Time | Thread | Line | Function | Message |
13:02:03.401 | 2C40 | 361 | ftw1 | Loading (pid: 3404) |
13:02:03.401 | 1A30 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
13:02:03.403 | 2C40 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0X89FB0000>6|2|1203373203 |
13:02:03.403 | 2C40 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0X8BA70000>6|2|1203373081 |
13:02:03.482 | 2C40 | 172 | DXManager::Detect | Found in 0 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0X4660|18016 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0X661F0|418288 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0X19DB0|105904 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0X1350|4944 |
13:02:03.482 | 2C40 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X89FB0000 <> 0X8BA70000 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0XFE663020|-26857440 |
13:02:03.482 | 2C40 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X89FB0000 <> 0X8BA70000 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0XFE668060|-26836896 |
13:02:03.482 | 2C40 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X89FB0000 <> 0X8BA70000 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0XFE65E620|-26876384 |
13:02:03.482 | 2C40 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X89FB0000 <> 0X8BA70000 |
13:02:03.482 | 2C40 | 209 | Initialize::GetLocation | @ 0XFE54AA80|-28005760 |
13:02:03.498 | 2C40 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X80EE0000>6|2|1203373142 |
13:02:03.584 | 2C40 | 129 | DXManager::Detect | OK |
13:02:03.624 | 2C40 | 186 | DXManager::Detect | Done |
13:02:03.624 | 2C40 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X3AC00|240640 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X2C5B0|181680 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X36D00|224512 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XAE210|713232 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XADD60|712032 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X5880|22656 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XADE00|712192 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X20FF0|135152 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X1CA60|117344 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X1C8E0|116960 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X1086D0|1083088 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X108180|1081728 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X248B0|149680 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X247A0|149408 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X2C440|181312 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0X3F3F0|259056 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XF4E0|62688 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XF5D0|62928 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XF280|62080 |
13:02:03.624 | 2C40 | 209 | Initialize::GetLocation | @ 0XF430|62512 |
13:02:03.645 | 2C40 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0X43560000>6|2|1203372033 |
13:02:03.654 | 2C40 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
13:02:03.654 | 2C40 | 209 | Initialize::GetLocation | @ 0X3CC0|15552 |
13:02:03.654 | 2C40 | 209 | Initialize::GetLocation | @ 0X5FD0|24528 |
13:02:03.654 | 2C40 | 209 | Initialize::GetLocation | @ 0X6180|24960 |
13:02:03.657 | 2C40 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X70870000>6|2|1203372033 |
13:02:03.666 | 2C40 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
13:02:03.666 | 2C40 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
13:02:03.666 | 2C40 | 209 | Initialize::GetLocation | @ 0X10000|65536 |
13:02:03.666 | 2C40 | 209 | Initialize::GetLocation | @ 0X12C80|76928 |
13:02:03.666 | 2C40 | 209 | Initialize::GetLocation | @ 0X12A60|76384 |
13:02:03.721 | 2C40 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_82_5_3404 opened succesfuly |
13:02:03.721 | 2C40 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
13:02:03.721 | 2C40 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_82_5_3404 close 2147483647 bytes |
13:02:03.721 | 2C40 | 297 | InjectOWExplorer | Explorer file name [G:\Facecheck\Overwolf\0.159.0.31\OWExplorer.dll] |
13:02:03.725 | 2C40 | 385 | ftw1 | OWExplorer injected |
13:02:03.975 | 114 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
13:02:03.975 | 114 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
13:02:03.975 | 114 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
13:02:03.975 | 114 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |mDNSResponder.exe| missing h |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |nsWscSvc.exe| missing h |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |NortonSecurity.exe| missing h |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |lghub_updater.exe| missing h |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |WPSHWPBC.exe| missing h |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |WPSService20.exe| missing h |
13:02:04.33 | 1C40 | 629 | ProcessInjector::InjectProcess | process |RzSDKServer.exe| missing h |
13:02:04.77 | 1C40 | 629 | ProcessInjector::InjectProcess | process |swrm.exe| missing h |
13:02:04.165 | 1C40 | 629 | ProcessInjector::InjectProcess | process |VideoCardMonitorII.exe| missing h |
13:02:04.209 | 1C40 | 629 | ProcessInjector::InjectProcess | process |EyeRest.exe| missing h |
13:02:04.253 | 1C40 | 629 | ProcessInjector::InjectProcess | process |TriggerModeMonitor.exe| missing h |
13:02:04.298 | 1C40 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
13:02:04.298 | 1C40 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
13:02:04.518 | 1C40 | 629 | ProcessInjector::InjectProcess | process |logi_crashpad_handler.exe| missing h |
13:02:04.606 | 1C40 | 629 | ProcessInjector::InjectProcess | process |vrol.exe| missing h |
13:02:23.733 | 1C40 | 629 | ProcessInjector::InjectProcess | process |EasyAntiCheat.exe| missing h |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1876] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1876|: NVDisplay.Container.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4200] [t: 0 w_t_id: 0]- mDNSResponder.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4200|: mDNSResponder.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4320] [t: 0 w_t_id: 0]- nsWscSvc.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4320|: nsWscSvc.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4328] [t: 0 w_t_id: 0]- NortonSecurity.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4328|: NortonSecurity.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4336] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4336|: nvcontainer.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4404] [t: 0 w_t_id: 0]- lghub_updater.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4404|: lghub_updater.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4536] [t: 0 w_t_id: 0]- WPSHWPBC.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4536|: WPSHWPBC.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4544] [t: 0 w_t_id: 0]- WPSService20.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4544|: WPSService20.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4568] [t: 0 w_t_id: 0]- RzSDKServer.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4568|: RzSDKServer.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5348] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5348|: GoogleCrashHandler.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6508] [t: 0 w_t_id: 0]- vrol.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6508|: vrol.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7944] [t: 0 w_t_id: 0]- swrm.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7944|: swrm.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11152] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11152|: GoogleCrashHandler64.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12192] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12192|: NVIDIA Share.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12592] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12592|: NVIDIA Share.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14276] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14276|: lghub.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14628] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14628|: lghub.exe |
13:04:34.783 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15284] [t: 0 w_t_id: 0]- logi_crashpad_handler.exe (elevated True) 0x578 |
13:04:34.783 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15284|: logi_crashpad_handler.exe |
13:04:53.790 | 1C40 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7760] [t: 0 w_t_id: 0]- EasyAntiCheat.exe (elevated True) 0x578 |
13:04:53.790 | 1C40 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7760|: EasyAntiCheat.exe |
13:06:59.849 | 1C40 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
13:25:39.185 | 1C40 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
17:07:00.30 | 1C40 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
17:21:56.288 | 1C40 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
18:05:02.10 | 1C40 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
18:05:18.13 | 1C40 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
18:25:39.352 | 1C40 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
18:32:19.470 | 1C40 | 629 | ProcessInjector::InjectProcess | process |cltLMH.exe| missing h |
21:21:56.224 | 1C40 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |