Time | Thread | Line | Function | Message |
16:55:10.276 | 358 | 365 | ftw1 | Loading (pid: 10380) |
16:55:10.279 | 358 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X7EC50000>6|2|1247872178 |
16:55:10.279 | 358 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X81E20000>6|2|1247872542 |
16:55:11.113 | 358 | 173 | DXManager::Detect | Found in 0 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0X1FE0|8160 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0X69650|431696 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0X20930|133424 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0X3200|12800 |
16:55:11.114 | 358 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X7EC50000 <> 0X81E20000 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0XFCF58860|-51017632 |
16:55:11.114 | 358 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X7EC50000 <> 0X81E20000 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0XFCF5DC30|-50996176 |
16:55:11.114 | 358 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X7EC50000 <> 0X81E20000 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0XFCF5C5F0|-51001872 |
16:55:11.114 | 358 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X7EC50000 <> 0X81E20000 |
16:55:11.114 | 358 | 209 | Initialize::GetLocation | @ 0XFCE3A7F0|-52189200 |
16:55:11.932 | 358 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X7C200000>6|2|1247872542 |
16:55:12.576 | 358 | 129 | DXManager::Detect | OK |
16:55:12.759 | 358 | 186 | DXManager::Detect | Done |
16:55:12.759 | 358 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x55a0 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X42C70|273520 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X39570|234864 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X3F550|259408 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XB83A0|754592 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XB7EF0|753392 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X9EF0|40688 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XB7F90|753552 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X1AD20|109856 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X1D770|120688 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X25DA0|155040 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X114620|1132064 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X1140E0|1130720 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X1AC10|109584 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X1AB20|109344 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XC880|51328 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X4A100|303360 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X9A60|39520 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XCF590|849296 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XCFC60|851040 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0X9A60|39520 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XD0750|853840 |
16:55:12.759 | 358 | 209 | Initialize::GetLocation | @ 0XD0DB0|855472 |
16:55:13.190 | 358 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X28C50000>6|2|1247870977 |
16:55:13.797 | 358 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
16:55:13.798 | 358 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
16:55:13.798 | 358 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
16:55:13.798 | 358 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
16:55:13.801 | 358 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X28C00000>6|2|1247870977 |
16:55:14.239 | 358 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
16:55:14.245 | 358 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
16:55:14.246 | 358 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
16:55:14.246 | 358 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
16:55:14.246 | 358 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
16:55:14.360 | 358 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_19110380 opened succesfuly |
16:55:14.360 | 358 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x55a0 |
16:55:14.360 | 358 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_19110380 close 2147483647 bytes |
16:55:14.360 | 358 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.191.0.20\OWExplorer.dll] |
16:55:15.257 | 358 | 389 | ftw1 | OWExplorer injected |
16:55:15.303 | 320C | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
16:55:17.976 | 33F8 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
16:55:17.976 | 33F8 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
16:55:17.976 | 33F8 | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
16:55:17.976 | 33F8 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
16:57:06.818 | 29A8 | 590 | ProcessInjector::InjectExplorerToProcess | Injected to process 13656 [mt 13760] 0x206c2 |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |100| (w: 0x0): Registry |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |1812| (w: 0x0): C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2224| (w: 0x0): MemCompression |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2728| (w: 0x0): \Device\HarddiskVolume2\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3076| (w: 0x0): \Device\HarddiskVolume2\Program Files\Realtek\Audio\HDA\RAVBg64.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3088| (w: 0x0): \Device\HarddiskVolume2\Program Files\Realtek\Audio\HDA\RAVBg64.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3524| (w: 0x0): \Device\HarddiskVolume2\Program Files\DellTPad\HidMonitorSvc.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3716| (w: 0x0): \Device\HarddiskVolume2\Program Files\LGHUB\lghub_updater.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |4968| (w: 0x0): \Device\HarddiskVolume2\Program Files\WindowsApps\Microsoft.GamingServices_3.62.18001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |5008| (w: 0x0): \Device\HarddiskVolume2\Program Files\WindowsApps\Microsoft.GamingServices_3.62.18001.0_x64__8wekyb3d8bbwe\gamingservices.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |5216| (w: 0x0): C:\Program Files\DellTPad\Apoint.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |6672| (w: 0x0): C:\Program Files\DellTPad\ApMsgFwd.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |6852| (w: 0x0): C:\Program Files\DellTPad\hidfind.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |6940| (w: 0x0): C:\Program Files\DellTPad\ApntEx.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |7312| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\crashpad_handler.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8552| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22012.167.0_x64__8wekyb3d8bbwe\YourPhone.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9836| (w: 0x0): C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10396| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10468| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\crashpad_handler.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10532| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10684| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10808| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10816| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10844| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10852| (w: 0x0): C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe |
16:57:19.19 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12184| (w: 0x0): C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe |
16:57:49.318 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3056| (w: 0x0): C:\Program Files\LGHUB\lghub.exe |
16:57:49.318 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |6024| (w: 0x0): C:\Program Files\LGHUB\lghub.exe |
16:57:49.318 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10500| (w: 0x0): C:\Program Files\LGHUB\lghub_agent.exe |
16:58:36.798 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |13368| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
18:15:30.453 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10628| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
18:20:44.229 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |5840| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBar.exe |
18:20:44.229 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |7860| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
18:22:39.124 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9600| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:39.124 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10272| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:39.124 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |11980| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\84.0.4316.31\opera_crashreporter.exe |
18:22:39.124 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |13344| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:40.137 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9988| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:40.138 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10176| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:40.138 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12320| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:40.138 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12376| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:40.138 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12952| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:22:50.220 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2460| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:24:49.182 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3208| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:24:51.210 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10576| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:24:52.226 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12780| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:24:56.260 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8496| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:24:57.256 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |5608| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:29:06.530 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12956| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:29:13.588 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2016| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:29:18.707 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2456| (w: 0x0): C:\Users\cecer\AppData\Local\Programs\Opera\opera.exe |
18:32:27.314 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8288| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBar.exe |
18:32:27.315 | 29A8 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9416| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
19:03:26.982 | 320C | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
19:03:27.49 | 358 | 66 | ProcessesMonitor::Stop | stopping PM... |
19:03:27.49 | 33F8 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
19:03:27.50 | 358 | 402 | ProcessInjector::Unhook | unhook running process |