TimeThreadLineFunctionMessage
15:14:19.22576C365ftw1Loading (pid: 13852)
15:14:19.2269E0147ProcessHardwareRecorder::CommandThreadstarting recorder thread
15:14:19.23576C48Update::DetectEnv (C:\Windows\SYSTEM32\d3d11.dll) <0X8EB00000>6|2|1247871722
15:14:19.23576C48Update::DetectEnv (C:\Windows\SYSTEM32\dxgi.dll) <0X91210000>6|2|1247871940
15:14:19.28376C173DXManager::DetectFound in 0
15:14:19.28476C209Initialize::GetLocation@ 0X59E0|23008
15:14:19.28476C209Initialize::GetLocation@ 0X6AE20|437792
15:14:19.28476C209Initialize::GetLocation@ 0X211E0|135648
15:14:19.28476C209Initialize::GetLocation@ 0X2840|10304
15:14:19.28476C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
15:14:19.28476C209Initialize::GetLocation@ 0XFDA18860|-39745440
15:14:19.28476C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
15:14:19.28476C209Initialize::GetLocation@ 0XFDA1DC30|-39723984
15:14:19.28476C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
15:14:19.28476C209Initialize::GetLocation@ 0XFDA1C5F0|-39729680
15:14:19.28476C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
15:14:19.28476C209Initialize::GetLocation@ 0XFD8FA7F0|-40917008
15:14:19.29776C48Update::DetectEnv (C:\Windows\SYSTEM32\d3d9.dll) <0X4CEC0000>6|2|1247871904
15:14:19.35776C129DXManager::DetectOK
15:14:19.39876C186DXManager::DetectDone
15:14:19.39876C215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
15:14:19.39876C209Initialize::GetLocation@ 0X41090|266384
15:14:19.39976C209Initialize::GetLocation@ 0X33320|209696
15:14:19.39976C209Initialize::GetLocation@ 0X3CBC0|248768
15:14:19.39976C209Initialize::GetLocation@ 0XB76A0|751264
15:14:19.39976C209Initialize::GetLocation@ 0XB71F0|750064
15:14:19.39976C209Initialize::GetLocation@ 0XA1F0|41456
15:14:19.39976C209Initialize::GetLocation@ 0XB7290|750224
15:14:19.39976C209Initialize::GetLocation@ 0X1ABB0|109488
15:14:19.39976C209Initialize::GetLocation@ 0X1D600|120320
15:14:19.39976C209Initialize::GetLocation@ 0X25C30|154672
15:14:19.39976C209Initialize::GetLocation@ 0X113920|1128736
15:14:19.39976C209Initialize::GetLocation@ 0X1133E0|1127392
15:14:19.39976C209Initialize::GetLocation@ 0X1AAA0|109216
15:14:19.39976C209Initialize::GetLocation@ 0X1A9B0|108976
15:14:19.39976C209Initialize::GetLocation@ 0XCB80|52096
15:14:19.39976C209Initialize::GetLocation@ 0X48030|294960
15:14:19.39976C209Initialize::GetLocation@ 0X9D60|40288
15:14:19.39976C209Initialize::GetLocation@ 0XCE890|845968
15:14:19.39976C209Initialize::GetLocation@ 0XCEF60|847712
15:14:19.39976C209Initialize::GetLocation@ 0X9D60|40288
15:14:19.39976C209Initialize::GetLocation@ 0XCFA50|850512
15:14:19.39976C209Initialize::GetLocation@ 0XD00B0|852144
15:14:19.41376C48Update::DetectEnv (C:\Windows\SYSTEM32\dinput.dll) <0X2DEA0000>6|2|1247870977
15:14:19.42576C83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
15:14:19.42576C209Initialize::GetLocation@ 0X4040|16448
15:14:19.42576C209Initialize::GetLocation@ 0X6410|25616
15:14:19.42576C209Initialize::GetLocation@ 0X65C0|26048
15:14:19.42876C48Update::DetectEnv (C:\Windows\SYSTEM32\dinput8.dll) <0X2DE50000>6|2|1247870977
15:14:19.43676C93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
15:14:19.43676C110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
15:14:19.43676C209Initialize::GetLocation@ 0XA5D0|42448
15:14:19.43676C209Initialize::GetLocation@ 0XD4D0|54480
15:14:19.43676C209Initialize::GetLocation@ 0XD290|53904
15:14:19.50476C225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_173_4_13852 opened succesfuly
15:14:19.50476C72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
15:14:19.50576C255InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_173_4_13852 close 2147483647 bytes
15:14:19.50576C301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.173.0.16\OWExplorer.dll]
15:14:19.56176C389ftw1OWExplorer injected
15:14:19.562422C71Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
15:14:19.827422851`anonymous-namespace'::CreateProviderInitialize provider: NET
15:14:19.8274228117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
15:14:19.827422854`anonymous-namespace'::CreateProviderFail to initlized provider: NET
15:14:19.827422851`anonymous-namespace'::CreateProviderInitialize provider: GPU
15:14:19.9704230669ProcessInjector::InjectProcessprocess |atkexComSvc.exe| missing h
15:14:19.9714230669ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
15:14:19.9714230669ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
15:14:19.9714230669ProcessInjector::InjectProcessprocess |RtWLan.exe| missing h
15:14:20.1044230669ProcessInjector::InjectProcessprocess |Aac3572MbHal_x86.exe| missing h
15:16:50.5674230386ProcessInjector::HandleElevatedProcessFail injection to process [740] [t: 0 w_t_id: 0]- Aac3572MbHal_x86.exe (elevated True) 0x0
15:16:50.5674230318ProcessInjector::HandlePendingProccesssFail to inject pending process |740|: Aac3572MbHal_x86.exe
15:16:50.5674230386ProcessInjector::HandleElevatedProcessFail injection to process [3992] [t: 0 w_t_id: 0]- atkexComSvc.exe (elevated True) 0x0
15:16:50.5674230318ProcessInjector::HandlePendingProccesssFail to inject pending process |3992|: atkexComSvc.exe
15:16:50.5674230386ProcessInjector::HandleElevatedProcessFail injection to process [4744] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
15:16:50.5674230318ProcessInjector::HandlePendingProccesssFail to inject pending process |4744|: GoogleCrashHandler64.exe
15:16:50.5674230386ProcessInjector::HandleElevatedProcessFail injection to process [5076] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
15:16:50.5674230318ProcessInjector::HandlePendingProccesssFail to inject pending process |5076|: GoogleCrashHandler.exe
15:17:49.9324230669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
15:17:49.9324230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
15:17:49.9324230669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
15:17:49.9324230669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
15:17:49.9324230669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
15:17:49.9324230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
15:17:49.9324230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
15:18:22.1284230669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
15:18:48.2794230386ProcessInjector::HandleElevatedProcessFail injection to process [5808] [t: 0 w_t_id: 0]- curseforge.exe (elevated True) 0x0
15:18:48.2794230318ProcessInjector::HandlePendingProccesssFail to inject pending process |5808|: curseforge.exe
15:19:15.4674230669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
15:20:20.9054230386ProcessInjector::HandleElevatedProcessFail injection to process [4404] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
15:20:20.9054230318ProcessInjector::HandlePendingProccesssFail to inject pending process |4404|: GoogleUpdate.exe
15:20:20.9054230386ProcessInjector::HandleElevatedProcessFail injection to process [9492] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0
15:20:20.9054230318ProcessInjector::HandlePendingProccesssFail to inject pending process |9492|: MicrosoftEdgeUpdate.exe
15:20:20.9054230386ProcessInjector::HandleElevatedProcessFail injection to process [17788] [t: 0 w_t_id: 0]- AsusUpdate.exe (elevated True) 0x0
15:20:20.9054230318ProcessInjector::HandlePendingProccesssFail to inject pending process |17788|: AsusUpdate.exe
15:34:38.5694230386ProcessInjector::HandleElevatedProcessFail injection to process [1996] [t: 0 w_t_id: 0]- GameBarFTServer.exe (elevated True) 0x0
15:34:38.5694230318ProcessInjector::HandlePendingProccesssFail to inject pending process |1996|: GameBarFTServer.exe
15:46:14.8774230669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
16:17:49.5744230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
16:17:49.5744230669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
16:17:49.5744230669ProcessInjector::InjectProcessprocess |Get-AppxVersion.exe| missing h
16:20:40.5224230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
16:24:00.904230386ProcessInjector::HandleElevatedProcessFail injection to process [16580] [t: 0 w_t_id: 0]- GameBarFTServer.exe (elevated True) 0x0
16:24:00.904230318ProcessInjector::HandlePendingProccesssFail to inject pending process |16580|: GameBarFTServer.exe
16:58:36.9254230386ProcessInjector::HandleElevatedProcessFail injection to process [9392] [t: 0 w_t_id: 0]- GameBarFTServer.exe (elevated True) 0x0
16:58:36.9254230318ProcessInjector::HandlePendingProccesssFail to inject pending process |9392|: GameBarFTServer.exe
18:17:49.5564230669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
18:17:49.5564230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
18:17:49.5564230669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
19:17:49.5984230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
19:17:49.5984230669ProcessInjector::InjectProcessprocess |Get-AppxVersion.exe| missing h
19:19:15.2734230669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
19:46:13.6964230669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
20:17:49.6174230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
20:17:49.6174230669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
20:17:49.6174230669ProcessInjector::InjectProcessprocess |Get-AppxVersion.exe| missing h
20:18:37.324230669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
20:45:02.2054230386ProcessInjector::HandleElevatedProcessFail injection to process [5280] [t: 0 w_t_id: 0]- GameBarFTServer.exe (elevated True) 0x0
20:45:02.2054230318ProcessInjector::HandlePendingProccesssFail to inject pending process |5280|: GameBarFTServer.exe
21:17:49.6294230669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
21:17:49.6294230669ProcessInjector::InjectProcessprocess |Get-AppxVersion.exe| missing h
23:19:15.1434230669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
23:46:13.8844230669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
00:03:43.688422C76Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
00:03:43.72276C66ProcessesMonitor::Stopstopping PM...
00:03:43.7224228119ProcessesMonitor::ProcessEnumerateThreadexit process listener
00:03:43.81076C527ProcessInjector::Unhookunhook running process
00:03:49.88076C66ProcessesMonitor::Stopstopping PM...