Time | Thread | Line | Function | Message |
12:50:00.274 | FB8 | 365 | ftw1 | Loading (pid: 572) |
12:50:00.274 | 534 | 147 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
12:50:00.276 | FB8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XA69C0000>6|2|1247871722 |
12:50:00.276 | FB8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XA9500000>6|2|1247871904 |
12:50:04.243 | FB8 | 172 | DXManager::Detect | Found in 0 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0X4F80|20352 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0X69700|431872 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0X206F0|132848 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0X1DE0|7648 |
12:50:04.243 | FB8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0XFD5E8860|-44136352 |
12:50:04.243 | FB8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0XFD5EDC30|-44114896 |
12:50:04.243 | FB8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0XFD5EC5F0|-44120592 |
12:50:04.243 | FB8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA69C0000 <> 0XA9500000 |
12:50:04.243 | FB8 | 209 | Initialize::GetLocation | @ 0XFD4CA7F0|-45307920 |
12:50:05.858 | FB8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XA1130000>6|2|1247871904 |
12:50:06.622 | FB8 | 129 | DXManager::Detect | OK |
12:50:06.666 | FB8 | 186 | DXManager::Detect | Done |
12:50:06.666 | FB8 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
12:50:06.666 | FB8 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
12:50:06.667 | FB8 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
12:50:06.667 | FB8 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
12:50:06.667 | FB8 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
12:50:06.667 | FB8 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
12:50:06.667 | FB8 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
12:50:06.667 | FB8 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
12:50:07.58 | FB8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X71D20000>6|2|1247870977 |
12:50:07.307 | FB8 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
12:50:07.307 | FB8 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
12:50:07.307 | FB8 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
12:50:07.307 | FB8 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
12:50:07.586 | FB8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X71CD0000>6|2|1247870977 |
12:50:07.620 | FB8 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
12:50:07.620 | FB8 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
12:50:07.621 | FB8 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
12:50:07.621 | FB8 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
12:50:07.621 | FB8 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
12:50:08.20 | FB8 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_84_14_572 opened succesfuly |
12:50:08.20 | FB8 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
12:50:08.20 | FB8 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_84_14_572 close 2147483647 bytes |
12:50:08.20 | FB8 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.168.0.12\OWExplorer.dll] |
12:50:08.387 | FB8 | 389 | ftw1 | OWExplorer injected |
12:50:08.388 | 2FE0 | 70 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
12:50:08.693 | 910 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
12:50:08.693 | 910 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
12:50:08.693 | 910 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
12:50:08.693 | 910 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
12:50:08.771 | 758 | 646 | ProcessInjector::InjectProcess | process |wallpaperservice32_c.exe| missing h |
12:50:08.771 | 758 | 646 | ProcessInjector::InjectProcess | process |GamingServicesNet.exe| missing h |
12:50:08.776 | 758 | 646 | ProcessInjector::InjectProcess | process |GamingServices.exe| missing h |
12:50:08.780 | 758 | 646 | ProcessInjector::InjectProcess | process |Corsair.Service.CpuIdRemote64.exe| missing h |
12:50:08.780 | 758 | 646 | ProcessInjector::InjectProcess | process |Corsair.Service.DisplayAdapter.exe| missing h |
12:50:08.914 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:50:08.914 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:50:08.914 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:50:09.150 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:50:11.420 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:50:12.425 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:50:13.429 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:50:13.429 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:50:21.493 | 758 | 646 | ProcessInjector::InjectProcess | process |owver64.exe| missing h |
12:50:24.503 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
12:50:59.712 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
12:51:11.802 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfSetup.exe| missing h |
12:51:11.802 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfSetup.exe| missing h |
12:51:38.4 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:51:38.4 | 758 | 646 | ProcessInjector::InjectProcess | process |culauncher.exe| missing h |
12:51:40.22 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:51:40.22 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:51:53.147 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:51:53.147 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [672] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |672|: GoogleUpdate.exe |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1780] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1780|: NVDisplay.Container.exe |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3132] [t: 0 w_t_id: 0]- wallpaperservice32_c.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3132|: wallpaperservice32_c.exe |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3928] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3928|: nvcontainer.exe |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4008] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4008|: MicrosoftEdgeUpdate.exe |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6648] [t: 0 w_t_id: 0]- Corsair.Service.CpuIdRemote64.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6648|: Corsair.Service.CpuIdRemote64.exe |
12:52:39.441 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6720] [t: 0 w_t_id: 0]- Corsair.Service.DisplayAdapter.exe (elevated True) 0x0 |
12:52:39.441 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6720|: Corsair.Service.DisplayAdapter.exe |
12:52:54.528 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13236] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0 |
12:52:54.528 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13236|: GoogleCrashHandler.exe |
12:53:17.667 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
12:53:29.710 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6700] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0 |
12:53:29.710 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6700|: GoogleCrashHandler64.exe |
12:53:47.811 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8596] [t: 0 w_t_id: 0]- launcher.exe (elevated True) 0x0 |
12:53:47.811 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8596|: launcher.exe |
12:53:47.811 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11764] [t: 0 w_t_id: 0]- launcher.exe (elevated True) 0x0 |
12:53:47.811 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11764|: launcher.exe |
12:54:05.884 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13680] [t: 0 w_t_id: 0]- curseforge.exe (elevated True) 0x0 |
12:54:05.884 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13680|: curseforge.exe |
13:12:42.827 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2148] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0 |
13:12:42.827 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2148|: NVIDIA Share.exe |
13:12:43.837 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1532] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0 |
13:12:43.838 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1532|: NVIDIA Share.exe |
13:14:30.549 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
13:15:04.744 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
13:40:13.490 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
13:47:23.689 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
16:53:18.302 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
17:08:22.202 | 758 | 646 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
17:47:22.337 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
18:40:12.210 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
18:40:13.214 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
18:40:42.455 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
19:04:25.845 | 758 | 646 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
20:53:16.937 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
21:47:22.545 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
22:14:30.604 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:14:30.642 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:15:12.974 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:15:17.8 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdateSetup_X86_1.3.143.57.exe| missing h |
23:15:21.50 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:15:22.60 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:20:21.222 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:20:51.455 | 758 | 646 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
23:40:13.81 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
23:40:22.185 | 758 | 646 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
00:45:22.512 | 758 | 646 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
00:50:23.179 | 758 | 646 | ProcessInjector::InjectProcess | process |vgc.exe| missing h |
00:52:31.150 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [26228] [t: 0 w_t_id: 0]- VALORANT.exe (elevated True) 0x0 |
00:52:31.150 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |26228|: VALORANT.exe |
00:52:53.353 | 758 | 385 | ProcessInjector::HandleElevatedProcess | Fail injection to process [28720] [t: 0 w_t_id: 0]- vgc.exe (elevated True) 0x0 |
00:52:53.353 | 758 | 317 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |28720|: vgc.exe |
00:53:17.550 | 758 | 646 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
01:34:24.833 | 2FE0 | 75 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
01:34:25.277 | 758 | 646 | ProcessInjector::InjectProcess | process |Corsair.Service.DisplayAdapter.exe| missing h |