Home Malware Programs Adware 'Desktop Weather Alerts' Pop-Ups

'Desktop Weather Alerts' Pop-Ups

Posted: February 3, 2014

Threat Metric

Ranking: 5,310
Threat Level: 1/10
Infected PCs: 452,367
First Seen: February 3, 2014
Last Seen: March 7, 2025
OS(es) Affected: Windows


'Desktop Weather Alerts' Pop-Ups is adware that may be installed on the PC without the computer user's consent. 'Desktop Weather Alerts' Pop-Ups may be distributed and access the PC through packed free programs that computer users can download from unsafe download websites. 'Desktop Weather Alerts' Pop-Ups is a security infection, but it is not categorized as a malware threat or virus. If 'Desktop Weather Alerts' Pop-Ups appears on the Web browser while the PC user is browsing the Web, this may specify that adware has affected the PC. 'Desktop Weather Alerts' Pop-Ups may seem to be a helpful application but, in reality, it is created to show random pop-up ads and, if clicked on them, forcibly redirect PC users to unwanted websites that may be designed to make money from ad clicks and raised web traffic.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\PC Faster\5.1.0.0\WeatherMini.exe File name: WeatherMini.exe
Size: 1.02 MB (1029096 bytes)
MD5: 1d440e5823170907aadefb04239a492f
Detection count: 22,531
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\PC Faster\5.1.0.0\WeatherMini.exe
Group: Malware file
Last Updated: February 24, 2025
C:\Program Files\WeatherTool\2.0.1.5000028\weather_free.exe File name: weather_free.exe
Size: 1.28 MB (1282160 bytes)
MD5: bdc63594584ae39bec6adbffc3d83316
Detection count: 12,978
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\WeatherTool\2.0.1.5000028\weather_free.exe
Group: Malware file
Last Updated: December 6, 2024
%SYSTEMDRIVE%\AdwCleaner\FileQuarantine\C\Program Files (x86)\WeatherTool\2.0.1.11245\WeatherService.exe.vir File name: WeatherService.exe.vir
Size: 141.96 KB (141960 bytes)
MD5: 9beed70943771588f9bf265a5ed1b96a
Detection count: 8,973
Mime Type: unknown/vir
Path: %SYSTEMDRIVE%\AdwCleaner\FileQuarantine\C\Program Files (x86)\WeatherTool\2.0.1.11245\WeatherService.exe.vir
Group: Malware file
Last Updated: January 4, 2023
%SYSTEMDRIVE%\System Volume Information\_restore{60AAA47A-56F8-411D-93F3-112FC644EB80}\RP625\A0152839.exe File name: A0152839.exe
Size: 152 KB (152008 bytes)
MD5: 84418d65c02ccd52eb97d7ea14cace16
Detection count: 8,108
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\System Volume Information\_restore{60AAA47A-56F8-411D-93F3-112FC644EB80}\RP625\A0152839.exe
Group: Malware file
Last Updated: March 21, 2024
%SYSTEMDRIVE%\System Volume Information\_restore{60AAA47A-56F8-411D-93F3-112FC644EB80}\RP628\A0153377.exe File name: A0153377.exe
Size: 1.29 MB (1293256 bytes)
MD5: 38c5bc971b01c266d28215c5179716f1
Detection count: 1,206
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\System Volume Information\_restore{60AAA47A-56F8-411D-93F3-112FC644EB80}\RP628\A0153377.exe
Group: Malware file
Last Updated: August 31, 2023
C:\backup 02-06-17\Program Files (x86)\WeatherTool\2.0.1.11297\weather.exe File name: weather.exe
Size: 1.63 MB (1638024 bytes)
MD5: b6822864a849cbd611a78ea35ded2a0a
Detection count: 874
File type: Executable File
Mime Type: unknown/exe
Path: C:\backup 02-06-17\Program Files (x86)\WeatherTool\2.0.1.11297\weather.exe
Group: Malware file
Last Updated: November 7, 2023
D:\System Volume Information\_restore{0D7818CE-6E14-4D95-AA8C-CCDA3389E807}\RP492\A0155403.exe File name: A0155403.exe
Size: 1.29 MB (1293256 bytes)
MD5: d8f219ce5455bab65238c1ca98b36fd4
Detection count: 604
File type: Executable File
Mime Type: unknown/exe
Path: D:\System Volume Information\_restore{0D7818CE-6E14-4D95-AA8C-CCDA3389E807}\RP492\A0155403.exe
Group: Malware file
Last Updated: August 17, 2022
