IOC Report
https://ortelia.com/download-ortelia-curator/

loading gif

Files

File Path
Type
Category
Malicious
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
malicious
C:\Users\user\Downloads\Unconfirmed 530961.crdownload
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
dropped
malicious
C:\Program Files\Ortelia Curator\Exh\OrteliaDemo.exh
data
dropped
C:\Program Files\Ortelia Curator\Frames\Deep White.jpg
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2021:05:31 17:39:39], baseline, precision 8, 512x512, components 3
dropped
C:\Program Files\Ortelia Curator\Frames\Deep White.json
JSON data
dropped
C:\Program Files\Ortelia Curator\Frames\Ornate 1.jpg
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2021:09:01 15:25:48], baseline, precision 8, 512x512, components 3
dropped
C:\Program Files\Ortelia Curator\Frames\Ornate 1.json
JSON data
dropped
C:\Program Files\Ortelia Curator\Frames\Ornate 2.json
JSON data
dropped
C:\Program Files\Ortelia Curator\Frames\Ornate 2.png
PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
dropped
C:\Program Files\Ortelia Curator\Frames\Rustic Wood.jpg
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2021:09:01 15:41:16], baseline, precision 8, 512x512, components 3
dropped
C:\Program Files\Ortelia Curator\Frames\Rustic Wood.json
JSON data
dropped
C:\Program Files\Ortelia Curator\Frames\Simple Maple.jpg
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2021:06:01 08:29:17], baseline, precision 8, 512x512, components 3
dropped
C:\Program Files\Ortelia Curator\Frames\Simple Maple.json
JSON data
dropped
C:\Program Files\Ortelia Curator\Frames\Simple Oak.jpg
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2021:06:01 08:09:20], baseline, precision 8, 512x512, components 3
dropped
C:\Program Files\Ortelia Curator\Frames\Simple Oak.json
JSON data
dropped
C:\Program Files\Ortelia Curator\Lights\AccentBeamShaper.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\AccentBeamSpot.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\AstralAxial18-34Zoomspot.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\AstralAxial22-44Zoomspot.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\Aureal_26_50_BeamShaper.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\Aureal_FrescoFlood.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\FrescoLEDWallWasher.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\LEDWallWasher.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\PL1LEDLuminaire.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\PL1_20_50_Beam.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\PL3_NarrowBeam.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\PL3_WideBeamLED.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\SeleconDisplayLEDProfile.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\SeleconDisplayProfile_15_35.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\SeleconDisplayProfile_25_50.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\SeleconWingCDM.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\SeleconWingLinear.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\SeleconWingTuneable.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\ellipsoidalFixedFL.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\ellipsoidalZoom.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\fresnel.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\Lights\scoop.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\EmbedRuntime\MonoPosixHelper.dll
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\EmbedRuntime\mono-2.0-bdwgc.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\2.0\machine.config
XML 1.0 document, ASCII text, with very long lines (541)
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\2.0\settings.map
XML 1.0 document, ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\2.0\web.config
XML 1.0 document, ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.0\Browsers\Compat.browser
exported SGML document, ASCII text, with CRLF, LF line terminators
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.0\DefaultWsdlHelpGenerator.aspx
HTML document, ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.0\machine.config
XML 1.0 document, ASCII text, with very long lines (541)
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.0\web.config
XML 1.0 document, ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.5\machine.config
XML 1.0 document, ASCII text, with very long lines (541)
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.5\settings.map
XML 1.0 document, ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\4.5\web.config
XML 1.0 document, ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\browscap.ini
ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\config
ASCII text
dropped
C:\Program Files\Ortelia Curator\MonoBleedingEdge\etc\mono\mconfig\config.xml
XML 1.0 document, ASCII text, with very long lines (334)
dropped
C:\Program Files\Ortelia Curator\Ortelia Curator.url
MS Windows 95 Internet shortcut text (URL=<https://ortelia.com/>), ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\AGM.EdgeDetection.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Accessibility.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Assembly-CSharp-firstpass.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Assembly-CSharp.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Autodesk.Fbx.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\BakeryRuntimeAssembly.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Byn.Awrtc.Native.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Byn.Awrtc.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\CTCommon.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\FreeImageNET.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\I18N.West.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\I18N.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\ICSharpCode.SharpZipLib.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Mono.Data.Sqlite.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Mono.Posix.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Mono.Security.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Mono.WebBrowser.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\MoodkieSecurity.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Ookii.Dialogs.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PLUSManaged.XmlSerializers.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PLUSManaged.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Photon3Unity3D.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PhotonChat.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PhotonRealtime.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PhotonUnityNetworking.Utilities.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PhotonUnityNetworking.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\PhotonWebSocket.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.ComponentModel.Composition.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.ComponentModel.DataAnnotations.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Configuration.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Core.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Data.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Design.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Diagnostics.StackTrace.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Drawing.Design.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Drawing.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.EnterpriseServices.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Globalization.Extensions.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.IO.Compression.FileSystem.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.IO.Compression.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Net.Http.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Numerics.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Runtime.Serialization.Formatters.Soap.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Runtime.Serialization.Xml.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Runtime.Serialization.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Security.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.ServiceModel.Internals.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Transactions.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Web.ApplicationServices.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Web.Services.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Web.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Windows.Forms.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Xml.Linq.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Xml.XPath.XDocument.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\System.Xml.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.Analytics.DataPrivacy.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.Formats.Fbx.Runtime.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.Postprocessing.Runtime.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.ProBuilder.KdTree.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.ProBuilder.Poly2Tri.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.ProBuilder.Stl.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.ProBuilder.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.Recorder.Base.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.Recorder.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.ScriptableBuildPipeline.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.TextMeshPro.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Unity.Timeline.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.AIModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ARModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.AccessibilityModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.Advertisements.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.AndroidJNIModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.AnimationModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.AssetBundleModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.AudioModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ClothModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ClusterInputModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ClusterRendererModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.CoreModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.CrashReportingModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.DSPGraphModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.DirectorModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.GameCenterModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.GridModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.HotReloadModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.IMGUIModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ImageConversionModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.InputLegacyModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.InputModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.JSONSerializeModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.LouserzationModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.Monetization.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ParticleSystemModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.PerformanceReportingModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.Physics2DModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.PhysicsModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ProfilerModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.Purchasing.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.ScreenCaptureModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.SharedInternalsModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.SpatialTracking.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.SpriteMaskModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.SpriteShapeModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.StreamingModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.SubstanceModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.SubsystemsModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.TLSModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.TerrainModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.TerrainPhysicsModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.TextCoreModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.TextRenderingModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.TilemapModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UI.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UIElementsModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UIModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UNETModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UmbraModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityAnalyticsModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityConnectModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityTestProtocolModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityWebRequestAssetBundleModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityWebRequestAudioModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityWebRequestModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityWebRequestTextureModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.UnityWebRequestWWWModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.VFXModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.VRModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.VehiclesModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.VideoModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.WindModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.XR.LegacyInputHelpers.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.XRModule.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\UnityEngine.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\Vectrosity.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\WebRtcCSharp.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\mscorlib.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\netstandard.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Managed\wrtc.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\FreeImage.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\ProResToolbox.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\ProResWrapper.dll
