DTUpdater.exe

Desktop Temperature Updater

System Alerts LLC

The application DTUpdater.exe, “DesktopTemperatureUpdater” by System Alerts has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Desktop Temperature Monitor by System Alerts LLC which is a potentially unwanted software program.
Publisher:
System Alerts LLC  (signed and verified)

Product:
Desktop Temperature Updater

Description:
DesktopTemperatureUpdater

Version:
1.22.0.0

MD5:
106a69f38fb7bf95273fbcb5872c30e2

SHA-1:
e67ea7a7e219644487e78e26643db0b589eae152

SHA-256:
a8d42d6c62fe09958e59cbec21d0bb066d90bb13e09acde26b9e92c35c14870a

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/27/2024 12:59:30 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.SystemAlertsLLC
14.4.9.21

File size:
20.2 KB (20,728 bytes)

Product version:
1.22.0.0

Copyright:
Copyright © 2014 System Alerts LLC. All Rights Reserved.

Original file name:
DTUpdater.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\desktoptemperature\dtupdater.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/12/2013 6:00:00 PM

Valid to:
11/13/2014 5:59:59 PM

Subject:
CN=System Alerts LLC, O=System Alerts LLC, STREET=250 Park Ave Ste 504, L=Minneapolis, S=MN, PostalCode=55415, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D56696E8C583BF7F09BCCC24A2AB8310

File PE Metadata
Compilation timestamp:
3/2/2014 2:26:51 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:zs4cj38gJL5mr0Iv6U/JLcVrik/uCxMMC18D2TwSj7:z+jMw5o99iV/LxhD2TwSP

Entry address:
0x4B1E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.9608

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
11 KB (11,264 bytes)

The file DTUpdater.exe has been discovered within the following program.

Desktop Temperature Monitor  by System Alerts LLC
The free version is ad-supported software (also known as adware) web browser plugin that displays advertisements such as coupon ads in the browser that are displayed on web pages that are not associated with the plugin or would not otherwise appear.
desktoptemperaturemonitor.com
74% remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP SSL):
Connects to ec2-54-225-244-87.compute-1.amazonaws.com  (54.225.244.87:443)

Remove DTUpdater.exe - Powered by Reason Core Security