TimeThreadLineFunctionMessage
12:50:00.274FB8365ftw1Loading (pid: 572)
12:50:00.274534147ProcessHardwareRecorder::CommandThreadstarting recorder thread
12:50:00.276FB848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XA69C0000>6|2|1247871722
12:50:00.276FB848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XA9500000>6|2|1247871904
12:50:04.243FB8172DXManager::DetectFound in 0
12:50:04.243FB8209Initialize::GetLocation@ 0X4F80|20352
12:50:04.243FB8209Initialize::GetLocation@ 0X69700|431872
12:50:04.243FB8209Initialize::GetLocation@ 0X206F0|132848
12:50:04.243FB8209Initialize::GetLocation@ 0X1DE0|7648
12:50:04.243FB8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000
12:50:04.243FB8209Initialize::GetLocation@ 0XFD5E8860|-44136352
12:50:04.243FB8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000
12:50:04.243FB8209Initialize::GetLocation@ 0XFD5EDC30|-44114896
12:50:04.243FB8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000
12:50:04.243FB8209Initialize::GetLocation@ 0XFD5EC5F0|-44120592
12:50:04.243FB8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000
12:50:04.243FB8209Initialize::GetLocation@ 0XFD4CA7F0|-45307920
12:50:05.858FB848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XA1130000>6|2|1247871904
12:50:06.622FB8129DXManager::DetectOK
12:50:06.666FB8186DXManager::DetectDone
12:50:06.666FB8215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
12:50:06.666FB8209Initialize::GetLocation@ 0X41090|266384
12:50:06.666FB8209Initialize::GetLocation@ 0X33320|209696
12:50:06.666FB8209Initialize::GetLocation@ 0X3CBC0|248768
12:50:06.666FB8209Initialize::GetLocation@ 0XB76A0|751264
12:50:06.666FB8209Initialize::GetLocation@ 0XB71F0|750064
12:50:06.666FB8209Initialize::GetLocation@ 0XA1F0|41456
12:50:06.666FB8209Initialize::GetLocation@ 0XB7290|750224
12:50:06.666FB8209Initialize::GetLocation@ 0X1ABB0|109488
12:50:06.666FB8209Initialize::GetLocation@ 0X1D600|120320
12:50:06.666FB8209Initialize::GetLocation@ 0X25C30|154672
12:50:06.666FB8209Initialize::GetLocation@ 0X113920|1128736
12:50:06.666FB8209Initialize::GetLocation@ 0X1133E0|1127392
12:50:06.666FB8209Initialize::GetLocation@ 0X1AAA0|109216
12:50:06.666FB8209Initialize::GetLocation@ 0X1A9B0|108976
12:50:06.666FB8209Initialize::GetLocation@ 0XCB80|52096
12:50:06.666FB8209Initialize::GetLocation@ 0X48030|294960
12:50:06.667FB8209Initialize::GetLocation@ 0X9D60|40288
12:50:06.667FB8209Initialize::GetLocation@ 0XCE890|845968
12:50:06.667FB8209Initialize::GetLocation@ 0XCEF60|847712
12:50:06.667FB8209Initialize::GetLocation@ 0X9D60|40288
12:50:06.667FB8209Initialize::GetLocation@ 0XCFA50|850512
12:50:06.667FB8209Initialize::GetLocation@ 0XD00B0|852144
12:50:07.58FB848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X71D20000>6|2|1247870977
12:50:07.307FB883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
12:50:07.307FB8209Initialize::GetLocation@ 0X4040|16448
12:50:07.307FB8209Initialize::GetLocation@ 0X6410|25616
12:50:07.307FB8209Initialize::GetLocation@ 0X65C0|26048
12:50:07.586FB848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X71CD0000>6|2|1247870977
12:50:07.620FB893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
12:50:07.620FB8110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
12:50:07.621FB8209Initialize::GetLocation@ 0XA5D0|42448
12:50:07.621FB8209Initialize::GetLocation@ 0XD4D0|54480
12:50:07.621FB8209Initialize::GetLocation@ 0XD290|53904
12:50:08.20FB8225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_84_14_572 opened succesfuly
12:50:08.20FB872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
12:50:08.20FB8256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_84_14_572 close 2147483647 bytes
12:50:08.20FB8301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.168.0.12\OWExplorer.dll]
12:50:08.387FB8389ftw1OWExplorer injected
12:50:08.3882FE070Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
12:50:08.69391051`anonymous-namespace'::CreateProviderInitialize provider: NET
12:50:08.693910117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
12:50:08.69391054`anonymous-namespace'::CreateProviderFail to initlized provider: NET
12:50:08.69391051`anonymous-namespace'::CreateProviderInitialize provider: GPU
12:50:08.771758646ProcessInjector::InjectProcessprocess |wallpaperservice32_c.exe| missing h
12:50:08.771758646ProcessInjector::InjectProcessprocess |GamingServicesNet.exe| missing h
12:50:08.776758646ProcessInjector::InjectProcessprocess |GamingServices.exe| missing h
12:50:08.780758646ProcessInjector::InjectProcessprocess |Corsair.Service.CpuIdRemote64.exe| missing h
12:50:08.780758646ProcessInjector::InjectProcessprocess |Corsair.Service.DisplayAdapter.exe| missing h
12:50:08.914758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
12:50:08.914758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:50:08.914758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:50:09.150758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:50:11.420758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:50:12.425758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
12:50:13.429758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:50:13.429758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
12:50:21.493758646ProcessInjector::InjectProcessprocess |owver64.exe| missing h
12:50:24.503758646ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
12:50:59.712758646ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
12:51:11.802758646ProcessInjector::InjectProcessprocess |OverwolfSetup.exe| missing h
12:51:11.802758646ProcessInjector::InjectProcessprocess |OverwolfSetup.exe| missing h
12:51:38.4758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:51:38.4758646ProcessInjector::InjectProcessprocess |culauncher.exe| missing h
12:51:40.22758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:51:40.22758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:51:53.147758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:51:53.147758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [672] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |672|: GoogleUpdate.exe
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [1780] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |1780|: NVDisplay.Container.exe
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [3132] [t: 0 w_t_id: 0]- wallpaperservice32_c.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |3132|: wallpaperservice32_c.exe
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [3928] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |3928|: nvcontainer.exe
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [4008] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |4008|: MicrosoftEdgeUpdate.exe
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [6648] [t: 0 w_t_id: 0]- Corsair.Service.CpuIdRemote64.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |6648|: Corsair.Service.CpuIdRemote64.exe
12:52:39.441758385ProcessInjector::HandleElevatedProcessFail injection to process [6720] [t: 0 w_t_id: 0]- Corsair.Service.DisplayAdapter.exe (elevated True) 0x0
12:52:39.441758317ProcessInjector::HandlePendingProccesssFail to inject pending process |6720|: Corsair.Service.DisplayAdapter.exe
12:52:54.528758385ProcessInjector::HandleElevatedProcessFail injection to process [13236] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
12:52:54.528758317ProcessInjector::HandlePendingProccesssFail to inject pending process |13236|: GoogleCrashHandler.exe
12:53:17.667758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:53:29.710758385ProcessInjector::HandleElevatedProcessFail injection to process [6700] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
12:53:29.710758317ProcessInjector::HandlePendingProccesssFail to inject pending process |6700|: GoogleCrashHandler64.exe
12:53:47.811758385ProcessInjector::HandleElevatedProcessFail injection to process [8596] [t: 0 w_t_id: 0]- launcher.exe (elevated True) 0x0
12:53:47.811758317ProcessInjector::HandlePendingProccesssFail to inject pending process |8596|: launcher.exe
12:53:47.811758385ProcessInjector::HandleElevatedProcessFail injection to process [11764] [t: 0 w_t_id: 0]- launcher.exe (elevated True) 0x0
12:53:47.811758317ProcessInjector::HandlePendingProccesssFail to inject pending process |11764|: launcher.exe
12:54:05.884758385ProcessInjector::HandleElevatedProcessFail injection to process [13680] [t: 0 w_t_id: 0]- curseforge.exe (elevated True) 0x0
12:54:05.884758317ProcessInjector::HandlePendingProccesssFail to inject pending process |13680|: curseforge.exe
13:12:42.827758385ProcessInjector::HandleElevatedProcessFail injection to process [2148] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
13:12:42.827758317ProcessInjector::HandlePendingProccesssFail to inject pending process |2148|: NVIDIA Share.exe
13:12:43.837758385ProcessInjector::HandleElevatedProcessFail injection to process [1532] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
13:12:43.838758317ProcessInjector::HandlePendingProccesssFail to inject pending process |1532|: NVIDIA Share.exe
13:14:30.549758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
13:15:04.744758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
13:40:13.490758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:47:23.689758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
16:53:18.302758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
17:08:22.202758646ProcessInjector::InjectProcessprocess |vgc.exe| missing h
17:47:22.337758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
18:40:12.210758646ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
18:40:13.214758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
18:40:42.455758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
19:04:25.845758646ProcessInjector::InjectProcessprocess |vgc.exe| missing h
20:53:16.937758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
21:47:22.545758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
22:14:30.604758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:14:30.642758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:15:12.974758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:15:17.8758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdateSetup_X86_1.3.143.57.exe| missing h
23:15:21.50758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:15:22.60758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:20:21.222758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:20:51.455758646ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:40:13.81758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
23:40:22.185758646ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
00:45:22.512758646ProcessInjector::InjectProcessprocess |vgc.exe| missing h
00:50:23.179758646ProcessInjector::InjectProcessprocess |vgc.exe| missing h
00:52:31.150758385ProcessInjector::HandleElevatedProcessFail injection to process [26228] [t: 0 w_t_id: 0]- VALORANT.exe (elevated True) 0x0
00:52:31.150758317ProcessInjector::HandlePendingProccesssFail to inject pending process |26228|: VALORANT.exe
00:52:53.353758385ProcessInjector::HandleElevatedProcessFail injection to process [28720] [t: 0 w_t_id: 0]- vgc.exe (elevated True) 0x0
00:52:53.353758317ProcessInjector::HandlePendingProccesssFail to inject pending process |28720|: vgc.exe
00:53:17.550758646ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
01:34:24.8332FE075Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
01:34:25.277758646ProcessInjector::InjectProcessprocess |Corsair.Service.DisplayAdapter.exe| missing h