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\UnityFbxSdkNative.dll
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\assimp.dll
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\libbrotli.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\libfastlz.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\liblz4.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\liblzma.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\libzipw.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Plugins\webrtccsharpwrap.dll
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Resources\unity default resources
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\Resources\unity_builtin_extra
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\FFmpeg\ffmpeg-20160530-git-d74cc61.tar.xz
XZ compressed data, checksum CRC64
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\FFmpeg\ffmpeg.exe
PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\blank.jpg
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2014:10:01 12:10:55], baseline, precision 8, 16x16, components 3
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\freeimage-license.txt
ASCII text, with very long lines (1276)
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\pdf\elevation.css
ASCII text, with CRLF line terminators
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\pdf\source\libwkhtmltox-0.11.0_rc1.zip
Zip archive data, at least v1.0 to extract, compression method=store
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\addons\pdf\wkhtmltopdf.exe
PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\app.info
ASCII text
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\boot.config
ASCII text
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\globalgamemanagers
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\globalgamemanagers.assets
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\level0
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\level1
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\level2
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\level3
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\resources.assets
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\resources.assets.resS
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets0.assets
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets0.assets.resS
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets0.resource
WebM
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets1.assets
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets1.assets.resS
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets2.assets
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets2.assets.resS
data
dropped
C:\Program Files\Ortelia Curator\OrteliaCurator_Data\sharedassets3.assets
data
dropped
C:\Program Files\Ortelia Curator\Spaces\Default.ocs
data
dropped
C:\Program Files\Ortelia Curator\UnityCrashHandler64.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\UnityPlayer.dll
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Program Files\Ortelia Curator\uninst.exe
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
dropped
C:\Program Files\Ortelia Curator\vc_redist.x64.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ortelia Curator\Ortelia Curator.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Archive, ctime=Thu Mar 3 23:58:48 2022, mtime=Thu Apr 25 00:15:24 2024, atime=Thu Mar 3 23:58:48 2022, length=650752, window=hide
dropped
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ortelia Curator\Uninstall.lnk
MS Windows shortcut, Item id list present, Has Relative path, Has Working directory, ctime=Sun Dec 31 23:06:32 1600, mtime=Sun Dec 31 23:06:32 1600, atime=Sun Dec 31 23:06:32 1600, length=0, window=hide
dropped
C:\Users\Public\Desktop\Ortelia Curator.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Archive, ctime=Thu Mar 3 23:58:48 2022, mtime=Thu Apr 25 00:15:33 2024, atime=Thu Mar 3 23:58:48 2022, length=650752, window=hide
dropped
C:\Users\user\AppData\Local\Temp\dd_vcredist_amd64_20240425031534.log
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\nsu8A79.tmp\AccessControl.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\nsu8A79.tmp\InstallOptions.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\nsu8A79.tmp\UserInfo.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\nsu8A79.tmp\ioSpecial.ini
Generic INItialization configuration [Field 1]
modified
C:\Users\user\AppData\Local\Temp\nsu8A79.tmp\modern-wizard.bmp
PC bitmap, Windows 3.x format, 164 x 314 x 4, image size 26376, resolution 2834 x 2834 px/m, cbSize 26494, bits offset 118
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1028\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1028\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1029\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1029\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1031\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1031\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1036\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1036\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1040\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1040\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1041\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1041\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1042\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1042\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1045\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1045\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1046\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1046\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1049\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1049\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1055\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\1055\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\2052\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\2052\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\3082\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\3082\thm.wxl
XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\BootstrapperApplicationData.xml
XML 1.0 document, Unicode text, UTF-16, little-endian text, with very long lines (561), with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\license.rtf
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\logo.png
PNG image data, 64 x 64, 8-bit colormap, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\thm.wxl
XML 1.0 document, ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\thm.xml
XML 1.0 document, ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\{e46eca4f-393b-40df-9f49-076faf788d83}\.ba1\wixstdba.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 00:14:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 00:14:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 00:14:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 00:14:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 00:14:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\Documents\Ortelia\Curator\OrteliaDemo.exh (copy)
data
dropped
C:\Users\user\Downloads\16f10be9-37f6-414c-a0a4-a45f20055150.tmp
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Downloads\CuratorSetup.exe (copy)
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
dropped
Chrome Cache Entry: 391
ASCII text, with very long lines (47529)
downloaded
Chrome Cache Entry: 393
ASCII text, with very long lines (1443), with no line terminators
downloaded
Chrome Cache Entry: 394
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2017:03:25 13:32:48], baseline, precision 8, 200x202, components 3
downloaded
Chrome Cache Entry: 395
Unicode text, UTF-8 text, with very long lines (8580), with no line terminators
downloaded
Chrome Cache Entry: 396
ASCII text, with very long lines (629)
downloaded
Chrome Cache Entry: 398
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 399
ASCII text
downloaded
Chrome Cache Entry: 400
ASCII text, with very long lines (11488), with no line terminators
downloaded
Chrome Cache Entry: 401
exported SGML document, ASCII text, with very long lines (3737), with no line terminators
downloaded
Chrome Cache Entry: 402
ASCII text, with very long lines (64929)
downloaded
Chrome Cache Entry: 404
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS5.1 Windows, datetime=2017:03:25 13:36:49], baseline, precision 8, 200x202, components 3
dropped
Chrome Cache Entry: 405
data
downloaded
Chrome Cache Entry: 406
Unicode text, UTF-8 text, with CRLF line terminators
downloaded
Chrome Cache Entry: 407
ASCII text, with very long lines (9959)
downloaded
Chrome Cache Entry: 408
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 409
ASCII text, with very long lines (4143)
downloaded
Chrome Cache Entry: 410
ASCII text, with very long lines (58392), with CRLF line terminators
downloaded
Chrome Cache Entry: 411
ASCII text, with very long lines (1498), with no line terminators
downloaded
Chrome Cache Entry: 412
ASCII text, with very long lines (1647), with no line terminators
downloaded
Chrome Cache Entry: 413
ASCII text, with very long lines (4080), with no line terminators
downloaded
Chrome Cache Entry: 414
ASCII text, with very long lines (1379), with no line terminators
downloaded
Chrome Cache Entry: 415
Unicode text, UTF-8 text, with very long lines (20990)
downloaded
Chrome Cache Entry: 416
ASCII text, with very long lines (1742)
downloaded
Chrome Cache Entry: 417
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 418
ASCII text, with very long lines (41045), with no line terminators
downloaded
Chrome Cache Entry: 419
ASCII text, with very long lines (31997)
downloaded
Chrome Cache Entry: 420
ASCII text, with very long lines (10927)
downloaded
Chrome Cache Entry: 421
ASCII text, with very long lines (1686), with no line terminators
downloaded
Chrome Cache Entry: 422
ASCII text, with very long lines (9833), with no line terminators
downloaded
Chrome Cache Entry: 423
Unicode text, UTF-8 text, with very long lines (38766)
downloaded
Chrome Cache Entry: 424
HTML document, Unicode text, UTF-8 text, with very long lines (8738), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 425
ASCII text, with very long lines (7711)
downloaded
Chrome Cache Entry: 426
Web Open Font Format (Version 2), TrueType, length 48236, version 1.0
downloaded
Chrome Cache Entry: 427
ASCII text, with very long lines (1665), with no line terminators
downloaded
Chrome Cache Entry: 428
Unicode text, UTF-8 text, with very long lines (18418), with no line terminators
downloaded
Chrome Cache Entry: 429
ASCII text, with very long lines (1408), with no line terminators
downloaded
Chrome Cache Entry: 430
ASCII text
downloaded
Chrome Cache Entry: 431
ASCII text, with very long lines (32058), with no line terminators
downloaded
Chrome Cache Entry: 432
ASCII text, with very long lines (7081), with no line terminators
downloaded
Chrome Cache Entry: 434
ASCII text, with very long lines (5555), with no line terminators
downloaded
Chrome Cache Entry: 435
ASCII text, with very long lines (31997)
downloaded
Chrome Cache Entry: 436
ASCII text, with very long lines (526)
downloaded
Chrome Cache Entry: 437
ASCII text, with very long lines (62142)
downloaded
Chrome Cache Entry: 438
ASCII text, with very long lines (9322), with no line terminators
downloaded
Chrome Cache Entry: 439
ASCII text
downloaded
Chrome Cache Entry: 440
JPEG image data, JFIF standard 1.01, aspect ratio, density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=2, orientation=upper-left], baseline, precision 8, 244x79, components 3
downloaded
Chrome Cache Entry: 441
Unicode text, UTF-8 text, with very long lines (34747), with NEL line terminators
downloaded
Chrome Cache Entry: 442
TrueType Font data, 11 tables, 1st "OS/2", 14 names, Macintosh, type 1 string, modules
downloaded
Chrome Cache Entry: 443
ASCII text, with very long lines (1572)
downloaded
There are 325 hidden files, click here to show them.

Domains

Name
IP
Malicious
ortelia.com
139.99.130.163
www.google.com
142.251.15.103
analytics.google.com
173.194.219.138
s.w.org
192.0.77.48
d1f8f9xcsvx3ha.cloudfront.net
3.161.169.25
stats.g.doubleclick.net
64.233.176.154

IPs

IP
Domain
Country
Malicious
172.253.124.100
unknown
United States
1.1.1.1
unknown
Australia
139.99.130.163
ortelia.com
Canada
142.250.105.84
unknown
United States
64.233.176.95
unknown
United States
192.168.2.16
unknown
unknown
173.194.219.138
analytics.google.com
United States
142.250.105.100
unknown
United States
173.194.219.113
unknown
United States
64.233.176.97
unknown
United States
173.194.219.94
unknown
United States
239.255.255.250
unknown
Reserved
64.233.176.154
stats.g.doubleclick.net
United States
142.251.15.94
unknown
United States
3.161.169.25
d1f8f9xcsvx3ha.cloudfront.net
United States
3.161.169.36
unknown
United States
142.251.15.103
www.google.com
United States
74.125.138.94
unknown
United States
There are 8 hidden IPs, click here to show them.