Home Malware Programs Adware WeatherBuddy

WeatherBuddy

Posted: March 13, 2017

Threat Metric

Ranking: 7,194
Threat Level: 1/10
Infected PCs: 22,184
First Seen: March 13, 2017
Last Seen: October 12, 2023
OS(es) Affected: Windows

WeatherBuddy is an adware application that provides users with a neat weather widget that can be accessed straight from their Windows Desktop. The WeatherBuddy software allows users to set locations, get information about the current weather conditions, as well as a weekly forecast. In addition to the general information about the weather, WeatherBuddy also can provide data regarding the humidity, pressure, cloudiness, and other peculiar facts. However, users who wish to install this software should be warned that it is ad-supported, and by agreeing to install it, they may end up seeing a rather large number of ads on a regular basis.

The WeatherBuddy advertisements may vary in terms of content, but it is likely that their goal is to promote various products, services, and pages that may not be relevant to the user's interests. The advertisements may not promote harmful content so that following them should not be an issue. However, users should keep in mind that software that exposes them to ads on a regular basis may not be something they'd enjoy using, especially when there may be ad-free alternatives of the application in question. It is important to note that WeatherBuddy's authors offer a premium plan that removes the advertisements, but it is questionable whether it is worth paying for an ad-free weather forecast experience, when there are hundreds of programs and services that offer this for free.

WeatherBuddy is identified as a Potentially Unwanted Program with adware capabilities, and users who are not happy with the quality of WeatherBuddy's services should not hesitate to uninstall it from their computers. Since WeatherBuddy is not associated with any suspicious behavior, it can be removed by simply uninstalling it from the Windows Control Panel or running the application's dedicated uninstaller.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\WeatherBuddy\WeatherBuddy.exe File name: WeatherBuddy.exe
Size: 4.35 MB (4352512 bytes)
MD5: 239ee4817741693e6ae60632d3291b46
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\WeatherBuddy
Group: Malware file
Last Updated: March 17, 2017
%LOCALAPPDATA%\WeatherBuddy\WeatherBuddy.exe File name: WeatherBuddy.exe
Size: 3.66 MB (3666432 bytes)
MD5: 83ca10c3bf6d97e9c9d83143f9c98f9d
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\WeatherBuddy
Group: Malware file
Last Updated: March 17, 2017

Registry Modifications

The following newly produced Registry Values are:

File name without pathWeatherBuddy.lnkRegexp file mask%TEMP%\Weather Buddy_[RANDOM CHARACTERS].log%WINDIR%\WeatherBuddy.INIHKEY..\..\..\..{RegistryKeys}Software\ELLS LLCSoftware\Microsoft\Windows\CurrentVersion\Run\WeatherBuddyHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{85752A3C-1F15-40D5-B878-517A25777E0F}{AE415C13-7935-4681-B33B-36C4F47B35B7}

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\WeatherBuddy%LOCALAPPDATA%\WeatherBuddy
Loading...