%APPDATA%\Wireshark
new catalogue created
%APPDATA%\Wireshark\profiles
new catalogue created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\Wireshark
new registry key created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\Wireshark\WinSparkle Settings
new registry key created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\Wireshark\WinSparkle Settings\\CheckForUpdates
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\Wireshark\WinSparkle Settings\\UpdateInterval
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\Wireshark\WinSparkle Settings\\LastCheckTime
new registry key parameter created
%APPDATA%\Wireshark\recent
new file created
%APPDATA%\Wireshark\recent_common
new file created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject
new registry key created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject\OrganizationDefaults
new registry key created
%APPDATA%\Wireshark\cfilters
new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\33\52C64B7E\\@C:\Windows\system32\windows.storage.dll,-50691
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Mode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\LogicalViewMode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\FFlags
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\IconSize
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Sort
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\ColInfo
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupView
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:FMTID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\AMD\HKIDs\\3264*wireshark.exe
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:PID
new registry key parameter created
%APPDATA%\Wireshark\preferences
new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByDirection
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\AMD\HKIDs\\26D8*wireshark.exe
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject\OrganizationDefaults\FileDialog
new registry key created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\Wireshark\WinSparkle Settings\\UpdateTempDir
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject\OrganizationDefaults\FileDialog\\history
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject\OrganizationDefaults\FileDialog\\lastVisited
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject\OrganizationDefaults\FileDialog\\viewMode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\QtProject\OrganizationDefaults\FileDialog\\qtVersion
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\33\52C64B7E\\@C:\Windows\system32\rdpendp.dll,-1001
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\33\52C64B7E\\@C:\Windows\system32\zipfldr.dll,-10195
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\\7
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\\0
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\\MRUListEx
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\\0
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\0
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\\MRUListEx
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\0\\0
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\0\0
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\0\\MRUListEx
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\0\0\\NodeSlot
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\7\0\0\0\\MRUListEx
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\Shell
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\Shell\\SniffedFolderType
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Mode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\LogicalViewMode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\FFlags
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\SOFTWARE\AMD\HKIDs\\2624*wireshark.exe
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\IconSize
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Sort
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\ColInfo
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupView
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:FMTID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\System32\ci.dll,-100
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:PID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\System32\ci.dll,-101
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\99\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByDirection
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\system32\dnsapi.dll,-103
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\33\52C64B7E\\@windows.storage.dll,-21825
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\System32\fveui.dll,-843
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\System32\fveui.dll,-844
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\System32\wuaueng.dll,-400
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Mode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\LogicalViewMode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\51\E27DDEF7\\@%SystemRoot%\system32\NgcRecovery.dll,-100
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\FFlags
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\IconSize
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Sort
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\ColInfo
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupView
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:FMTID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:PID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByDirection
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Mode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\LogicalViewMode
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\FFlags
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\IconSize
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\Sort
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\ColInfo
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupView
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:FMTID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByKey:PID
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\36\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}\\GroupByDirection
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\16\ComDlgLegacy
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\Software\Microsoft\Windows\Shell\Bags\16\ComDlgLegacy\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
new registry key created