E:\AdwCleaner\Quarantine\C\Users\<username>\AppData\Local\localtemperature\LT_Updater.dll.vir File name: LT_Updater.dll.vir
Size: 347.04 KB (347048 bytes)
MD5: 7c38bebf983f58a543b80bdb9d18be87
Detection count: 70
Mime Type: unknown/vir
Path: E:\AdwCleaner\Quarantine\C\Users\<username>\AppData\Local\localtemperature\LT_Updater.dll.vir
Group: Malware file
Last Updated: March 17, 2022
C:\Program Files (x86)\WeatherTool\2.0.0.10633\WeatherEntryDll.dll File name: WeatherEntryDll.dll
Size: 1.04 MB (1043400 bytes)
MD5: 8f210a9ee34f96363152912fa18ee07a
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files (x86)\WeatherTool\2.0.0.10633\WeatherEntryDll.dll
Group: Malware file
Last Updated: August 15, 2022
%TEMP%\is45637729\1253409_stp\WeatherApp.exe File name: WeatherApp.exe
Size: 5.49 MB (5496456 bytes)
MD5: 301b22fea5339ad1d218cf761aa419cf
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\is45637729\1253409_stp
Group: Malware file
Last Updated: February 6, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{353385c3-5be5-7d15-7e24-38a3bbfb4d38}{5914e3cf-e52f-7a1a-4efa-b790328104d9}{ac66a361-74fe-74e2-411c-85b3162ae4f5}File name without pathWeather Widget.lnkWeatherApp.lnkRegexp file mask%WINDIR%\System32\Tasks\HDNINSTSCHD%WINDIR%\System32\Tasks\IE_ERR4WDR%WINDIR%\System32\Tasks\UPDTEXE4_WDRHKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\WeatherApp.exeSOFTWARE\Microsoft\Tracing\DesktopWeatherAlertsApp_RASAPI32SOFTWARE\Microsoft\Tracing\DesktopWeatherAlertsApp_RASMANCSSOFTWARE\Microsoft\Tracing\hdnInstaller_RASAPI32SOFTWARE\Microsoft\Tracing\hdnInstaller_RASMANCSSOFTWARE\Microsoft\Tracing\WAUpdater_RASAPI32SOFTWARE\Microsoft\Tracing\WAUpdater_RASMANCSSOFTWARE\Microsoft\Tracing\wdrguid_RASAPI32SOFTWARE\Microsoft\Tracing\wdrguid_RASMANCSSOFTWARE\Microsoft\Tracing\WeatherAlerts_RASAPI32SOFTWARE\Microsoft\Tracing\WeatherAlerts_RASMANCSSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HDNINSTSCHDSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IE_ERR4WDRSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UPDTEXE4_WDRSoftware\Microsoft\Windows\CurrentVersion\App Paths\WeatherApp.exeSoftware\Portable WeatherAppSoftware\WeatherAlertsSoftware\WeatherAppSoftware\WeatherToolSOFTWARE\Wow6432Node\Microsoft\Tracing\DesktopWeatherAlertsApp_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\DesktopWeatherAlertsApp_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\WeatherAlertService_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\WeatherAlertService_RASMANCSSOFTWARE\Wow6432Node\Portable WeatherAppSOFTWARE\Wow6432Node\WeatherToolSYSTEM\ControlSet001\services\TheDesktopWeatherServiceSYSTEM\ControlSet002\services\TheDesktopWeatherServiceSYSTEM\CurrentControlSet\services\TheDesktopWeatherServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}DesktopWeatherAlertsWeatherAlertWeatherAppWeatherTool{67E7E216-1173-4B30-BA9B-E737E032EFBB}

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\WeatherAlert%APPDATA%\Microsoft\Windows\Start Menu\Programs\Weather Alerts%APPDATA%\WeatherTool%HOMEDRIVE%\WeatherAlert%LOCALAPPDATA%\Local_Weather_LLC%LOCALAPPDATA%\WeatherAlert%LOCALAPPDATA%\WeatherAlerts%LOCALAPPDATA%\WeatherApp%PROGRAMFILES%\Portable WeatherApp%PROGRAMFILES%\WeatherTool%PROGRAMFILES(x86)%\Portable WeatherApp%PROGRAMFILES(x86)%\WeatherApp%PROGRAMFILES(x86)%\WeatherTool%USERPROFILE%\Start Menu\Programs\Weather Alerts%WINDIR%\SysWOW64\config\systemprofile\AppData\Roaming\WeatherTool%WINDIR%\system32\config\systemprofile\AppData\Roaming\WeatherTool%appdata%\Microsoft\Windows\Start Menu\Programs\WeatherApp

One Comment

  • Byron Griffin says:

    Do you have a method available for paying by CHECK thru the Postal System or over the telephone. I do not want the Local Weather Alert App to capture and sell my credit card data. Thanks

Loading...