Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: WINMM.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: WTSAPI32.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\platforms\qwindows.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Gui.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: VERSION.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: dwmapi.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: NETAPI32.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: WININET.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Network.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\QtSingleApp.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: USERENV.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: iphlpapi.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: MPR.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Widgets.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: IPHLPAPI.DLL | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: d3d11.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: MSVCP140.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: dxgi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: SHFOLDER.DLL | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: d3d10warp.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: WINMMBASE.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: NETUTILS.DLL | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: SRVCLI.DLL | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: WindowsCodecs.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: DNSAPI.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: UxTheme.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: VCRUNTIME140.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Core.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: WINMM.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: WTSAPI32.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\platforms\qwindows.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Gui.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: VERSION.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: dwmapi.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: NETAPI32.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: WININET.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Network.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\QtSingleApp.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: USERENV.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: iphlpapi.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: MPR.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Widgets.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: IPHLPAPI.DLL | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: d3d11.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: MSVCP140.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: dxgi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: SHFOLDER.DLL | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: d3d10warp.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: WINMMBASE.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: NETUTILS.DLL | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: SRVCLI.DLL | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: WindowsCodecs.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: DNSAPI.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: UxTheme.dll | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | DLL: VCRUNTIME140.dll | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | DLL: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Core.dll | Jump to behavior |
Source: | Binary string: D:\code\IdeaShareWindowsApp\2021-9-16\AirPresence\desktop\Windows\IdeaShareKeyForm\IdeaShareKey\bin\Release\IdeaShareKey.pdb source: IdeaShare Key.exe, 00000000.00000003.350799274.0000000002941000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000000.358493347.00000000011DD000.00000002.00000001.01000000.00000005.sdmp, IdeaShareKeyForm.exe.0.dr |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Core.pdb source: IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.362084835.000000006C191000.00000002.00000001.01000000.00000009.sdmp |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Core.pdbQ source: IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.362084835.000000006C191000.00000002.00000001.01000000.00000009.sdmp |
Source: | Binary string: D:\code\IdeaShareWindowsApp\2021-9-16\AirPresence\desktop\Windows\IdeaShareKeyForm\IdeaShareKey\bin\Release\IdeaShareKey.pdb,,& source: IdeaShare Key.exe, 00000000.00000003.350799274.0000000002941000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000000.358493347.00000000011DD000.00000002.00000001.01000000.00000005.sdmp, IdeaShareKeyForm.exe.0.dr |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Network.pdb source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361582478.000000006BCCE000.00000002.00000001.01000000.0000000A.sdmp |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Gui.pdb source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.363086921.000000006C5E4000.00000002.00000001.01000000.00000008.sdmp |
Source: | Binary string: D:\IdeaShareRelease\IdeaShare\third-party\qtsingleapplication\release\QtSingleApp.pdb source: IdeaShare Key.exe, 00000000.00000003.357958578.0000000002924000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.365942375.000000006CCA6000.00000002.00000001.01000000.00000006.sdmp, QtSingleApp.dll.0.dr |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Widgets.pdb source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.365228156.000000006CAF4000.00000002.00000001.01000000.00000007.sdmp |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\plugins\platforms\qwindows.pdb source: IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361417174.000000006B847000.00000002.00000001.01000000.0000000B.sdmp, qwindows.dll.0.dr |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_004062F9 FindFirstFileW,FindClose, | 0_2_004062F9 |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_00402E3C FindFirstFileW, | 0_2_00402E3C |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_00406CAF DeleteFileW,lstrcatW,lstrcatW,lstrcatW,lstrlenW,FindFirstFileW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, | 0_2_00406CAF |
Source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361582478.000000006BCCE000.00000002.00000001.01000000.0000000A.sdmp | String found in binary or memory: http://bugreports.qt.io/ |
Source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361582478.000000006BCCE000.00000002.00000001.01000000.0000000A.sdmp | String found in binary or memory: http://bugreports.qt.io/_q_receiveReplyMicrosoft-IIS/4.Microsoft-IIS/5.Netscape-Enterprise/3.WebLogi |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://crl.globalsign.com/codesigningrootr45.crl0V |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://crl.globalsign.com/gsgccr45codesignca2020.crl0 |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://crl.globalsign.com/root-r3.crl0G |
Source: IdeaShare Key.exe | String found in binary or memory: http://nsis.sf.net/NSIS_ErrorError |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://ocsp.globalsign.com/codesigningrootr450F |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://ocsp.globalsign.com/gsgccr45codesignca20200V |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://ocsp.globalsign.com/rootr30; |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://secure.globalsign.com/cacert/codesigningrootr45.crt0A |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://secure.globalsign.com/cacert/gsgccr45codesignca2020.crt0= |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: http://secure.globalsign.com/cacert/root-r3.crt06 |
Source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.363086921.000000006C5E4000.00000002.00000001.01000000.00000008.sdmp | String found in binary or memory: http://www.aiim.org/pdfa/ns/id/ |
Source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.363086921.000000006C5E4000.00000002.00000001.01000000.00000008.sdmp | String found in binary or memory: http://www.color.org) |
Source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361582478.000000006BCCE000.00000002.00000001.01000000.0000000A.sdmp | String found in binary or memory: http://www.phreedom.org/md5) |
Source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361582478.000000006BCCE000.00000002.00000001.01000000.0000000A.sdmp | String found in binary or memory: http://www.phreedom.org/md5)08:27 |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShare Key.exe, 00000000.00000002.358893585.0000000000420000.00000004.00000001.01000000.00000003.sdmp, IdeaShare Key.exe, 00000000.00000003.350799274.0000000002970000.00000004.00000020.00020000.00000000.sdmp, qwindows.dll.0.dr, IdeaShareKeyForm.exe.0.dr | String found in binary or memory: https://www.globalsign.com/repository/0 |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_004044E9 GetDlgItem,GetDlgItem,IsDlgButtonChecked,GetDlgItem,GetAsyncKeyState,GetDlgItem,ShowWindow,SetWindowTextW,SHBrowseForFolderW,CoTaskMemFree,lstrcmpiW,lstrcatW,SetDlgItemTextW,GetDiskFreeSpaceW,MulDiv,SetDlgItemTextW, | 0_2_004044E9 |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_004050FE GetDlgItem,GetDlgItem,GetDlgItem,GetDlgItem,GetClientRect,GetSystemMetrics,SendMessageW,SendMessageW,SendMessageW,SendMessageW,SendMessageW,SendMessageW,ShowWindow,ShowWindow,GetDlgItem,SendMessageW,SendMessageW,SendMessageW,GetDlgItem,CreateThread,CloseHandle,ShowWindow,ShowWindow,ShowWindow,ShowWindow,SendMessageW,CreatePopupMenu,AppendMenuW,GetWindowRect,TrackPopupMenu,SendMessageW,OpenClipboard,EmptyClipboard,GlobalAlloc,GlobalLock,SendMessageW,GlobalUnlock,SetClipboardData,CloseClipboard, | 0_2_004050FE |
Source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameQt5Widgets.dll( vs IdeaShare Key.exe |
Source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameQt5Gui.dll( vs IdeaShare Key.exe |
Source: IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameQt5Core.dll( vs IdeaShare Key.exe |
Source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameQt5Network.dll( vs IdeaShare Key.exe |
Source: IdeaShare Key.exe, 00000000.00000003.350799274.0000000002935000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: //VALUE "OriginalFilename", "IdeaShareKeyForm.exe" vs IdeaShare Key.exe |
