Sample details: cbb0e2f81f1577d7a4199f020e82660f --

Hashes
MD5: cbb0e2f81f1577d7a4199f020e82660f
SHA1: 9f556349fd1be3c9badc809d88abccf836aba3ef
SHA256: 163dab69c878edce1c44cea6526cb9efbd42bb1ce8c8579b3cbbf4abd86aaf44
SSDEEP: 3072:qc+LOm+ts3LpHVeeX7pYCHc1AEP5/2rE6jSmR+Hl7R4YwfVej3+I:7uOAN1xZHcHP5q3RqlmRfVeL
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/keylogger | YRP/win_files_operation |
Source
http://fruploadtool.com/arbayt/creed.exe
Strings
		!This program cannot be run in DOS mode.
`.rdata
@.data
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t.;t$$t(
VC20XC00U
SetHandleCount
STATUS_CTX_CLIENT_LICENSE_NOT_SET
MsiPreviewBillboardW
msi.dll
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program: 
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
SetTimer
SetActiveWindow
SetWindowLongW
SetWindowPos
SetMenuItemInfoA
ShowWindowAsync
GetKeyState
CreateWindowExW
GetMenuStringW
LoadIconA
GetClientRect
GetCursorPos
TrackPopupMenu
GetMenuItemCount
CheckMenuItem
SetWindowTextW
RegisterClassW
GetMenu
ReleaseCapture
DestroyMenu
SetCapture
LoadStringW
DestroyIcon
PostMessageW
OffsetRect
MoveWindow
InflateRect
CreateWindowExA
SendMessageW
AdjustWindowRectEx
USER32.dll
OleQueryLinkFromData
OleInitialize
ole32.dll
VirtualAlloc
GetProcAddress
LoadLibraryA
InterlockedCompareExchange
SetLastError
WriteFile
MultiByteToWideChar
GetLastError
FreeLibrary
CloseHandle
LeaveCriticalSection
WaitForSingleObject
DeleteCriticalSection
SetFilePointer
EnterCriticalSection
WaitForSingleObjectEx
GetModuleHandleW
GetVersionExW
SetFilePointerEx
InterlockedExchange
QueryPerformanceCounter
KERNEL32.dll
GetModuleHandleA
GetStartupInfoA
GetCommandLineA
GetVersion
ExitProcess
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
GetModuleFileNameA
FreeEnvironmentStringsA
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
GetCurrentThreadId
TlsSetValue
TlsAlloc
TlsFree
TlsGetValue
GetCurrentThread
HeapDestroy
HeapCreate
VirtualFree
HeapFree
RtlUnwind
InitializeCriticalSection
FatalAppExitA
GetCPInfo
GetACP
GetOEMCP
HeapAlloc
HeapReAlloc
IsBadWritePtr
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW