Time | Thread | Line | Function | Message |
14:51:37.703 | 4230 | 361 | ftw1 | Loading (pid: 20208) |
14:51:37.703 | 4784 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
14:51:37.704 | 4230 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XF790000>6|2|1247871722 |
14:51:37.704 | 4230 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X11560000>6|2|1247871722 |
14:51:37.780 | 4230 | 172 | DXManager::Detect | Found in 0 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0X4F80|20352 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0X69700|431872 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0X206F0|132848 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0X1DE0|7648 |
14:51:37.781 | 4230 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF790000 <> 0X11560000 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0XFE358860|-30046112 |
14:51:37.781 | 4230 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF790000 <> 0X11560000 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0XFE35DC30|-30024656 |
14:51:37.781 | 4230 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF790000 <> 0X11560000 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0XFE35C5F0|-30030352 |
14:51:37.781 | 4230 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF790000 <> 0X11560000 |
14:51:37.781 | 4230 | 209 | Initialize::GetLocation | @ 0XFE23A7F0|-31217680 |
14:51:37.792 | 4230 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X3D20000>6|2|1247871638 |
14:51:37.875 | 4230 | 129 | DXManager::Detect | OK |
14:51:37.911 | 4230 | 186 | DXManager::Detect | Done |
14:51:37.911 | 4230 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X41B90|269200 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X33E20|212512 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X3D6C0|251584 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XB8E10|757264 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XB8960|756064 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XACF0|44272 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XB8A00|756224 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X1B6B0|112304 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X1E100|123136 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X26730|157488 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X1146B0|1132208 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X114170|1130864 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X1B5A0|112032 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X1B4B0|111792 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XD680|54912 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0X493C0|299968 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XA860|43104 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XD0000|851968 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XD06D0|853712 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XA860|43104 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XD11C0|856512 |
14:51:37.911 | 4230 | 209 | Initialize::GetLocation | @ 0XD1820|858144 |
14:51:37.926 | 4230 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XF6EA0000>6|2|1247870977 |
14:51:37.948 | 4230 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
14:51:37.948 | 4230 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
14:51:37.948 | 4230 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
14:51:37.948 | 4230 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
14:51:37.949 | 4230 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XE7850000>6|2|1247870977 |
14:51:37.970 | 4230 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
14:51:37.970 | 4230 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
14:51:37.970 | 4230 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
14:51:37.970 | 4230 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
14:51:37.970 | 4230 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
14:51:38.27 | 4230 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_83_1_20208 opened succesfuly |
14:51:38.27 | 4230 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
14:51:38.27 | 4230 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_83_1_20208 close 2147483647 bytes |
14:51:38.27 | 4230 | 297 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.162.0.13\OWExplorer.dll] |
14:51:38.56 | 4230 | 385 | ftw1 | OWExplorer injected |
14:51:38.402 | 38D4 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
14:51:38.402 | 38D4 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
14:51:38.402 | 38D4 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
14:51:38.402 | 38D4 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
14:51:38.477 | 4810 | 629 | ProcessInjector::InjectProcess | process |atkexComSvc.exe| missing h |
14:51:38.477 | 4810 | 629 | ProcessInjector::InjectProcess | process |AuraConnect.exe| missing h |
14:51:38.477 | 4810 | 629 | ProcessInjector::InjectProcess | process |RzSDKServer.exe| missing h |
14:51:38.477 | 4810 | 629 | ProcessInjector::InjectProcess | process |com.docker.service| missing h |
14:51:38.790 | 4810 | 629 | ProcessInjector::InjectProcess | process |tv_w32.exe| missing h |
14:51:38.790 | 4810 | 629 | ProcessInjector::InjectProcess | process |tv_x64.exe| missing h |
14:51:38.790 | 4810 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
14:51:38.790 | 4810 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2152] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2152|: NVDisplay.Container.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4384] [t: 0 w_t_id: 0]- AuraConnect.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4384|: AuraConnect.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5096] [t: 0 w_t_id: 0]- atkexComSvc.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5096|: atkexComSvc.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5340] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5340|: nvcontainer.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5480] [t: 0 w_t_id: 0]- RzSDKServer.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5480|: RzSDKServer.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5876] [t: 0 w_t_id: 0]- com.docker.service (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5876|: com.docker.service |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5924] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5924|: MsMpEng.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8640] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8640|: tv_x64.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9776] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9776|: tv_w32.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10992] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10992|: GoogleCrashHandler.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11000] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11000|: GoogleCrashHandler64.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12764] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12764|: NVIDIA Share.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13820] [t: 0 w_t_id: 0]- NZXT CAM.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13820|: NZXT CAM.exe |
14:54:09.363 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13872] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0 |
14:54:09.363 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13872|: NVIDIA Share.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3584] [t: 0 w_t_id: 0]- fsnotifier64.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3584|: fsnotifier64.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16112] [t: 0 w_t_id: 0]- cam_helper.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16112|: cam_helper.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17200] [t: 0 w_t_id: 0]- cam_helper.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17200|: cam_helper.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18180] [t: 0 w_t_id: 0]- com.docker.backend.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18180|: com.docker.backend.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18480] [t: 0 w_t_id: 0]- com.docker.proxy.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18480|: com.docker.proxy.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18748] [t: 0 w_t_id: 0]- vpnkit-bridge.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18748|: vpnkit-bridge.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19808] [t: 0 w_t_id: 0]- CCXProcess.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19808|: CCXProcess.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19864] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19864|: node.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23820] [t: 0 w_t_id: 0]- vpnkit.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23820|: vpnkit.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23888] [t: 0 w_t_id: 0]- docker.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23888|: docker.exe |
14:54:10.366 | 4810 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23920] [t: 0 w_t_id: 0]- java.exe (elevated True) 0x0 |
14:54:10.366 | 4810 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23920|: java.exe |