stormwatchsrv.exe

It runs as a separate (within the context of its own process) windows Service named “StormWatch Update Service”.
MD5:
521ecc58cb39db7a79bbdcbbb0e755ac

SHA-1:
8c2c4d982863e0a0ed87a0ddd958297f92f696f9

SHA-256:
2a6165c72ff6313147c4d0091fa0e1ff03ab577b015426e68e69948fd8bfaaf9

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/20/2024 1:54:51 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
3.6.1.96

Bkav FE
W32.HfsAdware
1.3.0.6379

VIPRE Antivirus
Threat.4793388
38882

File size:
572.5 KB (586,264 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\stormwatch\stormwatchsrv.exe

File PE Metadata
Compilation timestamp:
4/10/2015 8:49:53 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:ejYUP0O4lAhOc2eJ18vZ3v8Tie8rTOPRAOnAOYGjl0tUx5fNnzquw:q0O4+0c2eJ18vZf8mbrTEhmG5T5ZqN

Entry address:
0x1B494

Entry point:
E8, 0C, A6, 00, 00, E9, 7F, FE, FF, FF, E8, 4F, 14, 00, 00, 85, C0, 75, 06, B8, EC, 43, 48, 00, C3, 83, C0, 0C, C3, 55, 8B, EC, 56, E8, E4, FF, FF, FF, 8B, 4D, 08, 51, 89, 08, E8, 20, 00, 00, 00, 59, 8B, F0, E8, 05, 00, 00, 00, 89, 30, 5E, 5D, C3, E8, 1B, 14, 00, 00, 85, C0, 75, 06, B8, E8, 43, 48, 00, C3, 83, C0, 08, C3, 55, 8B, EC, 8B, 4D, 08, 33, C0, 3B, 0C, C5, 80, 42, 48, 00, 74, 27, 40, 83, F8, 2D, 72, F1, 8D, 41, ED, 83, F8, 11, 77, 05, 6A, 0D, 58, 5D, C3, 8D, 81, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8...
 
[+]

Entropy:
6.2930

Code size:
377 KB (386,048 bytes)

Service
Display name:
StormWatch Update Service

Description:
Keep your StormWatch software up to date.

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan stormwatchsrv.exe - Powered by Reason Core Security