www.chris-tv.com

CHRIS P.C. SRL

Domain Information

The domain www.chris-tv.com registered by CHRIS P.C. SRL was initially registered in April of 2003 through REGISTER.COM, INC.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Leland, North Carolina within the United States which resides on the Net2EZ network.
Registrar:
REGISTER.COM, INC.

Server location:
North Carolina, United States (US)

Create date:
Monday, April 21, 2003

Expires date:
Friday, April 21, 2017

Updated date:
Friday, June 12, 2015

ASN:
AS558 NET2EZ - Net2EZ

Root domain:

Scanner detections:
Malware distribution  (74% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ChrisPCsrl.b, PUP.Installer.ChrisPCsrl.k, Threat.Installer.ChrisPCsrl, PUP.ChrisPCsrl.Installer (M), PUP (M)
92.11%

Dr.Web
DLOADER.Trojan, Adware.Redsky.11, infected with Trojan.PWS.Banker1.19513, Win32.Runonce.6652, Win32.Sector.30
21.05%

ESET NOD32
Win32/Somoto, Win32/Complitly.A potentially unwanted (variant), Win32/BundleLoader.C potentially unwanted (variant)
7.89%

Kingsoft AntiVirus
Win32.Malware.Heur_Generic.B.(kcloud), VIRUS_UNKNOWN
7.89%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F], Trjoan.Generic-e718D0Y2PRG (Cloud)
7.89%

McAfee
Artemis!581E2844F691, Virus.W32/Chir.b@MM
5.26%

Trend Micro House Call
Suspicious_GEN.F47V1230, Suspicious_GEN.F47V0415
5.26%

Antiy Labs AVL
Trojan[:HEUR]/Win32.Unknown, GrayWare[AdWare]/Win32.Adware.EoRezo.ay
5.26%

ESET NOD32
Win32/Chir.B virus, Win32/Sality.NBA virus
5.26%

Microsoft Security Essentials
Threat.Undefined
5.26%

F-Prot
W32/Thecid.B@mm, W32/Sality.E.gen
5.26%

avast!
Win32:Oncer, Win32:Kukacka
5.26%

Kaspersky
Email-Worm.Win32.Runouce, Virus.Win32.Sality
5.26%

Emsisoft Anti-Malware
Win32.Runouce.B@mm, Win32.Sality
5.26%

McAfee Web Gateway
Artemis
2.63%

The domain www.chris-tv.com has been seen to resolve to the following 2 IP addresses.

server2.pgware.com
May 1, 2014

skylock.net
December 26, 2013

File downloads found at URLs served by www.chris-tv.com.

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=30  (setup_chrispc_game_booster_3_60.exe)

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=16  (setup_chrispc_free_anonymous_proxy_6_35.exe)

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=18  (setup_chrispc_free_videotube_downloader_8_42.exe)

0 / 68
http://www.chris-tv.com/.../setup_christv_6_35_pro.exe  (a4caf5d25a5105849cc7e4ad2e9d623f)

0 / 68
http://www.chris-tv.com/  (setup_christv_4_99_pro.exe)

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=36  (setup_chrispc_videotube_downloader_pro_8_37.exe)

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=39  (setup_chrispc_ytd_downloader_mp3_converter_pro_2_30.exe)

6 / 68      (PUP)

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=34  (setup_chrispc_ram_booster_3_50.exe)

1 / 68      (PUP)
http://www.chris-tv.com/chrisdownload.php?action=count&id=601  (setup_chrispc_videotube_downloader_pro_7_90.exe)

1 / 68      (PUP)
http://www.chris-tv.com/chrisdownload.php?action=count&id=38  (setup_chrispc_ytd_downloader_mp3_converter_1_50.exe)

0 / 68
http://www.chris-tv.com/chrisdownload.php?action=count&id=32  (setup_chrispc_anonymous_proxy_pro_6_50.exe)

1 / 68      (Malware)
http://www.chris-tv.com/chrisdownload.php?action=count&id=42  (setup_chrispc_anonymous_connection_1_30.exe)

1 / 68      (Malware)

9 / 68      (Malware)
http://www.chris-tv.com/chrisdownload.php?action=count&id=23  (setup_chrispc_free_video_converter_3_70.exe)

3 / 68      (PUP)
http://www.chris-tv.com/chrisdownload.php?action=count&id=7  (setup_christv_online_premium_9_30.exe)

2 / 68      (PUP)
http://www.chris-tv.com/chrisdownload.php?action=count&id=602  (setup_chrispc_free_videotube_downloader_7_90.exe)

1 / 68      (PUP)
http://www.chris-tv.com/chrisdownload.php?action=count&id=8  (setup_chrispc_mediastreamer_1_75.exe)

The following file have been seen to comunicate with www.chris-tv.com in live environments.

URL:
http://www.chris-tv.com/

Google Analytics:
UA-964897

Title:
“ChrisTV PVR - The PVR that TAKES control OVER Your TV Card. Watch FREE online TV with ChrisTV Online. TV Cards with MPEG2 Hardware Encoding. Developed by Chris P.C. srl”

Description:
“ChrisTV - best program for viewing TV on your PC. Supports TV cards with MPEG Hardware Encoder,Hauppauge,ATI.TV Cards based on BT8x8 chipset,Philips SAA713x,Conexant. Watch online TV with ChrisTV Online. Great Image quality and very easy to use.”

Web server:
Apache/2.4.18 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4

Facebook:
Likes:  411
Shares:  38
Comments:  10

Statistics are for the previous month.