Time | Thread | Line | Function | Message |
12:24:22.711 | 3168 | 365 | ftw1 | Loading (pid: 11772) |
12:24:22.716 | 3568 | 147 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
12:24:22.732 | 3168 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XE61C0000>6|2|1247871722 |
12:24:22.732 | 3168 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XE8CE0000>6|2|1247871904 |
12:24:25.768 | 3168 | 172 | DXManager::Detect | Found in 0 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0X4F80|20352 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0X69700|431872 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0X206F0|132848 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0X1DE0|7648 |
12:24:25.769 | 3168 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XE61C0000 <> 0XE8CE0000 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0XFD608860|-44005280 |
12:24:25.769 | 3168 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XE61C0000 <> 0XE8CE0000 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0XFD60DC30|-43983824 |
12:24:25.769 | 3168 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XE61C0000 <> 0XE8CE0000 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0XFD60C5F0|-43989520 |
12:24:25.769 | 3168 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XE61C0000 <> 0XE8CE0000 |
12:24:25.769 | 3168 | 209 | Initialize::GetLocation | @ 0XFD4EA7F0|-45176848 |
12:24:25.994 | 3168 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XDFAA0000>6|2|1247871904 |
12:24:27.154 | 3168 | 129 | DXManager::Detect | OK |
12:24:27.196 | 3168 | 186 | DXManager::Detect | Done |
12:24:27.196 | 3168 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
12:24:27.197 | 3168 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
12:24:27.409 | 3168 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XD4900000>6|2|1247870977 |
12:24:27.543 | 3168 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
12:24:27.544 | 3168 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
12:24:27.544 | 3168 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
12:24:27.544 | 3168 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
12:24:27.581 | 3168 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XC2A80000>6|2|1247870977 |
12:24:27.593 | 3168 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
12:24:27.594 | 3168 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
12:24:27.594 | 3168 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
12:24:27.594 | 3168 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
12:24:27.594 | 3168 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
12:24:28.197 | 3168 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_85_4_11772 opened succesfuly |
12:24:28.197 | 3168 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
12:24:28.198 | 3168 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_85_4_11772 close 2147483647 bytes |
12:24:28.198 | 3168 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.169.0.22\OWExplorer.dll] |
12:24:28.612 | 3168 | 389 | ftw1 | OWExplorer injected |
12:24:28.613 | 32B0 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
12:24:28.913 | 3264 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
12:24:28.913 | 3264 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
12:24:28.913 | 3264 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
12:24:28.913 | 3264 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
12:24:28.990 | 32B4 | 669 | ProcessInjector::InjectProcess | process |wallpaperservice32_c.exe| missing h |
12:24:28.990 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GamingServices.exe| missing h |
12:24:28.994 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GamingServicesNet.exe| missing h |
12:24:28.999 | 32B4 | 669 | ProcessInjector::InjectProcess | process |Corsair.Service.CpuIdRemote64.exe| missing h |
12:24:28.999 | 32B4 | 669 | ProcessInjector::InjectProcess | process |Corsair.Service.DisplayAdapter.exe| missing h |
12:24:29.127 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:24:29.127 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:24:29.277 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:24:29.479 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:24:29.479 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
12:24:29.479 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:24:52.818 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
12:26:08.308 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:26:14.351 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:26:21.401 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1836] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1836|: NVDisplay.Container.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4432] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4432|: nvcontainer.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4496] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4496|: NVIDIA Share.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4628] [t: 0 w_t_id: 0]- wallpaperservice32_c.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4628|: wallpaperservice32_c.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6636] [t: 0 w_t_id: 0]- Corsair.Service.CpuIdRemote64.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6636|: Corsair.Service.CpuIdRemote64.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6800] [t: 0 w_t_id: 0]- Corsair.Service.DisplayAdapter.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6800|: Corsair.Service.DisplayAdapter.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7556] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7556|: MicrosoftEdgeUpdate.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11444] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11444|: NVIDIA Share.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12464] [t: 0 w_t_id: 0]- launcher.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12464|: launcher.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13728] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13728|: GoogleCrashHandler.exe |
12:26:59.688 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14120] [t: 0 w_t_id: 0]- launcher.exe (elevated True) 0x0 |
12:26:59.688 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14120|: launcher.exe |
12:27:14.801 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:27:22.856 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14108] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0 |
12:27:22.856 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14108|: GoogleCrashHandler64.exe |
12:28:51.559 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5568] [t: 0 w_t_id: 0]- curseforge.exe (elevated True) 0x0 |
12:28:51.559 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5568|: curseforge.exe |
12:40:13.432 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:40:45.674 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:49:25.525 | 32B4 | 669 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
12:50:37.133 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17388] [t: 0 w_t_id: 0]- VALORANT.exe (elevated True) 0x0 |
12:50:37.133 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17388|: VALORANT.exe |
12:51:55.775 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4620] [t: 0 w_t_id: 0]- vgc.exe (elevated True) 0x0 |
12:51:55.775 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4620|: vgc.exe |
13:01:12.82 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6276] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
13:01:12.82 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6276|: owobs-ffmpeg-mux.exe |
13:17:39.836 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17672] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
13:17:39.836 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17672|: owobs-ffmpeg-mux.exe |
13:47:25.93 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
14:13:47.508 | 32B4 | 669 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
14:20:22.510 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
15:03:32.620 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3344] [t: 0 w_t_id: 0]- Lunar Client.exe (elevated True) 0x0 |
15:03:32.620 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3344|: Lunar Client.exe |
15:03:32.620 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16356] [t: 0 w_t_id: 0]- Lunar Client.exe (elevated True) 0x0 |
15:03:32.620 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16356|: Lunar Client.exe |
15:20:22.774 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
16:27:16.231 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
17:40:12.529 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
17:40:24.579 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
17:40:25.583 | 32B4 | 669 | ProcessInjector::InjectProcess | process |90.0.4430.93_90.0.4430.85_chrome_updater.exe| missing h |
17:40:25.583 | 32B4 | 669 | ProcessInjector::InjectProcess | process |setup.exe| missing h |
17:40:25.583 | 32B4 | 669 | ProcessInjector::InjectProcess | process |setup.exe| missing h |
17:40:26.589 | 32B4 | 669 | ProcessInjector::InjectProcess | process |setup.exe| missing h |
17:40:26.589 | 32B4 | 669 | ProcessInjector::InjectProcess | process |setup.exe| missing h |
17:47:22.468 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
19:01:55.783 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8244] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
19:01:55.783 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8244|: owobs-ffmpeg-mux.exe |
19:20:22.594 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
20:20:22.662 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
20:22:30.636 | 32B4 | 669 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
20:22:38.694 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6312] [t: 0 w_t_id: 0]- VALORANT.exe (elevated True) 0x0 |
20:22:38.694 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6312|: VALORANT.exe |
20:27:15.687 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
21:20:22.639 | 32B4 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
21:21:00.914 | 32B4 | 669 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
21:23:06.863 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19888] [t: 0 w_t_id: 0]- VALORANT.exe (elevated True) 0x0 |
21:23:06.863 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19888|: VALORANT.exe |
21:23:31.78 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17596] [t: 0 w_t_id: 0]- vgc.exe (elevated True) 0x0 |
21:23:31.78 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17596|: vgc.exe |
21:27:49.938 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [24572] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
21:27:49.938 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |24572|: owobs-ffmpeg-mux.exe |
21:47:22.790 | 32B4 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
22:09:01.16 | 32B4 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [20816] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
22:09:01.16 | 32B4 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |20816|: owobs-ffmpeg-mux.exe |
22:40:13.248 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
22:40:28.406 | 32B4 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |