Threat Database Potentially Unwanted Programs PUP.Desktop Weather Alerts

PUP.Desktop Weather Alerts

Threat Scorecard

Ranking: 3,022
Threat Level: 10 % (Normal)
Infected Computers: 192,740
First Seen: February 3, 2014
Last Seen: April 22, 2024
OS(es) Affected: Windows

File System Details

PUP.Desktop Weather Alerts may create the following file(s):
# File Name MD5 Detections
1. WeatherService.exe#57AAE3FC331AE1FB 76f55e311a21060d03346b45599b3f09 19,674
2. weather_free.exe ee9196447129fe8017f04731e1449068 8,240
3. weatherservice.exe f01c68f41994a543693dbc5f9c390c95 7,032
4. weather_free.exe bdc63594584ae39bec6adbffc3d83316 5,537
5. weatherservice.exe 9e2cc75a344bf54863753173a8e00447 4,313
6. weatherservice.exe cbde0dbfe594c079d243ac7ee66ec121 4,113
7. WeatherService.exe.vir 9beed70943771588f9bf265a5ed1b96a 3,831
8. weatherservice.exe 2ad8ea9a42721aa5a7160560cdc65a65 3,536
9. WeatherService.exe e177a654fe8edba12722140b7360845b 3,197
10. weather.exe ef02cedadb5f8f5a984b95e0373bd420 2,928
11. weatherservice.exe 34c783be3e2acd9cf0dd0c1e5483677a 2,703
12. WeatherService.exe 2f9b5f199f5402bd9769b814cf8d733c 2,507
13. WeatherService.exe fc191a1aebe0ba8427e596bbef91137a 1,408
14. weather.exe 197b1ec68008d7107d07ec7f33e5843f 651
15. weather.exe b6822864a849cbd611a78ea35ded2a0a 373
16. WeatherService.exe cb9daf854e598e296be1a9385fc9e19f 173
17. WeatherService.exe 963d0b687465a6c0d23fa3ac73af92d8 81
18. WeatherService.exe 72f805c46f192d0211c88c43475853ff 37
19. WeatherService.exe 05c0c495bbf5fdc7d5d08e0fc9081e77 13
20. WeatherService.exe 3714ac4d01174958d59c115a5953f3c5 10
21. WeatherService.exe 314ebac5224da67d90cae2496c3929d6 6
22. WeatherService.exe a347f9a2352c4d6c060ac7cacfd5869c 4
23. WeatherService.exe 7ab4eddedf66ad08a20927b9f897971e 4
24. WeatherService.exe 2f9d853a0bb1dfdf483ae653e876289d 3
25. WeatherService.exe 6d4a39763609b45ea3070b716aa46136 2
26. WeatherService.exe 88e92ca895235ef09bc82a6fdec57c51 2
More files

Registry Details

PUP.Desktop Weather Alerts may create the following registry entry or registry entries:
CLSID
{353385c3-5be5-7d15-7e24-38a3bbfb4d38}
{5914e3cf-e52f-7a1a-4efa-b790328104d9}
{ac66a361-74fe-74e2-411c-85b3162ae4f5}
File name without path
Weather Widget.lnk
WeatherApp.lnk
Regexp file mask
%WINDIR%\System32\Tasks\HDNINSTSCHD
%WINDIR%\System32\Tasks\IE_ERR4WDR
%WINDIR%\System32\Tasks\UPDTEXE4_WDR
Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\WeatherApp.exe
SOFTWARE\Microsoft\Tracing\DesktopWeatherAlertsApp_RASAPI32
SOFTWARE\Microsoft\Tracing\DesktopWeatherAlertsApp_RASMANCS
SOFTWARE\Microsoft\Tracing\hdnInstaller_RASAPI32
SOFTWARE\Microsoft\Tracing\hdnInstaller_RASMANCS
SOFTWARE\Microsoft\Tracing\WAUpdater_RASAPI32
SOFTWARE\Microsoft\Tracing\WAUpdater_RASMANCS
SOFTWARE\Microsoft\Tracing\wdrguid_RASAPI32
SOFTWARE\Microsoft\Tracing\wdrguid_RASMANCS
SOFTWARE\Microsoft\Tracing\WeatherAlerts_RASAPI32
SOFTWARE\Microsoft\Tracing\WeatherAlerts_RASMANCS
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HDNINSTSCHD
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IE_ERR4WDR
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UPDTEXE4_WDR
Software\Microsoft\Windows\CurrentVersion\App Paths\WeatherApp.exe
Software\Portable WeatherApp
Software\WeatherAlerts
Software\WeatherApp
Software\WeatherTool
SOFTWARE\Wow6432Node\Microsoft\Tracing\DesktopWeatherAlertsApp_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\DesktopWeatherAlertsApp_RASMANCS
SOFTWARE\Wow6432Node\Microsoft\Tracing\WeatherAlertService_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\WeatherAlertService_RASMANCS
SOFTWARE\Wow6432Node\Portable WeatherApp
SOFTWARE\Wow6432Node\WeatherTool
SYSTEM\ControlSet001\services\TheDesktopWeatherService
SYSTEM\ControlSet002\services\TheDesktopWeatherService
SYSTEM\CurrentControlSet\services\TheDesktopWeatherService
DesktopWeatherAlerts
WeatherAlert
WeatherApp
WeatherTool
{67E7E216-1173-4B30-BA9B-E737E032EFBB}

Directories

PUP.Desktop Weather Alerts may create the following directory or directories:

%ALLUSERSPROFILE%\WeatherAlert
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Weather Alerts
%APPDATA%\WeatherTool
%HOMEDRIVE%\WeatherAlert
%LOCALAPPDATA%\Local_Weather_LLC
%LOCALAPPDATA%\WeatherAlert
%LOCALAPPDATA%\WeatherAlerts
%LOCALAPPDATA%\WeatherApp
%PROGRAMFILES%\Portable WeatherApp
%PROGRAMFILES%\WeatherTool
%PROGRAMFILES(x86)%\Portable WeatherApp
%PROGRAMFILES(x86)%\WeatherApp
%PROGRAMFILES(x86)%\WeatherTool
%USERPROFILE%\Start Menu\Programs\Weather Alerts
%WINDIR%\SysWOW64\config\systemprofile\AppData\Roaming\WeatherTool
%WINDIR%\system32\config\systemprofile\AppData\Roaming\WeatherTool
%appdata%\Microsoft\Windows\Start Menu\Programs\WeatherApp

Trending

Most Viewed

Loading...