Opens the Kernel Security Device Driver (KsecDD) of Windows Pattern match: "/DigiCertSHA2AssuredIDCodeSigningCA.crt0" Pattern match: "/DigiCertAssuredIDRootCA.crl0O" Pattern match: "/DigiCertAssuredIDRootCA.crl0" Pattern match: "/DigiCertAssuredIDRootCA.crt0" Pattern match: "Pattern match: "Pattern match: "" "Un_A.exe" touched file "%LOCALAPPDATA%\Microsoft\Windows\Caches" "Un_A.exe" touched file "C:\Windows\System32\en-US\" "Un_A.exe" touched file "C:\Windows\System32\imageres.dll" "Un_A.exe" touched file "C:\Windows\Fonts\StaticCache.dat" "Wireshark_uninstaller.exe" touched file "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Caches\.1.ver0x000000000000001b.db" "Wireshark_uninstaller.exe" touched file "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Caches\cversions.1.db" "Wireshark_uninstaller.exe" touched file "%LOCALAPPDATA%\Microsoft\Windows\Caches" "Wireshark_uninstaller.exe" touched file "C:\Windows\Globalization\Sorting\s" "Wireshark_uninstaller.exe" touched file "C:\Windows\System32\oleaccrc.dll" "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_R.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_Q.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_P.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_O.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_N.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_M.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_L.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_K.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_J.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_I.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_H.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_G.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_F.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_E.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_D.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_C.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_B.exe" with delete access "Wireshark_uninstaller.exe" opened "C:\Users\%USERNAME%\AppData\Local\Temp\~nsuA.tmp\Un_A.exe" with delete access "Wireshark_uninstaller.exe" opened "%TEMP%\nss5F0E.tmp" with delete access