Threat Search: 

ThreatExpert's Statistics for MonitoringTool:Win32/Ardamax [Microsoft]:

MonitoringTool:Win32/Ardamax [Microsoft] is also known as:
Threat AliasNumber of Incidents
Keylog-Ardamax.dll [McAfee]110,346
Spyware.Ardakey [Symantec]89,191
not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab]80,658
Trojan-Spy.Ardamax.J [Ikarus]67,584
Application.Ardamax_Keylogger [PC Tools]49,809
Win-Trojan/Xema.variant [AhnLab]34,248
TrojanSpy.Ardamax.WQ [PC Tools]30,283
Application.Ardamax!ct [PC Tools]20,731
not-a-virus:Monitor.Win32.Ardamax.o [Kaspersky Lab]3,293
not-a-virus:Monitor.Win32.Ardamax.s [Kaspersky Lab]1,998
RiskWare.Ardamax.Z [PC Tools]1,665
Application.Keylogger.Ardamax [Ikarus]1,569
not-a-virus:Monitor.Win32.Ardamax.ac [Kaspersky Lab]1,517
RiskWare.Ardamax.AA [PC Tools]1,350
Keylog-Ardamax [McAfee]1,227
Win-Trojan/Ardamax.7680 [AhnLab]1,203
Spyware.Ardakey!sd6 [PC Tools]997
Spyware.Ardakey!sd5 [PC Tools]948
not-a-virus:Monitor.Win32.Ardamax.r [Kaspersky Lab]891
not-a-virus:Monitor.Win32.Ardamax.w [Kaspersky Lab]891
Virus.Win32.Ardamax.GG [Ikarus]881
Trojan-Dropper.Agent [PC Tools]851
Win-Trojan/Ardamax.484864 [AhnLab]814
RiksWare.Ardamax.Y [PC Tools]777
not-a-virus:Monitor.Win32.Ardamax [Ikarus]645
not-a-virus:Monitor.Win32.Ardamax.ah [Ikarus]631
not-a-virus:Monitor.Win32.Ardamax.x [Kaspersky Lab]630
not-a-virus:Monitor.Win32.Ardamax.z [Kaspersky Lab]600
Win-Trojan/Ardamax.404480 [AhnLab]475
not-a-virus:Monitor.Win32.Ardamax.271 [Kaspersky Lab]460
Mal/Generic-A [Sophos]424
not-a-virus:Monitor.Win32.Ardamax.o [Ikarus]415
TROJ_KEYLOG.EB [Trend Micro]390
Virus.Win32.Ardamax.CI [Ikarus]274
RiskWare.ArdamaxView.A [PC Tools]243
Trojan-Spy.Ardamax!sd5 [PC Tools]233
Win-Trojan/Ardamax.484864.C [AhnLab]231
Trojan-Spy.Win32.Ardamax.e [Kaspersky Lab]227
not-a-virus:Monitor.Win32.Ardamax.24 [Kaspersky Lab]219
TrojanSpy:WinNT/Ardamax.A!sys [Microsoft]210
not-a-virus:Monitor.Win32.Ardamax.24 [Ikarus]163
not-a-virus:Monitor.Win32.Ardamax.y [Kaspersky Lab]144
Win-Trojan/Keylogger.5632.C [AhnLab]143
not-a-virus:Monitor.Win32.Ardamax.jk [Kaspersky Lab]140
Win-Trojan/Ardamax.484864.B [AhnLab]96
TROJ_KEYLOGGE.AK [Trend Micro]94
Backdoor.Bifrose.ACN [PC Tools]90
Backdoor.Win32.Bifrose.blr [Kaspersky Lab]90
Dropper/Xema.367104.B [AhnLab]90
BKDR_BIFROSE.AIP [Trend Micro]89
not-a-virus:Monitor.Win32.Ardamax.hi [Kaspersky Lab]89
TrojanSpy.Ardamax.Gen.2 [PC Tools]86
Virus.Win32.Goldun.LR [Ikarus]86
Trojan-Spy.Win32.Ardamax [Ikarus]79
Virus.Win32.Ardamax.EK [Ikarus]72
MonitoringTool [Ikarus]71
Spyware.Ardamax!sd5 [PC Tools]69
TrojanSpy.Ardamax.Gen [PC Tools]63
not-a-virus:Monitor.Win32.Ardamax.u [Kaspersky Lab]57
Spyware.Ardakey [PC Tools]56
not-a-virus:Monitor.Win32.Ardamax.mh [Kaspersky Lab]55
Mal/Behav-116, Mal/Behav-214 [Sophos]49
not-a-virus:Monitor.Win32.Ardamax.25 [Ikarus]49
Spy-Agent.cv [McAfee]46
Win-Trojan/Ardamax.5632.M [AhnLab]44
not-a-virus:Monitor.Win32.Ardamax.25 [Kaspersky Lab]42
Win-Trojan/Ardamax.5632.D [AhnLab]40
Mal/Behav-214 [Sophos]36
Trojan-Spy.Win32.Ardamax.n [Kaspersky Lab]36
TSPY_ARDAMAX.GA [Trend Micro]35
Generic.dx [McAfee]33
Win-Trojan/Ardamax.403968 [AhnLab]32
Suspicious.MH690 [Symantec]28
TrojanSpy.Ardamax.W [PC Tools]24
Win-Trojan/Ardamax.5120 [AhnLab]23
Win-Trojan/Ardamax.14848.D [AhnLab]22
Trojan-Spy.Win32.Ardamax.d [Kaspersky Lab]21
Mal/Agent-Fam [Sophos]20
not-a-virus:Monitor.Win32.Ardamax.e [Kaspersky Lab]20
TSPY_ARDAMAX.HR [Trend Micro]20
Win-Trojan/Ardamax.403456 [AhnLab]20
Win-Trojan/Ardamax.4608.B [AhnLab]20
Win-Trojan/Ardamax.482816 [AhnLab]20
Win-Trojan/Ardamax.483840 [AhnLab]20
Win-Trojan/Keylogger.470528.B [AhnLab]18
not-a-virus:Monitor.Win32.Ardamax.dq [Kaspersky Lab]17
not-a-virus:Monitor.Win32.Ardamax.u [Ikarus]16
Trojan-Spy.Win32.Ardamax.le [Kaspersky Lab]16
Win-Trojan/Ardamax.3584 [AhnLab]16
TROJ_Generic [Trend Micro]15
TSPY_ARDAMAX.CM [Trend Micro]15
Win-Trojan/Ardamax.5632.F [AhnLab]14
Keylog-Ardamax.dr.gen [McAfee]11
Dropper/Downloader.817294 [AhnLab]10
Trojan-Spy.Win32.Ardamax.t [Kaspersky Lab]10
Win-Trojan/Ardamax.5120.B [AhnLab]10
not-a-virus:Monitor.Win32.Ardamax.eh [Kaspersky Lab]9
not-a-virus:Monitor.Win32.Ardamax.p [Kaspersky Lab]9
TSPY_ARDAMAX.CV [Trend Micro]9
Win-Trojan/Ardamax.14848.B [AhnLab]7

