TimeThreadLineFunctionMessage
14:33:43.8674E48365ftw1Loading (pid: 10572)
14:33:43.8694E4848Update::DetectEnv (C:\Windows\SYSTEM32\d3d11.dll) <0X947A0000>6|2|1203373348
14:33:43.8694E4848Update::DetectEnv (C:\Windows\SYSTEM32\dxgi.dll) <0X96240000>6|2|1203373348
14:33:43.8746448147ProcessHardwareRecorder::CommandThreadstarting recorder thread
14:33:44.384E48172DXManager::DetectFound in 0
14:33:44.484E48209Initialize::GetLocation@ 0X4660|18016
14:33:44.494E48209Initialize::GetLocation@ 0X662B0|418480
14:33:44.494E48209Initialize::GetLocation@ 0X19DB0|105904
14:33:44.494E48209Initialize::GetLocation@ 0X1350|4944
14:33:44.494E48111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X947A0000 <> 0X96240000
14:33:44.494E48209Initialize::GetLocation@ 0XFE683020|-26726368
14:33:44.494E48111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X947A0000 <> 0X96240000
14:33:44.494E48209Initialize::GetLocation@ 0XFE688060|-26705824
14:33:44.494E48111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X947A0000 <> 0X96240000
14:33:44.494E48209Initialize::GetLocation@ 0XFE67E620|-26745312
14:33:44.494E48111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X947A0000 <> 0X96240000
14:33:44.494E48209Initialize::GetLocation@ 0XFE56AA80|-27874688
14:33:44.1894E4848Update::DetectEnv (C:\Windows\SYSTEM32\d3d9.dll) <0X61B20000>6|2|1203373142
14:33:44.4564E48129DXManager::DetectOK
14:33:44.6464E48186DXManager::DetectDone
14:33:44.6464E48215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
14:33:44.6474E48209Initialize::GetLocation@ 0X3AC00|240640
14:33:44.6474E48209Initialize::GetLocation@ 0X2C5B0|181680
14:33:44.6474E48209Initialize::GetLocation@ 0X36D00|224512
14:33:44.6474E48209Initialize::GetLocation@ 0XAE210|713232
14:33:44.6474E48209Initialize::GetLocation@ 0XADD60|712032
14:33:44.6474E48209Initialize::GetLocation@ 0X5880|22656
14:33:44.6474E48209Initialize::GetLocation@ 0XADE00|712192
14:33:44.6474E48209Initialize::GetLocation@ 0X20FF0|135152
14:33:44.6474E48209Initialize::GetLocation@ 0X1CA60|117344
14:33:44.6474E48209Initialize::GetLocation@ 0X1C8E0|116960
14:33:44.6474E48209Initialize::GetLocation@ 0X1086D0|1083088
14:33:44.6474E48209Initialize::GetLocation@ 0X108180|1081728
14:33:44.6474E48209Initialize::GetLocation@ 0X248B0|149680
14:33:44.6474E48209Initialize::GetLocation@ 0X247A0|149408
14:33:44.6474E48209Initialize::GetLocation@ 0X2C440|181312
14:33:44.6474E48209Initialize::GetLocation@ 0X3F3F0|259056
14:33:44.6474E48209Initialize::GetLocation@ 0XF3E0|62432
14:33:44.6474E48209Initialize::GetLocation@ 0XF4E0|62688
14:33:44.6474E48209Initialize::GetLocation@ 0XF5D0|62928
14:33:44.6474E48209Initialize::GetLocation@ 0XF3E0|62432
14:33:44.6474E48209Initialize::GetLocation@ 0XF280|62080
14:33:44.6474E48209Initialize::GetLocation@ 0XF430|62512
14:33:44.6664E4848Update::DetectEnv (C:\Windows\SYSTEM32\dinput.dll) <0X3F560000>6|2|1203372033
14:33:44.6784E4883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
14:33:44.6784E48209Initialize::GetLocation@ 0X3CC0|15552
14:33:44.6784E48209Initialize::GetLocation@ 0X5FD0|24528
14:33:44.6784E48209Initialize::GetLocation@ 0X6180|24960
14:33:44.6824E4848Update::DetectEnv (C:\Windows\SYSTEM32\dinput8.dll) <0X3C0D0000>6|2|1203372033
14:33:44.6924E4893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
14:33:44.6924E48110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
14:33:44.6934E48209Initialize::GetLocation@ 0X10000|65536
14:33:44.6934E48209Initialize::GetLocation@ 0X12C80|76928
14:33:44.6934E48209Initialize::GetLocation@ 0X12A60|76384
14:33:44.7454E48225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_84_12_10572 opened succesfuly
14:33:44.7454E4872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
14:33:44.7454E48256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_84_12_10572 close 2147483647 bytes
14:33:44.7454E48301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.165.0.28\OWExplorer.dll]
14:33:44.8114E48389ftw1OWExplorer injected
14:33:44.874217C70Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
14:33:46.2784AAC51`anonymous-namespace'::CreateProviderInitialize provider: NET
14:33:46.2784AAC117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
14:33:46.2784AAC54`anonymous-namespace'::CreateProviderFail to initlized provider: NET
14:33:46.2784AAC51`anonymous-namespace'::CreateProviderInitialize provider: GPU
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |vpnagent.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |gameinputsvc.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |com.docker.service| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |nassvc.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |httpd.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |mysqld.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |httpd.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |gameinputsvc.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |tv_w32.exe| missing h
14:33:46.3453C20726ProcessInjector::InjectProcessprocess |tv_x64.exe| missing h
14:33:46.6093C20726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:35:07.5503C20726ProcessInjector::InjectProcessprocess |VSIXAutoUpdate.exe| missing h
14:35:07.5503C20726ProcessInjector::InjectProcessprocess |CCleaner64.exe| missing h
14:35:10.5473C20726ProcessInjector::InjectProcessprocess |TeamViewer_Desktop.exe| missing h
14:35:27.5433C20726ProcessInjector::InjectProcessprocess |TeamViewer_Desktop.exe| missing h
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [3172] [t: 0 w_t_id: 0]- vpnagent.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |3172|: vpnagent.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [4052] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |4052|: gameinputsvc.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [4060] [t: 0 w_t_id: 0]- com.docker.service (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |4060|: com.docker.service
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [4164] [t: 0 w_t_id: 0]- nassvc.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |4164|: nassvc.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [4196] [t: 0 w_t_id: 0]- httpd.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |4196|: httpd.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [4376] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |4376|: MsMpEng.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [4856] [t: 0 w_t_id: 0]- mysqld.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |4856|: mysqld.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [5352] [t: 0 w_t_id: 0]- httpd.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |5352|: httpd.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [10268] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |10268|: GoogleCrashHandler.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [10284] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |10284|: GoogleCrashHandler64.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [10696] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |10696|: tv_w32.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [12180] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |12180|: MicrosoftEdgeUpdate.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [13812] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |13812|: Teams.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [16248] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |16248|: tv_x64.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [16736] [t: 0 w_t_id: 0]- docker-mutagen.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |16736|: docker-mutagen.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [20188] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |20188|: Teams.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [20760] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |20760|: Teams.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [22932] [t: 0 w_t_id: 0]- DropboxUpdate.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |22932|: DropboxUpdate.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [28612] [t: 0 w_t_id: 0]- com.docker.backend.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |28612|: com.docker.backend.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [30056] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |30056|: Teams.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [30952] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |30952|: gameinputsvc.exe
14:36:17.1293C20481ProcessInjector::HandleElevatedProcessFail injection to process [31052] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:36:17.1293C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |31052|: Teams.exe
14:36:37.1493C20481ProcessInjector::HandleElevatedProcessFail injection to process [1048] [t: 0 w_t_id: 0]- vpnkit-bridge.exe (elevated True) 0x1f
14:36:37.1493C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |1048|: vpnkit-bridge.exe
14:36:42.1743C20481ProcessInjector::HandleElevatedProcessFail injection to process [7220] [t: 0 w_t_id: 0]- vpnkit.exe (elevated True) 0x5
14:36:42.1743C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |7220|: vpnkit.exe
14:36:44.1803C20481ProcessInjector::HandleElevatedProcessFail injection to process [27868] [t: 0 w_t_id: 0]- com.docker.proxy.exe (elevated True) 0x5
14:36:44.1803C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |27868|: com.docker.proxy.exe
14:38:06.2143C20481ProcessInjector::HandleElevatedProcessFail injection to process [21344] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:06.2143C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |21344|: Code.exe
14:38:06.2143C20481ProcessInjector::HandleElevatedProcessFail injection to process [23268] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:06.2143C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |23268|: Code.exe
14:38:08.2233C20481ProcessInjector::HandleElevatedProcessFail injection to process [20948] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:08.2233C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |20948|: Code.exe
14:38:09.2183C20481ProcessInjector::HandleElevatedProcessFail injection to process [20240] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:09.2193C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |20240|: Code.exe
14:38:09.2193C20481ProcessInjector::HandleElevatedProcessFail injection to process [22140] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:09.2193C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |22140|: Code.exe
14:38:09.2193C20481ProcessInjector::HandleElevatedProcessFail injection to process [25296] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:09.2193C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |25296|: Code.exe
14:38:12.2163C20481ProcessInjector::HandleElevatedProcessFail injection to process [17860] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:12.2163C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |17860|: Code.exe
14:38:12.2163C20481ProcessInjector::HandleElevatedProcessFail injection to process [27352] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:12.2163C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |27352|: Code.exe
14:38:13.2353C20481ProcessInjector::HandleElevatedProcessFail injection to process [564] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:13.2353C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |564|: Code.exe
14:38:19.2433C20481ProcessInjector::HandleElevatedProcessFail injection to process [11204] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:38:19.2433C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |11204|: rg.exe
