Sample details: 387fbffd305b73616985f2d65099ce43 --

Hashes
MD5: 387fbffd305b73616985f2d65099ce43
SHA1: a782a2955cf3a720c374fa319e1448b8f4cd448d
SHA256: 46bf0a7685996e6e4db2e0678f7ce738d8b7c16a7003dfbc020b0dabfe480bfb
SSDEEP: 3072:YCpmFp0CHDZG1yl4L8KtYM+Y1pUKfXR0WxL/BniCv2lTag91STXzozmYpfe7g+:YCweCHg14pKq4zNR7x/BZeNagHSPj
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/keylogger | YRP/win_files_operation |
Source
http://fruploadtool.com/arbayt/creed.exe
Strings
		!This program cannot be run in DOS mode.
`.rdata
@.data
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t.;t$$t(
VC20XC00U
STATUS_IO_REPARSE_TAG_INVALID
<- Finish ErrInfo0
m_DynamicCodecGainFlag = FALSE   (use default)
ANS detector detected Ans
MsiPreviewBillboardW
IRP_MJ_DIRECTORY_CONTROL
msi.dll
STATUS_SINGLE_STEP
EV_MMAC_OID_SV_TX_PWR_CALIB_CONTROL
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program: 
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
GetSubMenu
OffsetRect
PostMessageW
SetCapture
GetActiveWindow
GetClientRect
DestroyMenu
TrackPopupMenu
SetWindowPos
SetMenuItemInfoA
DestroyIcon
InflateRect
ShowWindowAsync
MessageBeep
SetWindowTextW
LoadIconA
AdjustWindowRectEx
PtInRect
SendMessageW
GetKeyState
RegisterClassW
GetMenu
SetTimer
UnregisterClassA
SetActiveWindow
GetCursorPos
GetMenuItemCount
DrawFocusRect
CheckMenuItem
USER32.dll
OleQueryLinkFromData
OleInitialize
ole32.dll
VirtualAlloc
GetProcAddress
LoadLibraryA
WriteFile
ExitProcess
InterlockedExchange
EnterCriticalSection
FreeLibrary
LeaveCriticalSection
QueryPerformanceCounter
GetModuleHandleA
GetModuleHandleW
InterlockedCompareExchange
CloseHandle
TerminateProcess
WaitForSingleObjectEx
SetFilePointer
GetVersionExA
GetLastError
GetVersionExW
MultiByteToWideChar
WideCharToMultiByte
WaitForSingleObject
DeleteCriticalSection
KERNEL32.dll
GetStartupInfoA
GetCommandLineA
GetVersion
GetCurrentProcess
UnhandledExceptionFilter
GetModuleFileNameA
FreeEnvironmentStringsA
FreeEnvironmentStringsW
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
GetCurrentThreadId
TlsSetValue
TlsAlloc
TlsFree
SetLastError
TlsGetValue
GetCurrentThread
HeapDestroy
HeapCreate
VirtualFree
HeapFree
RtlUnwind
InitializeCriticalSection
FatalAppExitA
GetCPInfo
GetACP
GetOEMCP
HeapAlloc
HeapReAlloc
IsBadWritePtr
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW