TimeThreadLineFunctionMessage
05:02:09.8365248365ftw1Loading (pid: 10796)
05:02:09.839524848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X23C10000>6|2|1203373443
05:02:09.839524848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X259C0000>6|2|1203373348
05:02:09.9135248173DXManager::DetectFound in 0
05:02:09.9135248209Initialize::GetLocation@ 0X4660|18016
05:02:09.9135248209Initialize::GetLocation@ 0X662B0|418480
05:02:09.9135248209Initialize::GetLocation@ 0X19DB0|105904
05:02:09.9135248209Initialize::GetLocation@ 0X1350|4944
05:02:09.9135248111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X23C10000 <> 0X259C0000
05:02:09.9135248209Initialize::GetLocation@ 0XFE372F20|-29937888
05:02:09.9135248111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X23C10000 <> 0X259C0000
05:02:09.9135248209Initialize::GetLocation@ 0XFE377F60|-29917344
05:02:09.9135248111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X23C10000 <> 0X259C0000
05:02:09.9135248209Initialize::GetLocation@ 0XFE36E620|-29956576
05:02:09.9135248111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X23C10000 <> 0X259C0000
05:02:09.9135248209Initialize::GetLocation@ 0XFE25AA80|-31085952
05:02:09.948524848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X10F60000>6|2|1203373382
05:02:10.355248129DXManager::DetectOK
05:02:10.915248186DXManager::DetectDone
05:02:10.915248215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
05:02:10.925248209Initialize::GetLocation@ 0X3AC00|240640
05:02:10.925248209Initialize::GetLocation@ 0X2C5B0|181680
05:02:10.925248209Initialize::GetLocation@ 0X36D00|224512
05:02:10.925248209Initialize::GetLocation@ 0XAE030|712752
05:02:10.925248209Initialize::GetLocation@ 0XADB80|711552
05:02:10.925248209Initialize::GetLocation@ 0X5880|22656
05:02:10.925248209Initialize::GetLocation@ 0XADC20|711712
05:02:10.925248209Initialize::GetLocation@ 0X20FF0|135152
05:02:10.925248209Initialize::GetLocation@ 0X1CA60|117344
05:02:10.925248209Initialize::GetLocation@ 0X1C8E0|116960
05:02:10.925248209Initialize::GetLocation@ 0X1084F0|1082608
05:02:10.925248209Initialize::GetLocation@ 0X107FA0|1081248
05:02:10.925248209Initialize::GetLocation@ 0X248B0|149680
05:02:10.925248209Initialize::GetLocation@ 0X247A0|149408
05:02:10.925248209Initialize::GetLocation@ 0X2C440|181312
05:02:10.925248209Initialize::GetLocation@ 0X3F210|258576
05:02:10.925248209Initialize::GetLocation@ 0XF3E0|62432
05:02:10.925248209Initialize::GetLocation@ 0XF4E0|62688
05:02:10.925248209Initialize::GetLocation@ 0XF5D0|62928
05:02:10.925248209Initialize::GetLocation@ 0XF3E0|62432
05:02:10.925248209Initialize::GetLocation@ 0XF280|62080
05:02:10.925248209Initialize::GetLocation@ 0XF430|62512
05:02:10.114524848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X7080000>6|2|1203372033
05:02:10.142524883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
05:02:10.1425248209Initialize::GetLocation@ 0X3CC0|15552
05:02:10.1425248209Initialize::GetLocation@ 0X5FD0|24528
05:02:10.1425248209Initialize::GetLocation@ 0X6180|24960
05:02:10.144524848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XFC970000>6|2|1203372033
05:02:10.163524893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
05:02:10.1635248110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
05:02:10.1645248209Initialize::GetLocation@ 0X10000|65536
05:02:10.1645248209Initialize::GetLocation@ 0X12C80|76928
05:02:10.1645248209Initialize::GetLocation@ 0X12A60|76384
05:02:10.2165248225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_176_7_10796 opened succesfuly
05:02:10.216524872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
05:02:10.2165248255InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_176_7_10796 close 2147483647 bytes
05:02:10.2175248301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.176.87.26\OWExplorer.dll]
05:02:10.2325248389ftw1OWExplorer injected
05:02:10.23234DC71Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
05:02:10.61752DC53`anonymous-namespace'::CreateProviderInitialize provider: NET
05:02:10.61752DC117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
05:02:10.61752DC56`anonymous-namespace'::CreateProviderFail to initlized provider: NET
05:02:10.61752DC53`anonymous-namespace'::CreateProviderInitialize provider: GPU
05:02:22.357738564ProcessInjector::InjectExplorerToProcessInjected to process 7884 [mt 14888] 0x722dc
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |120|: Registry
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |140|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |1368|: \Device\HarddiskVolume2\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |1800|: C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |2632|: MemCompression
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |3500|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |4792|: \Device\HarddiskVolume2\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |4836|: \Device\HarddiskVolume2\Program Files\LGHUB\lghub_updater.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |4924|: \Device\HarddiskVolume2\Program Files\MongoDB\Server\4.2\bin\mongod.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |5248|: \Device\HarddiskVolume2\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |5440|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |6964|: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.6282.0_x64__8wekyb3d8bbwe\GameBar.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |7264|: \Device\HarddiskVolume2\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |8524|: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21070.22007.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |9016|: \Device\HarddiskVolume2\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler64.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |9964|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21062.150.0_x64__8wekyb3d8bbwe\YourPhone.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |10032|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |10360|: C:\Program Files\LGHUB\lghub.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |10408|: C:\Program Files\LGHUB\lghub_agent.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |10520|: C:\Program Files\LGHUB\lghub.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |11532|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |11764|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |14972|: \Device\HarddiskVolume2\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |15248|: C:\Program Files\LGHUB\logi_analytics_client.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |16436|: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.6282.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |16564|: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.21061.10121.0_x64__8wekyb3d8bbwe\Video.UI.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |17412|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |20572|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |20916|: C:\Users\galit\Desktop\cmder\vendor\conemu-maximus5\ConEmu\ConEmuC64.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |21640|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:11.240738258ProcessInjector::HandlePendingProccesssprocess detection skipped |22476|: C:\Users\galit\AppData\Local\Programs\Microsoft VS Code\Code.exe
05:03:33.238738258ProcessInjector::HandlePendingProccesssprocess detection skipped |14204|: C:\Program Files\Git\usr\bin\tail.exe
05:05:16.26234DC76Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
05:05:16.559524866ProcessesMonitor::Stopstopping PM...
05:05:16.55952DC126ProcessesMonitor::ProcessEnumerateThreadexit process listener
05:05:16.5605248394ProcessInjector::Unhookunhook running process
05:05:22.564524866ProcessesMonitor::Stopstopping PM...