Time | Thread | Line | Function | Message |
11:03:05.979 | 7AA4 | 365 | ftw1 | Loading (pid: 27948) |
11:03:05.981 | 7AA4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X481D0000>6|2|1247872178 |
11:03:05.981 | 7AA4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X4B080000>6|2|1247872242 |
11:03:06.372 | 7AA4 | 173 | DXManager::Detect | Found in 0 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0X2A40|10816 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0X6AA70|436848 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0X21390|136080 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0X3C60|15456 |
11:03:06.375 | 7AA4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X481D0000 <> 0X4B080000 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0XFD278860|-47740832 |
11:03:06.375 | 7AA4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X481D0000 <> 0X4B080000 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0XFD27DC30|-47719376 |
11:03:06.375 | 7AA4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X481D0000 <> 0X4B080000 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0XFD27C5F0|-47725072 |
11:03:06.375 | 7AA4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X481D0000 <> 0X4B080000 |
11:03:06.375 | 7AA4 | 209 | Initialize::GetLocation | @ 0XFD15A7F0|-48912400 |
11:03:06.394 | 7AA4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X45190000>6|2|1247871904 |
11:03:06.714 | 7AA4 | 129 | DXManager::Detect | OK |
11:03:06.834 | 7AA4 | 186 | DXManager::Detect | Done |
11:03:06.834 | 7AA4 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
11:03:06.834 | 7AA4 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
11:03:06.899 | 7AA4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X2D8E0000>6|2|1247870977 |
11:03:07.266 | 7AA4 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
11:03:07.267 | 7AA4 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
11:03:07.267 | 7AA4 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
11:03:07.267 | 7AA4 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
11:03:07.270 | 7AA4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X18950000>6|2|1247870977 |
11:03:07.301 | 7AA4 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
11:03:07.301 | 7AA4 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
11:03:07.301 | 7AA4 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
11:03:07.301 | 7AA4 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
11:03:07.301 | 7AA4 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
11:03:07.402 | 7AA4 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_181_1_27948 opened succesfuly |
11:03:07.402 | 7AA4 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
11:03:07.402 | 7AA4 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_181_1_27948 close 2147483647 bytes |
11:03:07.402 | 7AA4 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.181.0.11\OWExplorer.dll] |
11:03:07.421 | 7AA4 | 389 | ftw1 | OWExplorer injected |
11:03:07.426 | 54F8 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
11:03:08.425 | 79BC | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
11:03:08.425 | 79BC | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
11:03:08.425 | 79BC | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
11:03:08.425 | 79BC | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |64|: |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |132|: Registry |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1136|: \Device\HarddiskVolume5\Program Files\Bitdefender Agent\redline\bdredline.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1800|: \Device\HarddiskVolume5\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1804|: \Device\HarddiskVolume5\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\Display.NvContainer\NVDisplay.Container.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2092|: MemCompression |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2752|: \Device\HarddiskVolume5\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2876|: \Device\HarddiskVolume5\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3572|: \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\bdredline.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3716|: \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\updatesrv.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3724|: \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsserv.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3732|: \Device\HarddiskVolume5\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3772|: \Device\HarddiskVolume5\Program Files\Bitdefender Antivirus Free\vsservppl.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4644|: \Device\HarddiskVolume5\Program Files\Docker\Docker\com.docker.service |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5728|: \Device\HarddiskVolume5\Program Files\Bitdefender Agent\25.0.1.194\DiscoverySrv.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7356|: \Device\HarddiskVolume5\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\Display.NvContainer\NVDisplay.Container.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |8740|: \Device\HarddiskVolume5\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10444|: C:\Program Files\Logitech Gaming Software\LCore.exe |
11:04:08.516 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10572|: C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe |
11:04:09.528 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |15332|: C:\Program Files\Bitdefender Antivirus Free\bdagent.exe |
11:04:10.544 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2500|: C:\Users\samue\AppData\Local\GitHubDesktop\app-2.9.4\GitHubDesktop.exe |
11:04:10.544 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11864|: C:\Users\samue\AppData\Local\GitHubDesktop\app-2.9.4\GitHubDesktop.exe |
11:04:10.544 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16600|: C:\Users\samue\AppData\Local\GitHubDesktop\app-2.9.4\GitHubDesktop.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |236|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |364|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2336|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5768|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5896|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7096|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7360|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9668|: \Device\HarddiskVolume5\Program Files\WindowsApps\Microsoft.GamingServices_3.59.1001.0_x64__8wekyb3d8bbwe\gamingservices.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9736|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10996|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11452|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13524|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16652|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |17492|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |18748|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |18892|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19572|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |19868|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |21692|: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21090.10008.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22788|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |23128|: C:\Program Files\nodejs\node.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |24452|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21092.145.0_x64__8wekyb3d8bbwe\YourPhone.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |25340|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |25464|: C:\Program Files\nodejs\node.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |27112|: C:\Users\samue\AppData\Local\Microsoft\OneDrive\OneDrive.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |27132|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |27408|: C:\Program Files\nodejs\node.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |28028|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |29440|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |29552|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |30028|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |31908|: \Device\HarddiskVolume5\Program Files\PCHealthCheck\PCHealthCheck.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |32192|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |32252|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |32300|: C:\Program Files\nodejs\node.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |32628|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |33124|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |34140|: C:\Program Files\nodejs\node.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |34836|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |35224|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |35628|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |35708|: \Device\HarddiskVolume5\Program Files\WindowsApps\Microsoft.GamingServices_3.59.1001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |35852|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |36288|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |36416|: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.10202.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |37180|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |37424|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |37536|: C:\Program Files\nodejs\node.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |37660|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |38728|: C:\Users\samue\AppData\Local\Programs\Microsoft VS Code\Code.exe |
11:04:11.558 | 26C4 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |39328|: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.10202.0_x64__8wekyb3d8bbwe\GameBar.exe |