab]2
Backdoor.Trojan [Symantec]1
Backdoor.Win32.Poison.pg [Kaspersky Lab]1
Email-Worm.Win32.Runouce.b [Kaspersky Lab]1
Generic BackDoor [McAfee]1
Generic PUP.z [McAfee]1
Generic PWS.y!bt [McAfee]1
Infostealer.Gampass [Symantec]1
IRC-Worm.Win32.Tedeto.a [Ikarus]1
not-a-virus:Client-IRC.Win32.mIRC.602 [Kaspersky Lab]1
not-a-virus:Client-IRC.Win32.mIRC.603 [Kaspersky Lab]1
not-a-virus:Monitor.Win32.Ardamax.20 [Kaspersky Lab]1
not-a-virus:Monitor.Win32.Ardamax.aa [Kaspersky Lab]1
not-a-virus:Monitor.Win32.Ardamax.ai [Kaspersky Lab]1
not-a-virus:Monitor.Win32.Ardamax.cy [Kaspersky Lab]1

Application.Ardamax_Keylogger [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
Germany181
Russian Federation67
China9
Sweden6
Australia1
Belgium1
Saudi Arabia1

Application.Ardamax_Keylogger [PC Tools] is known to be created as:
%ProgramFiles%\cle\akv.exe
%ProgramFiles%\htv\akv.exe
%ProgramFiles%\htv\htv.exe
%ProgramFiles%\htv\uninstall.exe
%ProgramFiles%\pdm\akv.exe
%ProgramFiles%\pdm\pdm.exe
%ProgramFiles%\pol\akv.exe
%ProgramFiles%\tnd\tnd.exe
%ProgramFiles%\wgv\wgv.exe
%System%\28463\adwc.exe
%System%\28463\akv.exe
%System%\28463\alni.exe
%System%\28463\axrr.exe
%System%\28463\bmuy.exe
%System%\28463\bonx.exe
%System%\28463\cqab.exe
%System%\28463\dkij.exe
%System%\28463\dmpu.exe
%System%\28463\dson.exe
%System%\28463\ekdd.exe
%System%\28463\eobx.exe
%System%\28463\epoe.exe
%System%\28463\eqfv.exe
%System%\28463\eqhk.exe
%System%\28463\flvi.exe
%System%\28463\fnaq.exe
%System%\28463\fvhk.exe
%System%\28463\gfyq.exe
%System%\28463\gpbk.exe
%System%\28463\gsik.exe
%System%\28463\gsrg.exe
%System%\28463\gxuk.exe
%System%\28463\hnem.exe
%System%\28463\hqpt.exe
%System%\28463\hvwq.exe
%System%\28463\icnd.exe
%System%\28463\iiff.exe
%System%\28463\ioqy.exe
%System%\28463\iurt.exe
%System%\28463\jkav.exe
%System%\28463\mcpp.exe
%System%\28463\mqxf.exe
%System%\28463\msdd.exe
%System%\28463\myih.exe
%System%\28463\neid.exe
%System%\28463\nhkk.exe
%System%\28463\nhpv.exe
%System%\28463\oimn.exe
%System%\28463\ooot.exe
%System%\28463\oqox.exe
%System%\28463\pfdk.exe
%System%\28463\plvx.exe
%System%\28463\qftq.exe
%System%\28463\qgqg.exe
%System%\28463\qlup.exe
%System%\28463\reuq.exe
%System%\28463\rgsv.exe
%System%\28463\rnxq.exe
%System%\28463\rqgh.exe
%System%\28463\rrnn.exe
%System%\28463\shmq.exe
%System%\28463\slth.exe
%System%\28463\srbw.exe
%System%\28463\stfa.exe
%System%\28463\svchost.exe
%System%\28463\sxud.exe
%System%\28463\tlcn.exe
%System%\28463\tppt.exe
%System%\28463\uaqi.exe
%System%\28463\ukth.exe
%System%\28463\vlic.exe
%System%\28463\wclh.exe
%System%\28463\wimg.exe
%System%\28463\wktt.exe
%System%\28463\wmhs.exe
%System%\28463\wqnm.exe
%System%\28463\xfrs.exe
%System%\28463\xtbu.exe
%System%\28463\xvul.exe
%System%\28463\xwlt.exe
%System%\28463\ynwx.exe
%System%\28463\yvvd.exe
%System%\explorer.exe
%System%\nsk.exe
%System%\scvh0st.exe
%System%\scvhost.exe
%System%\sys\cjrn.exe
%System%\sys\crsscss.exe
%System%\sys\explorer.exe
%System%\sys\iexxplorer.exe
%System%\sys\mcvn.exe
%System%\sys\prvw.exe
%System%\sys\qhux.exe
%System%\sys\scvhost.exe
%System%\sys\selk.exe
%System%\sys\sschost.exe
%System%\sys\svchost.exe
%System%\sys\tnd.exe
%System%\sys\wrde.exe
%System%\winsec.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).