MonitoringTool:Win32/Ardamax [Microsoft] has the following possible countries of origin:
OriginNumber of Incidents
Germany298
Russian Federation60
Sweden9
United Kingdom2
Netherlands1

MonitoringTool:Win32/Ardamax [Microsoft] is known to be created as:
%ProgramFiles%\htv\akv.exe
%ProgramFiles%\htv\htv.exe
%ProgramFiles%\rlg\rlg.exe
%ProgramFiles%\tnd\akv.exe
%ProgramFiles%\tnd\tnd.exe
%ProgramFiles%\wgv\akv.exe
%ProgramFiles%\wgv\wgv.exe
%System%\28463\acud.exe
%System%\28463\adub.exe
%System%\28463\adwc.exe
%System%\28463\aeln.exe
%System%\28463\akv.exe
%System%\28463\aobo.exe
%System%\28463\aprr.exe
%System%\28463\aqlb.exe
%System%\28463\atbv.exe
%System%\28463\axdn.exe
%System%\28463\axrr.exe
%System%\28463\bmuy.exe
%System%\28463\bnnu.exe
%System%\28463\bolj.exe
%System%\28463\bonx.exe
%System%\28463\bqcd.exe
%System%\28463\cimr.exe
%System%\28463\cnae.exe
%System%\28463\cqab.exe
%System%\28463\cqiv.exe
%System%\28463\dkij.exe
%System%\28463\dmpu.exe
%System%\28463\dosx.exe
%System%\28463\dson.exe
%System%\28463\eayp.exe
%System%\28463\eflw.exe
%System%\28463\ekdd.exe
%System%\28463\eobx.exe
%System%\28463\epoe.exe
%System%\28463\eqhk.exe
%System%\28463\ernv.exe
%System%\28463\flvi.exe
%System%\28463\fnaq.exe
%System%\28463\frqh.exe
%System%\28463\gcuq.exe
%System%\28463\gfyq.exe
%System%\28463\gpbk.exe
%System%\28463\gsik.exe
%System%\28463\gsrg.exe
%System%\28463\gxnp.exe
%System%\28463\gxuk.exe
%System%\28463\hgaw.exe
%System%\28463\hitv.exe
%System%\28463\hnem.exe
%System%\28463\hqpt.exe
%System%\28463\hqqj.exe
%System%\28463\hvwq.exe
%System%\28463\icnd.exe
%System%\28463\iiff.exe
%System%\28463\ioqy.exe
%System%\28463\iurt.exe
%System%\28463\iylp.exe
%System%\28463\jkav.exe
%System%\28463\jlyl.exe
%System%\28463\jpxe.exe
%System%\28463\jqal.exe
%System%\28463\jsjy.exe
%System%\28463\jvdb.exe
%System%\28463\kcww.exe
%System%\28463\kilw.exe
%System%\28463\knmg.exe
%System%\28463\krgh.exe
%System%\28463\kuse.exe
%System%\28463\kyhf.exe
%System%\28463\lcoo.exe
%System%\28463\ldyv.exe
%System%\28463\lffl.exe
%System%\28463\lgue.exe
%System%\28463\lima.exe
%System%\28463\litw.exe
%System%\28463\ljdd.exe
%System%\28463\ltst.exe
%System%\28463\marr.exe
%System%\28463\mcpp.exe
%System%\28463\mkch.exe
%System%\28463\mlmv.exe
%System%\28463\mmsg.exe
%System%\28463\mmwa.exe
%System%\28463\mnas.exe
%System%\28463\mqxf.exe
%System%\28463\msdd.exe
%System%\28463\muyx.exe
%System%\28463\mxlq.exe
%System%\28463\myih.exe
%System%\28463\nebs.exe
%System%\28463\neid.exe
%System%\28463\nhkk.exe
%System%\28463\nhnv.exe
%System%\28463\nhpv.exe
%System%\28463\nitl.exe
%System%\28463\nulb.exe
%System%\28463\nwuh.exe
%System%\28463\oimn.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).