Home Malware Programs Keyloggers Ardamax Keylogger

Ardamax Keylogger

Posted: March 28, 2006

Threat Metric

Threat Level: 8/10
Infected PCs: 34
First Seen: July 24, 2009
OS(es) Affected: Windows

Ardamax Keylogger is a commercial computer surveillance tool that tracks user activity and records all keystrokes. It sends the log to a configurable e-mail address or uploads it to a predefined FTP server. Ardamax Keylogger is able to hide its running processes and therefore avoid a detection. The threat must be manually installed. It runs on every Windows startup.

Aliases

ArdamaxKeylogger [Microsoft]not-a-virus:Monitor.Win32.Ardamax.24 [Kaspersky]Not-A-Virus.Monitor.Win32.Ardamax.24 [eWido]Generic.Ardamax.AF22012B [BitDefender]Win32:Ardamax-B [Avast]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



GXHO.006 File name: GXHO.006
Size: 5.12 KB (5120 bytes)
MD5: 8b20ee4ef305728ccab05c071db218d2
Detection count: 57
Mime Type: unknown/006
Group: Malware file
Last Updated: December 11, 2009

Related Posts

4 Comments

  • merson says:

    HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallArdamaxKeylogger HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsAppPathsakl.exe HKEY_CURRENT_USERSoftwareArdamaxKeyloggerLite HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunNSK HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionUninstallArdamax KeyloggerHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunArdamaxKeylogger HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsApp Pathsakl.exe HKEY_CURRENT_USER SoftwareArdamax Keylogger Lite HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionRunNSK HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionRunArdamax Keylogger

  • Kraytone (JAI) says:

    Hi im only 14 but i do not a bit about pc's, i was just wondering two things. One. Has Ardamax Been Proven To Slow Down Your Internet? Because I Have A Suddenly Slow Net Right Now After I Downloaded The Virus, And I'm Not Sure Whats Doing It. And Two. I Have A Virus File Named not-a-virus.monitor.Win32.ardamax.m and i dont know how to remove it. It does the same process as the key logger, where you delete the file and it comes back in another location. But i dont only want to know how to remove, i want to know what it does. any Help Would Be Of Great Appreiciation. THanks Your Always Great Kraytone

  • lorenzo says:

    HOW TO REMOVE THE KEYLOGGER TO YMAIL.COM

  • jhondave says:

    how to make keylog in ymail acc.

Loading...