Source: IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameqwindows.dll( vs IdeaShare Key.exe |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_004038A8 EntryPoint,GetTickCount,#17,SetErrorMode,OleInitialize,SHGetFileInfoW,GetCommandLineW,GetModuleHandleW,CharNextW,GetTempPathW,GetWindowsDirectoryW,lstrcatW,DeleteFileW,GetTickCount,OleUninitialize,ExitProcess,lstrcatW,lstrcmpiW,CreateDirectoryW,SetCurrentDirectoryW,DeleteFileW,CopyFileW,CloseHandle,GetCurrentProcess,ExitWindowsEx, | 0_2_004038A8 |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_004044E9 GetDlgItem,GetDlgItem,IsDlgButtonChecked,GetDlgItem,GetAsyncKeyState,GetDlgItem,ShowWindow,SetWindowTextW,SHBrowseForFolderW,CoTaskMemFree,lstrcmpiW,lstrcatW,SetDlgItemTextW,GetDiskFreeSpaceW,MulDiv,SetDlgItemTextW, | 0_2_004044E9 |
Source: | Binary string: D:\code\IdeaShareWindowsApp\2021-9-16\AirPresence\desktop\Windows\IdeaShareKeyForm\IdeaShareKey\bin\Release\IdeaShareKey.pdb source: IdeaShare Key.exe, 00000000.00000003.350799274.0000000002941000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000000.358493347.00000000011DD000.00000002.00000001.01000000.00000005.sdmp, IdeaShareKeyForm.exe.0.dr |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Core.pdb source: IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.362084835.000000006C191000.00000002.00000001.01000000.00000009.sdmp |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Core.pdbQ source: IdeaShare Key.exe, 00000000.00000003.352289765.000000000370F000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.362084835.000000006C191000.00000002.00000001.01000000.00000009.sdmp |
Source: | Binary string: D:\code\IdeaShareWindowsApp\2021-9-16\AirPresence\desktop\Windows\IdeaShareKeyForm\IdeaShareKey\bin\Release\IdeaShareKey.pdb,,& source: IdeaShare Key.exe, 00000000.00000003.350799274.0000000002941000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000000.358493347.00000000011DD000.00000002.00000001.01000000.00000005.sdmp, IdeaShareKeyForm.exe.0.dr |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Network.pdb source: IdeaShare Key.exe, 00000000.00000003.355179944.0000000002922000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361582478.000000006BCCE000.00000002.00000001.01000000.0000000A.sdmp |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Gui.pdb source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.363086921.000000006C5E4000.00000002.00000001.01000000.00000008.sdmp |
Source: | Binary string: D:\IdeaShareRelease\IdeaShare\third-party\qtsingleapplication\release\QtSingleApp.pdb source: IdeaShare Key.exe, 00000000.00000003.357958578.0000000002924000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.365942375.000000006CCA6000.00000002.00000001.01000000.00000006.sdmp, QtSingleApp.dll.0.dr |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\lib\Qt5Widgets.pdb source: IdeaShare Key.exe, 00000000.00000003.356718724.0000000002925000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.365228156.000000006CAF4000.00000002.00000001.01000000.00000007.sdmp |
Source: | Binary string: C:\Users\qt\work\qt\qtbase\plugins\platforms\qwindows.pdb source: IdeaShare Key.exe, 00000000.00000002.359109194.0000000002929000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.361417174.000000006B847000.00000002.00000001.01000000.0000000B.sdmp, qwindows.dll.0.dr |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\platforms\qwindows.dll | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Gui.dll | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Network.dll | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\QtSingleApp.dll | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Core.dll | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | File created: C:\Users\user\AppData\Local\IdeaShareKey\Qt5Widgets.dll | Jump to dropped file |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_004062F9 FindFirstFileW,FindClose, | 0_2_004062F9 |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_00402E3C FindFirstFileW, | 0_2_00402E3C |
Source: C:\Users\user\Desktop\IdeaShare Key.exe | Code function: 0_2_00406CAF DeleteFileW,lstrcatW,lstrcatW,lstrcatW,lstrlenW,FindFirstFileW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, | 0_2_00406CAF |
Source: IdeaShare Key.exe | Binary or memory string: %d,%d,%d,%d,%d,%dkernel32.dllGetProductInfovmware%u,%u,%uc:\%d,%d,%d,%u~MHzHARDWARE\DESCRIPTION\System\CentralProcessor\0\%u,%u,%u,%u,%s |
Source: IdeaShare Key.exe | Binary or memory string: vmware |
Source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: .?AVQEmulationPaintEngine@@L |
Source: IdeaShareKeyForm.exe, 00000001.00000002.363356725.000000006C7F5000.00000008.00000001.01000000.00000008.sdmp | Binary or memory string: cl.?AVQEmulationPaintEngine@@L |
Source: IdeaShare Key.exe | Binary or memory string: vmCih |
Source: IdeaShare Key.exe, 00000000.00000003.354243430.0000000002921000.00000004.00000020.00020000.00000000.sdmp, IdeaShareKeyForm.exe, 00000001.00000002.363356725.000000006C7F5000.00000008.00000001.01000000.00000008.sdmp | Binary or memory string: .?AVQEmulationPaintEngine@@ |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Code function: 1_2_011CB2B7 SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, | 1_2_011CB2B7 |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Code function: 1_2_011CBAD4 IsProcessorFeaturePresent,memset,memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, | 1_2_011CBAD4 |
Source: C:\Users\user\AppData\Local\IdeaShareKey\IdeaShareKeyForm.exe | Code function: 1_2_011C1415 SetUnhandledExceptionFilter, | 1_2_011C1415 |