WxRadar.exe

WxRadar

Danny Lloyd

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘WxRadar’. This is installed with Weather Message Net.
Publisher:
Weather Message Software LLC  (signed by Danny Lloyd)

Product:
WxRadar

Version:
4.1.5615.11154

MD5:
6cc04c34f0ab87fe62ecb0d5ec12a7e4

SHA-1:
0980045752c216533e5ed1799811d5898aa7dca0

SHA-256:
0410bcdaa6478682bdc93b61603923df6c79860e9b441e1f80df0d3a915a21ea

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:32:45 PM UTC  (today)

File size:
113.7 KB (116,400 bytes)

Product version:
4.1.5615.11154

Copyright:
Copyright © 2002-2015 Weather Message Software LLC

Original file name:
WxRadar.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\wxmesgnet\wxradar.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
12/1/2013 3:03:32 AM

Valid to:
12/2/2015 10:24:55 AM

Subject:
E=danny@weathermessage.com, CN=Danny Lloyd, L=Dadeville, S=Alabama, C=US, Description=Ks2KEP2QLBbCVo4s

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BFB

File PE Metadata
Compilation timestamp:
5/17/2015 7:41:30 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:E8+vIuu2qv0LycSJwl/StdH8P0otAlSk/WhWbFx:QLyFwlLPXtcFL

Entry address:
0x1B6FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.7315

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
102 KB (104,448 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WxRadar

Command:
C:\Program Files\wxmesgnet\wxradar.exe


The file WxRadar.exe has been discovered within the following programs.

Weather Message Net  by Weather Message Software LLC
www.weathermessage.com
About 8% of users remove it
Weather Message Net Update  by Weather Message Software LLC
About 9% of users remove it
Weather Message WxDataSave Net  by Weather Message Software LLC
About 1% of users remove it
Weather Message WxDataSave Net Update  by Weather Message Software LLC
About 1% of users remove it
Weather Message WxLocal Net  by Weather Message Software LLC
About 2% of users remove it
Weather Message WxLocal Net Update  by Weather Message Software LLC
About 3% of users remove it
 
Powered by Should I Remove It?

Scan WxRadar.exe - Powered by Reason Core Security