Sample details: ddb088b755b887f33f0e65682f4f258c --

Hashes
MD5: ddb088b755b887f33f0e65682f4f258c
SHA1: e5be0eb1c5c3f95af7e4ee87922253e679765288
SHA256: beadca775b76532e10f4cf5c36b60b6006a08fc8b00aecab72179eed8be3c4c1
SSDEEP: 6144:zLkpB3IkhHKePB1pilu2A8SJxauUPx3Od:z+asRbpi1A8SJxauUJ0
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/keylogger | YRP/win_files_operation |
Source
http://fruploadtool.com/arbayt/creed.exe
Strings
		!This program cannot be run in DOS mode.
`.rdata
@.data
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t.;t$$t(
VC20XC00U
VWuBht
STATUS_PKINIT_CLIENT_FAILURE
@Detected Signal on %d
RKCFG_AGGRESSIVE_SPEED: value %d is out of range
m_pOutMul
EV_MMAC_HT_BACK_INACTIVITY_TIMEOUT_5
MsiPreviewBillboardW
msi.dll
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program: 
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
GetKeyState
GetMenuItemCount
DestroyWindow
DefWindowProcW
ReleaseCapture
GetMenu
RegisterClassW
DrawFocusRect
SetTimer
GetActiveWindow
MoveWindow
SendMessageW
SetMenuItemInfoA
CreateWindowExA
GetClientRect
DestroyMenu
LoadStringW
TrackPopupMenu
OffsetRect
AdjustWindowRectEx
UnregisterClassA
GetMenuStringW
SetActiveWindow
SetWindowPos
GetSubMenu
PtInRect
DestroyIcon
ShowWindowAsync
GetCursorPos
CheckMenuItem
SetCapture
SetWindowLongW
SetWindowTextW
USER32.dll
OleQueryLinkFromData
OleInitialize
ole32.dll
VirtualAlloc
GetProcAddress
LoadLibraryA
GetVersionExW
GetVersionExA
MultiByteToWideChar
GetModuleHandleW
ExitProcess
CloseHandle
EnterCriticalSection
QueryPerformanceCounter
SetLastError
WideCharToMultiByte
LeaveCriticalSection
TerminateProcess
GetModuleHandleA
GetLastError
SetFilePointerEx
WriteFile
InterlockedExchange
DeleteCriticalSection
InterlockedCompareExchange
FreeLibrary
KERNEL32.dll
GetStartupInfoA
GetCommandLineA
GetVersion
GetCurrentProcess
UnhandledExceptionFilter
GetModuleFileNameA
FreeEnvironmentStringsA
FreeEnvironmentStringsW
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
GetCurrentThreadId
TlsSetValue
TlsAlloc
TlsFree
TlsGetValue
GetCurrentThread
HeapDestroy
HeapCreate
VirtualFree
HeapFree
RtlUnwind
InitializeCriticalSection
FatalAppExitA
GetCPInfo
GetACP
GetOEMCP
HeapAlloc
HeapReAlloc
IsBadWritePtr
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
N|o`4[