Threat Search: 

ThreatExpert's Statistics for TrojanSpy.Ardamax.WQ [PC Tools]:

TrojanSpy.Ardamax.WQ [PC Tools] is also known as:
Threat AliasNumber of Incidents
Keylog-Ardamax.dll [McAfee]37,771
not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab]30,497
Spyware.Ardakey [Symantec]30,388
MonitoringTool:Win32/Ardamax [Microsoft]30,283
Trojan-Spy.Ardamax.J [Ikarus]25,187
Application.Ardamax_Keylogger [PC Tools]18,190
Win-Trojan/Xema.variant [AhnLab]12,955
Application.Ardamax!ct [PC Tools]7,811
W32.Sality.AE [Symantec]39
Virus:Win32/Sality.AM [Microsoft]38
W32/Sality-AM [Sophos]36
W32/Sality.gen [McAfee]22
Virus.Win32.Sality.aa [Kaspersky Lab]20
Virus.Win32.Sality.z [Kaspersky Lab]14
Win32/Kashu.B [AhnLab]13
PE_SALITY.EK [Trend Micro]9
W32/Sality.ag [McAfee]9
PE_SALITY.JER [Trend Micro]4
Virus.Win32.Sality.y [Kaspersky Lab]4
Mal/Sality-B [Sophos]3
PE_SALITY.EN [Trend Micro]3
PE_SALITY.M [Trend Micro]3
W32.Virut.U [Symantec]3
W32/Sality.ae [McAfee]3
W32/Vetor-A [Sophos]3
W32/Virut.gen [McAfee]3
PE_SALITY.BU [Trend Micro]2
PE_VIRUT.XL [Trend Micro]2
Virus.Win32.Virut.ce [Kaspersky Lab]2
Virus.Win32.Virut.n [Kaspersky Lab]2
Virus:Win32/Virut.AF [Microsoft]2
Virus:Win32/Virut.BM [Microsoft]2
W32.Virut.CF [Symantec]2
W32/Sality.ah [McAfee]2
W32/Sality.ao [McAfee]2
W32/Scribble-B [Sophos]2
PE_SALITY.AM [Trend Micro]1
PE_SALITY.AS [Trend Micro]1
PE_SALITY.EM [Trend Micro]1
PE_SALITY.EN-1 [Trend Micro]1
PE_VIRUT.AV [Trend Micro]1
PE_VIRUT.XO [Trend Micro]1
Virus.Win32.Sality.q [Kaspersky Lab]1
Virus.Win32.Sality.v [Kaspersky Lab]1
Virus.Win32.Virut.av [Kaspersky Lab]1
Virus.Win32.Virut.q [Kaspersky Lab]1
Virus:Win32/Sality.AH [Microsoft]1
Virus:Win32/Sality.R [Microsoft]1
Virus:Win32/Virut.AC [Microsoft]1
Virus:Win32/Virut.L [Microsoft]1
W32.Sality.U [Symantec]1
W32.Virut.W [Symantec]1
W32/Sality.ad [McAfee]1
W32/Sality.x [McAfee]1
W32/Sality-AA [Sophos]1
W32/Virut.gen.a [McAfee]1
W32/Virut.n.gen [McAfee]1
W32/Virut-W [Sophos]1
Win32/Virut.B [AhnLab]1
Win32/Virut.D [AhnLab]1

TrojanSpy.Ardamax.WQ [PC Tools] has the following possible country of origin:
OriginNumber of Incidents
Germany155

TrojanSpy.Ardamax.WQ [PC Tools] is known to be created as:
%ProgramFiles%\htv\htv.exe
%System%\28463\adwc.exe
%System%\28463\ekdd.exe
%System%\28463\gxuk.exe
%System%\28463\hqpt.exe
%System%\28463\ioqy.exe
%System%\28463\mcpp.exe
%System%\28463\msdd.exe
%System%\28463\nhpv.exe
%System%\28463\oimn.exe
%System%\28463\qgqg.exe
%System%\28463\svchost.exe
%System%\28463\tlcn.exe
%System%\28463\tppt.exe
%System%\28463\uaqi.exe
%System%\28463\wimg.exe
%System%\28463\xvul.exe
%System%\28463\xwlt.exe
%System%\28463\ynwx.exe
%System%\28463\yvvd.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).