14:38:19.2433C20481ProcessInjector::HandleElevatedProcessFail injection to process [20704] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:38:19.2433C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |20704|: rg.exe
14:38:19.2433C20481ProcessInjector::HandleElevatedProcessFail injection to process [22096] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:38:19.2433C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |22096|: Code.exe
14:38:19.2433C20481ProcessInjector::HandleElevatedProcessFail injection to process [25148] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:38:19.2433C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |25148|: rg.exe
14:38:19.2433C20481ProcessInjector::HandleElevatedProcessFail injection to process [29204] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:38:19.2433C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |29204|: rg.exe
14:38:36.2493C20726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:38:37.2503C20726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:42:08.3053C20726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:42:08.3053C20726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:42:45.4053C20726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:44:59.4083C20481ProcessInjector::HandleElevatedProcessFail injection to process [12380] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:44:59.4083C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |12380|: Teams.exe
14:49:51.5773C20726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
14:52:21.6243C20481ProcessInjector::HandleElevatedProcessFail injection to process [11224] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
14:52:21.6243C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |11224|: GoogleUpdate.exe
14:55:38.6583C20481ProcessInjector::HandleElevatedProcessFail injection to process [25120] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
14:55:38.6583C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |25120|: Teams.exe
14:59:38.6733C20481ProcessInjector::HandleElevatedProcessFail injection to process [18036] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
14:59:38.6733C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |18036|: Teams.exe
15:08:03.9693C20481ProcessInjector::HandleElevatedProcessFail injection to process [11520] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:08:03.9693C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |11520|: Teams.exe
15:13:20.1883C20481ProcessInjector::HandleElevatedProcessFail injection to process [13784] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:13:20.1883C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |13784|: Teams.exe
15:22:11.4213C20726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
15:25:41.4483C20481ProcessInjector::HandleElevatedProcessFail injection to process [8968] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:25:41.4483C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |8968|: Teams.exe
15:30:02.4993C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
15:34:44.5123C20481ProcessInjector::HandleElevatedProcessFail injection to process [8824] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:34:44.5133C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |8824|: Teams.exe
15:39:53.5223C20481ProcessInjector::HandleElevatedProcessFail injection to process [13232] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:39:53.5223C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |13232|: Teams.exe
15:43:54.5483C20481ProcessInjector::HandleElevatedProcessFail injection to process [17148] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
15:43:54.5483C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |17148|: Teams.exe
15:48:55.5923C20481ProcessInjector::HandleElevatedProcessFail injection to process [21116] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
15:48:55.5923C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |21116|: Teams.exe
16:03:55.6753C20481ProcessInjector::HandleElevatedProcessFail injection to process [1236] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:03:55.6753C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |1236|: Teams.exe
16:08:26.7123C20481ProcessInjector::HandleElevatedProcessFail injection to process [9952] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:08:26.7123C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |9952|: Teams.exe
16:15:07.6953C20481ProcessInjector::HandleElevatedProcessFail injection to process [8176] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:15:07.6953C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |8176|: Teams.exe
16:19:16.7163C20481ProcessInjector::HandleElevatedProcessFail injection to process [23560] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:19:16.7163C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |23560|: Teams.exe
16:23:32.7233C20726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
16:28:04.7433C20481ProcessInjector::HandleElevatedProcessFail injection to process [12572] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:28:04.7433C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |12572|: Teams.exe
16:30:01.7513C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
16:32:46.7573C20481ProcessInjector::HandleElevatedProcessFail injection to process [8] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:32:46.7573C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |8|: Teams.exe
16:38:47.7803C20481ProcessInjector::HandleElevatedProcessFail injection to process [29372] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:38:47.7803C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |29372|: Teams.exe
16:44:59.8033C20481ProcessInjector::HandleElevatedProcessFail injection to process [21408] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:44:59.8033C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |21408|: Teams.exe
16:50:14.8113C20481ProcessInjector::HandleElevatedProcessFail injection to process [11136] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:50:14.8113C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |11136|: Teams.exe
16:59:21.8353C20481ProcessInjector::HandleElevatedProcessFail injection to process [28132] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:59:21.8353C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |28132|: Teams.exe
17:04:05.8913C20481ProcessInjector::HandleElevatedProcessFail injection to process [11488] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:04:05.8913C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |11488|: Teams.exe
17:12:40.8853C20481ProcessInjector::HandleElevatedProcessFail injection to process [19892] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:12:40.8853C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |19892|: Teams.exe
17:18:47.9193C20481ProcessInjector::HandleElevatedProcessFail injection to process [8952] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:18:47.9193C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |8952|: Teams.exe
17:30:01.9543C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
17:32:07.9663C20481ProcessInjector::HandleElevatedProcessFail injection to process [24300] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
17:32:07.9663C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |24300|: Teams.exe
17:37:10.73C20481ProcessInjector::HandleElevatedProcessFail injection to process [11980] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:37:10.73C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |11980|: Teams.exe
17:41:13.33C20481ProcessInjector::HandleElevatedProcessFail injection to process [3924] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:41:13.33C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |3924|: Teams.exe
17:44:27.303C20481ProcessInjector::HandleElevatedProcessFail injection to process [9888] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:44:27.303C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |9888|: Teams.exe
18:01:15.843C20726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
18:01:15.843C20726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
18:09:56.1373C20481ProcessInjector::HandleElevatedProcessFail injection to process [24492] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:09:56.1373C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |24492|: Teams.exe
18:28:39.1313C20481ProcessInjector::HandleElevatedProcessFail injection to process [22336] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:28:39.1313C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |22336|: Teams.exe
18:30:02.1163C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
18:34:42.1123C20481ProcessInjector::HandleElevatedProcessFail injection to process [8540] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:34:42.1123C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |8540|: Teams.exe
18:38:34.1073C20726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
18:43:23.1283C20481ProcessInjector::HandleElevatedProcessFail injection to process [30628] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:43:23.1283C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |30628|: Teams.exe
18:49:24.1053C20481ProcessInjector::HandleElevatedProcessFail injection to process [25992] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:49:24.1053C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |25992|: Teams.exe
18:59:24.1233C20481ProcessInjector::HandleElevatedProcessFail injection to process [2700] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:59:24.1233C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |2700|: Teams.exe
19:07:26.1273C20481ProcessInjector::HandleElevatedProcessFail injection to process [18032] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:07:26.1273C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |18032|: Teams.exe
19:22:11.1133C20726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
19:30:02.1133C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
19:30:02.1133C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
19:34:09.1093C20481ProcessInjector::HandleElevatedProcessFail injection to process [12916] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:34:09.1093C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |12916|: Teams.exe
20:19:35.1223C20481ProcessInjector::HandleElevatedProcessFail injection to process [16896] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
20:19:35.1223C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |16896|: Teams.exe
20:27:38.1113C20481ProcessInjector::HandleElevatedProcessFail injection to process [21104] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
20:27:38.1113C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |21104|: Teams.exe
20:30:01.1103C20726ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
20:34:17.1363C20481ProcessInjector::HandleElevatedProcessFail injection to process [6264] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
20:34:17.1363C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |6264|: Teams.exe
20:49:39.8773C20481ProcessInjector::HandleElevatedProcessFail injection to process [7084] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
20:49:39.8773C20413ProcessInjector::HandlePendingProccesssFail to inject pending process |7084|: Teams.exe
20:49:51.8823C20726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
20:50:01.8883C20726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
20:51:23.102217C75Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
20:51:24.1864E4866ProcessesMonitor::Stopstopping PM...
20:51:24.1864AAC119ProcessesMonitor::ProcessEnumerateThreadexit process listener
20:51:24.1874E48619ProcessInjector::Unhookunhook running process
20:51:30.2484E4866ProcessesMonitor::Stopstopping PM...