setup_chrispc_movie_watcher_1_20.exe

ChrisPC Movie TV Series Watcher

Chris P.C. srl

The application setup_chrispc_movie_watcher_1_20.exe, “ChrisPC Movie TV Series Watcher Setup ” by Chris P.C. srl has been detected as a potentially unwanted program by 4 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Chris P.C. srl   (signed by Chris P.C. srl)

Product:
ChrisPC Movie TV Series Watcher

Description:
ChrisPC Movie TV Series Watcher Setup

MD5:
9eb881542fd45437a2f801534150de7d

SHA-1:
8a22e69f267608fca0996f0c420164bd9bf751b3

SHA-256:
1be5bbca804b40cc261b2ee6b1f64eecbef4545b1ff722d45eeabef25fa96478

Scanner detections:
4 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 9:49:12 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
ApplicUnwnt
21106

ESET NOD32
Win32/Complitly.A potentially unwanted (variant)
9.11186

NANO AntiVirus
Trojan.Win32.Generic.deiojy
0.30.0.65070

Reason Heuristics
PUP.Installer.ChrisPCsrl
15.3.2.0

File size:
2.7 MB (2,866,312 bytes)

Copyright:
Copyright © 2013 Chris P.C. srl

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\new media players\setup_chrispc_movie_watcher_1_20.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/7/2013 7:00:00 PM

Valid to:
1/8/2016 6:59:59 PM

Subject:
CN=Chris P.C. srl, O=Chris P.C. srl, STREET=Nicolae Cristea 25/8, L=Cluj-Napoca, S=Cluj, PostalCode=400184, C=RO

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
319A47CF0068FDF122C7AC1163A961B8

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:f2TlwUaylLms0PKyxRWb45V6oLoYcbMH0mSR4ZZ0TFS3vrYiKl4Rjx8xmOaqxPzL:+TlNayXU5V6oMTbK0B4ZZdPKqRlirPzP

Entry address:
0x9B60

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 66, 95, FF, FF, E8, 6D, A7, FF, FF, E8, 98, C9, FF, FF, E8, DF, C9, FF, FF, E8, 0E, F3, FF, FF, E8, 75, F4, FF, FF, 33, C0, 55, 68, 17, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, E0, A1, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 02, FA, FF, FF, 8D, 55, F0, 33, C0, E8, C8, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 17, 96, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
7.9967

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file setup_chrispc_movie_watcher_1_20.exe has been seen being distributed by the following 8 URLs.

https://dw.uptodown.com/dwn/O7VJmignuxmqrXlcXRfAvSiOFtMsb0sNj_n5aKTcXV8IxL29VchvhM_FW42bNzLTW6Y039f7MCNnPQOaqtvi7SdVHSl3maskEK4drVxSp2SqFIQY4aHtyVZlfvdFYS0K/kEFK9lxV-bxCNWxyo-1uJyVkTG5-fJNAFlH8amJuhvSXGstXjargFT4yfCdlSZSILWhDERRwDZd4iXrzrQc3nGW9Zqd5NGfYfD58PDhWi7bdGPqakZWsc93TWKrk1K5o/bedw3r0DUSBXHCPLxJepiR8ShwejR7phR2YipYUYb5n29D9SXo_8ujwez5UwAclA2sy5BSMXBOy875NBnJfjaiGV19F87e3gqgFJFtcZEJLxHajrQwvqrTftvddRIF7i/.../

http://dw.uptodown.com/dwn/0ceczuFtrO2FYMsks_qITsA731KFzeshwxYxWnknHIdcCasg7OBJMKarreStenhXaYz9aPeMbMavnrY0ppHnit6lAaFiaCvqT4trnD7NKN39hynvGklJt5NW5kEe_1NT/hsBHVLNDE5IMdt8Fys4KuQgTrg84zjvp_9IX-ibhVSOU702TS9U-rYx_8GVn2YeXlJOoh-7oSACDd24imUNoleC0_ogL7o8fUNyukCTge-fiPtDHAktx1AZ0xYWsytSj/zFKWvYRilQ5wDXojnR1U5cCztm5H2Hmc8fZqdEZssrmgI1wuK80H6C2nuoACgI6LaGmXcmL9c-Sln6eHWkkPfWCg0u0DSwK7cic6khQzd-7nlHRYMcpKmWuugtvGeJxe/.../

https://dw.uptodown.com/dwn/LqreSOtMG2YExrWK60HcKItiRlioZpJ0ZV1m_2pwJhj6kDMUtIu43NmLGfweFCU6lNUVzxwEL9ceXTj6KlQN3N4yYlQfKGvqQcqOFG2qor4v_o4JVDTreOEE6MmZ0j_S/JXY4AvUTFCkedUd5i4KYKfz9Oog2BtwxdEus6eQoVGr5DgbN94pJZVs4OpewCC1FnQZFKn9Rgo4CswYRTxtTaagz2weqJOD6hF0j2dEAIcQklm9qDKclxPaFIKL1MgFy/uOLqlYSTlsroCN6b0Cer6UIRMNnQIFOA2qwoYYqlWe20NztUCmqMTxVhCDkxSlZEeG-Ee-l8RYyft9fvq7OVpnGT2CmvOSGVMkJjxAYJFmsipdOmrnlQm9jPfw-DQYq_/.../

https://dw.uptodown.com/dwn/ZtsiXYwkX6AcFbI0p7yvVS-ZDWs3TY3BFYPstN-I5lzbqTdN3QR9maVF8tQHyM5ffbLEfD4lU9nBkR0UI1pbgdxKBZeyRdU5Jx8sw9JAx5vvlj4_HNT_0vUng5KGRJSh/VDZWC5RqecaWv5rItVbVh5xpvRvL05EcDsHGjRDuFVzIOUanVx_QqREMM5cEjW-h14DuAavHeshhrYa18gtAS8CxWISLD6do5hjW0OEQ2ONYcxr0ysTfuxsTvBBHVzAl/Pz50aGxI8bhL0STXnJRorU6bsaXEepfCK-cU8lwvn1rO5WQ7RmKdvFJ6tMNb8u6U4lV_E2zO5ubg2oKB_7vba3Dt9ppl3mN4V0pEq_l_RPi7gBR8nvZq_HLomWyqOZIc/.../

Remove setup_chrispc_movie_watcher_1_20.exe - Powered by Reason Core Security