desktopweatheralertsbrowser.exe

Local Weather LLC

Part of an adware web browser extension that delivers advertisements such as coupons, price-comparisons, display media, affiliate links, banners, popups/popunders and other links. The application desktopweatheralertsbrowser.exe by Local Weather has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Local Weather LLC  (signed and verified)

MD5:
6574172ffbd29f4fe470e8db080817fd

SHA-1:
2e0241c1060745f3087ba047d8c5755167611b25

SHA-256:
29bfd7c93517aeab5b6e16ad7fac4014a05f2b7201d6e451b8bc7adee8683cce

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/23/2024 8:06:19 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Weather (M)
17.1.7.3

File size:
326 KB (333,864 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\desktopweatheralertsbrowser.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/14/2013 2:00:00 AM

Valid to:
10/15/2014 1:59:59 AM

Subject:
CN=Local Weather LLC, O=Local Weather LLC, STREET="250 Park Ave #504", L=Minneapolis, S=MN, PostalCode=55415, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1E363E3CA4E0B46A71B002CFAF51DED1

File PE Metadata
Compilation timestamp:
2/25/2014 10:00:50 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

Entry address:
0x36954

Entry point:
70, 65, 2E, 50, 3D, 66, 75, 6E, 63, 74, 69, 6F, 6E, 28, 61, 29, 7B, 61, 7C, 7C, 28, 61, 3D, 77, 69, 6E, 64, 6F, 77, 2E, 65, 76, 65, 6E, 74, 29, 3B, 74, 68, 69, 73, 2E, 44, 2E, 78, 3D, 61, 2E, 63, 6C, 69, 65, 6E, 74, 58, 3B, 74, 68, 69, 73, 2E, 44, 2E, 79, 3D, 61, 2E, 63, 6C, 69, 65, 6E, 74, 59, 7D, 3B, 0A, 76, 61, 72, 20, 43, 70, 61, 3D, 66, 75, 6E, 63, 74, 69, 6F, 6E, 28, 61, 29, 7B, 61, 2E, 43, 7C, 7C, 28, 61, 2E, 42, 3D, 6E, 65, 77, 20, 41, 70, 61, 2C, 61, 2E, 43, 3D, 77, 69, 6E, 64, 6F, 77, 2E, 73, 65...
 
[+]

Code size:
210.5 KB (215,552 bytes)

Remove desktopweatheralertsbrowser.exe - Powered by Reason Core Security