weather.watcher.live.7.x-patch.exe

The application weather.watcher.live.7.x-patch.exe has been detected as a potentially unwanted program by 23 anti-malware scanners.
MD5:
578fd706a90290994c2ae23d366ce338

SHA-1:
aa31d377ac9db51bfd701cb7f5297b4c36f5e4c2

SHA-256:
57f24605f29aa7e59d1f3346cfcde49adeaffc2f6d551a8a6450ff670e9ac444

Scanner detections:
23 / 68

Status:
Potentially unwanted

Analysis date:
9/12/2025 1:50:05 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.224923
1112

Agnitum Outpost
Riskware.HackTool
7.1.1

avast!
Win32:Patcher-AK [PUP]
2014.9-140118

AVG
Crack
2015.0.3590

Bitdefender
Gen:Variant.Kazy.224923
1.0.20.90

Bkav FE
W32.Clodad6.Trojan
1.3.0.4613

Comodo Security
TrojWare.Win32.Agent.WFN
17611

Dr.Web
Tool.ProcPatch.112
9.0.1.018

Emsisoft Anti-Malware
Gen:Variant.Kazy.224923
8.14.01.18.05

ESET NOD32
Win32/HackTool.Patcher.AD (variant)
8.9290

Fortinet FortiGate
Riskware/GamePatcher
1/18/2014

F-Secure
Gen:Variant.Kazy.224923
11.2014-18-01_7

G Data
Gen:Variant.Kazy.224923
14.1.24

IKARUS anti.virus
not-a-virus:RiskTool.Win32.Patcher
t3scan.2.2.29

K7 AntiVirus
Trojan
13.175.10837

Malwarebytes
PUP.Riskware.Patcher
v2014.01.18.05

McAfee
Artemis!578FD706A902
5600.7246

MicroWorld eScan
Gen:Variant.Kazy.224923
15.0.0.54

nProtect
Trojan/W32.Agent.76800.UQ
14.01.14.02

Panda Antivirus
Trj/DataRecovery.A
14.01.18.05

Rising Antivirus
PE:Trojan.Win32.Generic.131D71E4!320696804
23.00.65.14116

Sophos
Troj/Agent-WFN
4.96

VIPRE Antivirus
Trojan.Win32.Agent.wfn
25434

File size:
75 KB (76,800 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\weatherwatcherlive_7.1.129_[www.patoghu.com]\weather.watcher.live.7.x-patch\weather.watcher.live.7.x-patch.exe

File PE Metadata
Compilation timestamp:
5/2/2012 10:50:41 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:hp8O50kagXwjy+2F0AR1vjgwGRzc43Y7aL3e1gKWzhgcZzVXD:hhHAjy+2F0AR1vkwIc4oyOizhgi

Entry address:
0x102B

Entry point:
E8, 07, 00, 00, 00, 6A, 00, E8, 05, 01, 00, 00, 55, 8B, EC, 81, C4, F4, FB, FF, FF, 56, 57, 53, 6A, 00, E8, 04, 01, 00, 00, A3, 30, 30, 40, 00, C7, 45, F8, 00, 00, 00, 00, 6A, 0A, 68, 00, 30, 40, 00, 6A, 00, E8, DE, 00, 00, 00, 0B, C0, 74, 21, 89, 45, FC, FF, 75, FC, 6A, 00, E8, FD, 00, 00, 00, 89, 45, F4, FF, 75, FC, 6A, 00, E8, E4, 00, 00, 00, 0B, C0, 74, 03, 89, 45, F8, 83, 7D, F8, 00, 74, 32, 6A, 04, 68, 00, 10, 00, 00, FF, 75, F4, 6A, 00, E8, D8, 00, 00, 00, 8B, F8, FF, 75, F4, FF, 75, F8, 57, E8, BE...
 
[+]

Entropy:
7.6234

Code size:
512 Bytes (512 bytes)

Remove weather.watcher.live.7.x-patch.exe - Powered by Reason Core Security