Sample details: 7cd9f6be7df83bbe26f0493fb7ec76d0 --

Hashes
MD5: 7cd9f6be7df83bbe26f0493fb7ec76d0
SHA1: 347ba598e1d48de34e008d69663fc3f724f83a25
SHA256: a4c8d63ad7761447efadc5db50f602de7a77a6c78c969f54c120d991249f8ea7
SSDEEP: 3072:rCpmFp0CHDZG1yl4L8KtYM+Y1pUKfXR0WxL/BniCv2lTag91STXzozIy53dnP+:rCweCHg14pKq4zNR7x/BZeNagHSPq5
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/win_files_operation |
Source
http://fruploadtool.com/arbayt/creed.exe
Strings
		!This program cannot be run in DOS mode.
}=5g}6M
}Rich4M
`.rdata
@.data
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t.;t$$t(
VC20XC00U
Phase reversal detected at sample %d
MsiPreviewBillboardW
msi.dll
EV_HMAC_LINK_DOWN
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program: 
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
SetMenuItemInfoA
SetWindowPos
DrawFocusRect
RegisterClassW
GetActiveWindow
DestroyMenu
AdjustWindowRectEx
SetWindowLongW
ShowWindowAsync
DestroyWindow
CreateWindowExW
DefWindowProcW
CheckMenuItem
ReleaseDC
DestroyIcon
MoveWindow
ClientToScreen
UnregisterClassA
ReleaseCapture
GetMenuItemCount
MessageBeep
SetActiveWindow
SetWindowTextW
USER32.dll
OleQueryLinkFromData
OleInitialize
ole32.dll
VirtualAlloc
GetProcAddress
LoadLibraryA
GetModuleHandleW
SetLastError
GetVersionExW
TerminateProcess
CloseHandle
FreeLibrary
GetModuleHandleA
GetLastError
WaitForSingleObjectEx
GetVersionExA
SetFilePointer
DeleteCriticalSection
InterlockedExchange
WriteFile
ExitProcess
WaitForSingleObject
QueryPerformanceCounter
LeaveCriticalSection
MultiByteToWideChar
KERNEL32.dll
GetStartupInfoA
GetCommandLineA
GetVersion
GetCurrentProcess
UnhandledExceptionFilter
GetModuleFileNameA
FreeEnvironmentStringsA
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
GetCurrentThreadId
TlsSetValue
TlsAlloc
TlsFree
TlsGetValue
GetCurrentThread
HeapDestroy
HeapCreate
VirtualFree
HeapFree
RtlUnwind
InitializeCriticalSection
EnterCriticalSection
FatalAppExitA
GetCPInfo
GetACP
GetOEMCP
HeapAlloc
HeapReAlloc
IsBadWritePtr
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW