Time | Thread | Line | Function | Message |
16:47:54.769 | 6100 | 365 | ftw1 | Loading (pid: 18548) |
16:47:54.772 | 6100 | 48 | Update::Detect | Env (C:\windows\SYSTEM32\d3d11.dll) <0XA3E50000>6|2|1247872178 |
16:47:54.772 | 6100 | 48 | Update::Detect | Env (C:\windows\SYSTEM32\dxgi.dll) <0XA6AC0000>6|2|1247871940 |
16:47:54.998 | 6100 | 173 | DXManager::Detect | Found in 0 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0X59E0|23008 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0X6AE20|437792 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0X211E0|135648 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0X2840|10304 |
16:47:54.999 | 6100 | 111 | Update::Caught | C:\windows\SYSTEM32\d3d11.dll|0XA3E50000 <> 0XA6AC0000 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0XFD4B8860|-45381536 |
16:47:54.999 | 6100 | 111 | Update::Caught | C:\windows\SYSTEM32\d3d11.dll|0XA3E50000 <> 0XA6AC0000 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0XFD4BDC30|-45360080 |
16:47:54.999 | 6100 | 111 | Update::Caught | C:\windows\SYSTEM32\d3d11.dll|0XA3E50000 <> 0XA6AC0000 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0XFD4BC5F0|-45365776 |
16:47:54.999 | 6100 | 111 | Update::Caught | C:\windows\SYSTEM32\d3d11.dll|0XA3E50000 <> 0XA6AC0000 |
16:47:54.999 | 6100 | 209 | Initialize::GetLocation | @ 0XFD39A7F0|-46553104 |
16:47:55.20 | 6100 | 48 | Update::Detect | Env (C:\windows\SYSTEM32\d3d9.dll) <0X9E2E0000>6|2|1247871904 |
16:47:55.246 | 6100 | 129 | DXManager::Detect | OK |
16:47:55.323 | 6100 | 186 | DXManager::Detect | Done |
16:47:55.323 | 6100 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
16:47:55.324 | 6100 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
16:47:55.355 | 6100 | 48 | Update::Detect | Env (C:\windows\SYSTEM32\dinput.dll) <0X40820000>6|2|1247870977 |
16:47:55.397 | 6100 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
16:47:55.398 | 6100 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
16:47:55.398 | 6100 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
16:47:55.398 | 6100 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
16:47:55.404 | 6100 | 48 | Update::Detect | Env (C:\windows\SYSTEM32\dinput8.dll) <0X404E0000>6|2|1247870977 |
16:47:55.441 | 6100 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
16:47:55.441 | 6100 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
16:47:55.441 | 6100 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
16:47:55.441 | 6100 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
16:47:55.441 | 6100 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
16:47:55.504 | 6100 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_180_3_18548 opened succesfuly |
16:47:55.504 | 6100 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
16:47:55.504 | 6100 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_180_3_18548 close 2147483647 bytes |
16:47:55.504 | 6100 | 301 | InjectOWExplorer | Explorer file name [D:\apexxxxx\New folder\Overwolf\0.180.0.6\OWExplorer.dll] |
16:47:55.784 | 6100 | 389 | ftw1 | OWExplorer injected |
16:47:55.785 | F20 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
16:47:56.100 | 49C0 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
16:47:56.100 | 49C0 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
16:47:56.100 | 49C0 | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
16:47:56.100 | 49C0 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |268|: Registry |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2220|: \Device\HarddiskVolume4\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2644|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\NVDisplay.Container.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3192|: MemCompression |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3516|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\NVDisplay.Container.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4092|: C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4856|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21084.77.0_x64__8wekyb3d8bbwe\YourPhone.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5248|: \Device\HarddiskVolume4\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5464|: \Device\HarddiskVolume4\Program Files (x86)\MSI\One Dragon Center\MSI.CentralServer.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6032|: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6192|: \Device\HarddiskVolume4\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6300|: \Device\HarddiskVolume4\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6408|: \Device\HarddiskVolume4\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6424|: \Device\HarddiskVolume4\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6908|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7512|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7600|: \Device\HarddiskVolume4\Program Files\WindowsApps\Microsoft.GamingServices_2.57.20005.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7684|: \Device\HarddiskVolume4\Program Files\WindowsApps\Microsoft.GamingServices_2.57.20005.0_x64__8wekyb3d8bbwe\gamingservices.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9604|: \Device\HarddiskVolume4\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.DisplayAdapter.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10236|: \Device\HarddiskVolume4\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.CpuIdRemote64.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13520|: \Device\HarddiskVolume4\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16596|: C:\Program Files\NZXT CAM\NZXT CAM.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16680|: C:\Program Files\NiceHash\NiceHashQuickMiner\NiceHashQuickMiner.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |17472|: C:\Program Files\NZXT CAM\NZXT CAM.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |17716|: C:\Program Files\NZXT CAM\NZXT CAM.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |18576|: C:\Program Files\NZXT CAM\NZXT CAM.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19156|: C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.116.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19228|: C:\Program Files\NZXT CAM\NZXT CAM.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19604|: C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\cam_helper.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19692|: C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\cam_helper.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19728|: C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\cam_helper.exe |
16:48:56.279 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19760|: C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\cam_helper.exe |
17:18:21.996 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2828|: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.9022.0_x64__8wekyb3d8bbwe\GameBar.exe |
17:18:21.996 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22260|: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.9022.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
17:25:14.451 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13316|: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21090.10007.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe |
18:14:23.736 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16396|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\GoogleUpdate.exe |
19:55:26.737 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 16560 [mt 14036] 0x3068c |
19:56:07.601 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |14100|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
20:29:30.702 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 2580 [mt 7592] 0x408fe |
20:30:11.42 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |25568|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
21:45:05.745 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 24532 [mt 25012] 0xe0656 |
21:45:45.874 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1640|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3188|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3804|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3876|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9064|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11452|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13744|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |15328|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16608|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |18448|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |20304|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |20308|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |23020|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |24060|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:16.592 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |25660|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:18.606 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |21480|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:18.606 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22432|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:19.613 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5308|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
21:58:19.613 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10464|: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe |
23:12:12.298 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |23160|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21084.77.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe |
23:12:15.322 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |25520|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21084.77.0_x64__8wekyb3d8bbwe\YourPhoneAppProxy\YourPhoneAppProxy.exe |
18:14:24.276 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16156|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\GoogleUpdate.exe |
18:14:46.458 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 17360 [mt 23840] 0x7081c |
18:15:26.792 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12896|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
18:24:21.939 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 2084 [mt 25280] 0x170680 |
18:25:03.512 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13536|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
18:30:44.284 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |21692|: \Device\HarddiskVolume4\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe |
03:03:28.98 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9288|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21084.77.0_x64__8wekyb3d8bbwe\YourPhone.exe |
18:14:24.527 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |14068|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\GoogleUpdate.exe |
18:14:24.527 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |24792|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\GoogleUpdate.exe |
10:32:51.345 | 3A64 | 333 | ProcessInjector::DoElevetedInjection | Failed to inject process [10384 mt:14096 h:0xe70704] 0x57 |
10:32:52.415 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 10384 [mt 3884] 0x1206dc |
10:33:32.765 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6684|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
11:02:19.390 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 13556 [mt 14816] 0x9081a |
11:03:01.196 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |20328|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
17:40:09.66 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 25892 [mt 17216] 0x50128 |
17:40:25.589 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19064|: \Device\HarddiskVolume4\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe |
17:40:49.789 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5188|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
19:57:50.335 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 19968 [mt 15740] 0x70ac8 |
19:58:31.475 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22588|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
11:19:25.220 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 21592 [mt 26040] 0x880896 |
11:20:05.377 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3800|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
12:38:46.966 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 25660 [mt 13856] 0xec0680 |
12:39:28.311 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |15184|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
13:41:09.443 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11608|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21084.77.0_x64__8wekyb3d8bbwe\YourPhone.exe |
18:14:23.643 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10844|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\GoogleUpdate.exe |
19:53:51.902 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 904 [mt 25932] 0x88087a |
19:54:32.317 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |26428|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
21:52:41.528 | 3A64 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 15472 [mt 11948] 0x240b66 |
21:53:21.629 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22540|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
17:14:24.859 | 3A64 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22584|: \Device\HarddiskVolume4\Program Files (x86)\Google\Update\GoogleUpdate.exe |
18:38:23.23 | F20 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
18:38:26.807 | 6100 | 66 | ProcessesMonitor::Stop | stopping PM... |
18:38:26.807 | 49C0 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
18:38:26.810 | 6100 | 394 | ProcessInjector::Unhook | unhook running process |
18:38:32.822 | 6100 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |