Threat Search: 

ThreatExpert's Statistics for not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab]:

not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab] is also known as:
Threat AliasNumber of Incidents
Keylog-Ardamax.dll [McAfee]100,609
Spyware.Ardakey [Symantec]80,945
MonitoringTool:Win32/Ardamax [Microsoft]80,658
Trojan-Spy.Ardamax.J [Ikarus]66,978
Application.Ardamax_Keylogger [PC Tools]48,455
Win-Trojan/Xema.variant [AhnLab]34,489
TrojanSpy.Ardamax.WQ [PC Tools]30,497
Application.Ardamax!ct [PC Tools]20,805
Worm.Win32.AutoIt.x [Kaspersky Lab]28
Trojan.Win32.Autoit [Ikarus]11
W32.Imaut.CN [Symantec]11
Mal/Sohana-B, Mal/Sohana-A [Sophos]10
Mal/Generic-A [Sophos]8
W32/YahLover.worm.gen [McAfee]8
Infostealer [Symantec]7
Mal/Airworm-A [Sophos]6
Mal/Sohana-A [Sophos]6
W32/Autorun.worm.dt [McAfee]6
Worm.AutoIT.DP [PC Tools]5
Malware.Imaut [PC Tools]4
not-a-virus:Monitor.Win32.Ardamax.af [Kaspersky Lab]4
not-a-virus:Monitor.Win32.Ardamax.hi [Kaspersky Lab]4
not-a-virus:Monitor.Win32.Ardamax.o [Kaspersky Lab]4
TROJ_AGENT.AGAZ [Trend Micro]4
Trojan-Spy.Win32.Ardamax.n [Kaspersky Lab]4
W32.Imaut [Symantec]4
Mal/Sohana-B [Sophos]2
Trojan.Autoit [Ikarus]2
Worm:Win32/Autorun.FH [Microsoft]2
Trojan.Unpacked [Ikarus]1
VirTool:Win32/ModTool.A [Microsoft]1
W32/Autorun.worm.bm [McAfee]1

not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab] has the following possible countries of origin:
OriginNumber of Incidents
Germany299
United Kingdom27
Russian Federation2

not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab] is known to be created as:
%ProgramFiles%\htv\htv.exe
%System%\28463\adwc.exe
%System%\28463\ekdd.exe
%System%\28463\gxuk.exe
%System%\28463\hqpt.exe
%System%\28463\ioqy.exe
%System%\28463\mcpp.exe
%System%\28463\msdd.exe
%System%\28463\nhpv.exe
%System%\28463\oimn.exe
%System%\28463\qgqg.exe
%System%\28463\svchost.exe
%System%\28463\tlcn.exe
%System%\28463\tppt.exe
%System%\28463\uaqi.exe
%System%\28463\wimg.exe
%System%\28463\xvul.exe
%System%\28463\xwlt.exe
%System%\28463\ynwx.exe
%System%\28463\yvvd.exe
%System%\regsvr.exe
%Temp%\00058a46_rar\regsvr.exe
%Temp%\00058ae2_rar\regsvr.exe
%Temp%\00058af2_rar\regsvr.exe
%Temp%\setup_akl.exe
%Windir%\regsvr.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.