Time | Thread | Line | Function | Message |
00:51:25.972 | FE4 | 361 | ftw1 | Loading (pid: 14720) |
00:51:25.972 | 100C | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
00:51:25.975 | FE4 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0XF7620000>6|2|1247870977 |
00:51:25.975 | FE4 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0XFD100000>6|2|1247870977 |
00:51:26.51 | FE4 | 172 | DXManager::Detect | Found in 0 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0X4F80|20352 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0X69160|430432 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0X20410|132112 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0X1DE0|7648 |
00:51:26.52 | FE4 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XF7620000 <> 0XFD100000 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0XFA648850|-94074800 |
00:51:26.52 | FE4 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XF7620000 <> 0XFD100000 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0XFA64DE80|-94052736 |
00:51:26.52 | FE4 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XF7620000 <> 0XFD100000 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0XFA64C5E0|-94059040 |
00:51:26.52 | FE4 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XF7620000 <> 0XFD100000 |
00:51:26.52 | FE4 | 209 | Initialize::GetLocation | @ 0XFA52A7F0|-95246352 |
00:51:26.65 | FE4 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0XF44D0000>6|2|1247870977 |
00:51:26.114 | FE4 | 129 | DXManager::Detect | OK |
00:51:26.140 | FE4 | 186 | DXManager::Detect | Done |
00:51:26.140 | FE4 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X3FC10|261136 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X33840|211008 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X3BFA0|245664 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XB70E0|749792 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XB6C30|748592 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XAF40|44864 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XB6CD0|748752 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X20C40|134208 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X16A10|92688 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X2D530|185648 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X113350|1127248 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X112E10|1125904 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X20B30|133936 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X20A40|133696 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XD8D0|55504 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0X466B0|288432 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XAAB0|43696 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XCE2D0|844496 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XCE9A0|846240 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XAAB0|43696 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XCF490|849040 |
00:51:26.141 | FE4 | 209 | Initialize::GetLocation | @ 0XCFAF0|850672 |
00:51:26.157 | FE4 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0XA6230000>6|2|1247870977 |
00:51:26.194 | FE4 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
00:51:26.194 | FE4 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
00:51:26.194 | FE4 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
00:51:26.194 | FE4 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
00:51:26.197 | FE4 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X9B0D0000>6|2|1247870977 |
00:51:26.223 | FE4 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
00:51:26.224 | FE4 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
00:51:26.224 | FE4 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
00:51:26.224 | FE4 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
00:51:26.224 | FE4 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
00:51:26.290 | FE4 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_78_14_14720 opened succesfuly |
00:51:26.290 | FE4 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
00:51:26.290 | FE4 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_78_14_14720 close 2147483647 bytes |
00:51:26.290 | FE4 | 297 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.149.2.30\OWExplorer.dll] |
00:51:26.306 | FE4 | 385 | ftw1 | OWExplorer injected |
00:51:26.935 | 40C8 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
00:51:26.935 | 40C8 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
00:51:26.935 | 40C8 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
00:51:26.935 | 40C8 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2556] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2556|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2684] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2684|: NVDisplay.Container.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3352] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3352|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4964] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4964|: nvcontainer.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6952] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6952|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8264] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8264|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8460] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8460|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8672] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8672|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8764] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8764|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9068] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9068|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9872] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9872|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10132] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10132|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10388] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10388|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11780] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11780|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12132] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12132|: MsMpEng.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13880] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13880|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13964] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13964|: firefox.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [20580] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |20580|: Code.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23476] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23476|: node.exe |
00:53:57.670 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [25056] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:57.670 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |25056|: Code.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [532] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |532|: node.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1236] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1236|: Code.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7964] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7964|: firefox.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8712] [t: 0 w_t_id: 0]- openvpn.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8712|: openvpn.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10180] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10180|: firefox.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17968] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17968|: node.exe |
00:53:58.680 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [24800] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:53:58.680 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |24800|: firefox.exe |
00:58:37.111 | 46E0 | 352 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12192] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
00:58:37.111 | 46E0 | 291 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12192|: firefox.exe |
01:20:01.550 | FE4 | 66 | ProcessesMonitor::Stop | stopping PM... |
01:20:01.550 | 40C8 | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |