WeatherBug

WeatherBugWeather get digital hourly neighborhood forecasts. · It track approaching storms with regional lightning maps. It also customize features like alerts, locations , ad-free backgrounds and Look up historical weather data for your neighborhood.The weatherbug installer also installs MyWebSearch toolbar with weatherbug toolbar buttons and its own toolbar as well. The toolbar shows popup messages and redundant search results.Characteristics/Symptoms: Collects information about browsingSlows the BrowserCommunicates with the host serverAlso associated with other adwaresShows popup messagesDate of Found: 2006-03-24Security Level: HighOperating OS: WIN XPInstallation Type: Installed through EXEOperation: After InstallationTime of Operation: After Browser Restart.Screenshot:2. Installation Sample and Image2.1. Installation SampleOrigin URL: http://ww2.weatherbug.com/altdownload60.asp?dlid=100

General information:

Malware Name: WeatherBug
Malware Type: Toolbar
Company Name: WeatherBug
Company URL:
Threat Level: High
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Browser Restart.

Company Description:

Weather get digital hourly neighborhood forecasts. · It track approaching storms with regional lightning maps. It also customize features like alerts, locations , ad-free backgrounds and Look up historical weather data for your neighborhood.

Spyware Description:

WeatherBugWeather get digital hourly neighborhood forecasts. · It track approaching storms with regional lightning maps. It also customize features like alerts, locations , ad-free backgrounds and Look up historical weather data for your neighborhood.The weatherbug installer also installs MyWebSearch toolbar with weatherbug toolbar buttons and its own toolbar as well. The toolbar shows popup messages and redundant search results.Characteristics/Symptoms: Collects information about browsingSlows the BrowserCommunicates with the host serverAlso associated with other adwaresShows popup messagesDate of Found: 2006-03-24Security Level: HighOperating OS: WIN XPInstallation Type: Installed through EXEOperation: After InstallationTime of Operation: After Browser Restart.Screenshot:2. Installation Sample and Image2.1. Installation SampleOrigin URL: http://ww2.weatherbug.com/altdownload60.asp?dlid=100

Characteristics/Symptoms:

    -> Collects information about browsing -> Slows the Browser -> Communicates with the host server -> Also associated with other adwares -> Shows popup messages0

Additional information might be found here:

google Search at Google for WeatherBug
bing Search at Bing for WeatherBug
yahoo Search at Yahoo for WeatherBug

Processes Running:

weather.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\MyWebSearchWB\bar\1.bin\W6PLUGIN.DLL 45056 Application Extension
C:\Program Files\MyWebSearchWB\bar\1.bin\W6WBTEMP.DLL 53248 Application Extension
C:\Program Files\MyWebSearchWB\bar\Cache\007F77B6 10818 File

Folder information Created after Installation:

Folder Location
C:\Program Files\AWS\WeatherBug
C:\Program Files\AWS\WeatherBug\Local

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\MyWebSearchWB\bar UserFWB
HKEY_LOCAL_MACHINE \SOFTWARE\MyWebSearchWB\bar Visible
HKEY_LOCAL_MACHINE \SOFTWARE\MyWebSearchWB\bar sr