TimeThreadLineFunctionMessage
12:30:02.1742924365ftw1Loading (pid: 14728)
12:30:02.175292448Update::DetectEnv (C:\Windows\SYSTEM32\d3d11.dll) <0X8EB00000>6|2|1247871722
12:30:02.175292448Update::DetectEnv (C:\Windows\SYSTEM32\dxgi.dll) <0X91210000>6|2|1247871940
12:30:02.176336C147ProcessHardwareRecorder::CommandThreadstarting recorder thread
12:30:02.5022924173DXManager::DetectFound in 0
12:30:02.5042924209Initialize::GetLocation@ 0X59E0|23008
12:30:02.5042924209Initialize::GetLocation@ 0X6AE20|437792
12:30:02.5042924209Initialize::GetLocation@ 0X211E0|135648
12:30:02.5042924209Initialize::GetLocation@ 0X2840|10304
12:30:02.5042924111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
12:30:02.5042924209Initialize::GetLocation@ 0XFDA18860|-39745440
12:30:02.5042924111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
12:30:02.5042924209Initialize::GetLocation@ 0XFDA1DC30|-39723984
12:30:02.5042924111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
12:30:02.5042924209Initialize::GetLocation@ 0XFDA1C5F0|-39729680
12:30:02.5042924111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X8EB00000 <> 0X91210000
12:30:02.5042924209Initialize::GetLocation@ 0XFD8FA7F0|-40917008
12:30:02.597292448Update::DetectEnv (C:\Windows\SYSTEM32\d3d9.dll) <0X3CED0000>6|2|1247871904
12:30:02.7412924129DXManager::DetectOK
12:30:02.8062924186DXManager::DetectDone
12:30:02.8062924215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
12:30:02.8062924209Initialize::GetLocation@ 0X41090|266384
12:30:02.8062924209Initialize::GetLocation@ 0X33320|209696
12:30:02.8062924209Initialize::GetLocation@ 0X3CBC0|248768
12:30:02.8062924209Initialize::GetLocation@ 0XB76A0|751264
12:30:02.8062924209Initialize::GetLocation@ 0XB71F0|750064
12:30:02.8062924209Initialize::GetLocation@ 0XA1F0|41456
12:30:02.8062924209Initialize::GetLocation@ 0XB7290|750224
12:30:02.8062924209Initialize::GetLocation@ 0X1ABB0|109488
12:30:02.8062924209Initialize::GetLocation@ 0X1D600|120320
12:30:02.8062924209Initialize::GetLocation@ 0X25C30|154672
12:30:02.8062924209Initialize::GetLocation@ 0X113920|1128736
12:30:02.8062924209Initialize::GetLocation@ 0X1133E0|1127392
12:30:02.8062924209Initialize::GetLocation@ 0X1AAA0|109216
12:30:02.8062924209Initialize::GetLocation@ 0X1A9B0|108976
12:30:02.8062924209Initialize::GetLocation@ 0XCB80|52096
12:30:02.8062924209Initialize::GetLocation@ 0X48030|294960
12:30:02.8062924209Initialize::GetLocation@ 0X9D60|40288
12:30:02.8062924209Initialize::GetLocation@ 0XCE890|845968
12:30:02.8062924209Initialize::GetLocation@ 0XCEF60|847712
12:30:02.8062924209Initialize::GetLocation@ 0X9D60|40288
12:30:02.8062924209Initialize::GetLocation@ 0XCFA50|850512
12:30:02.8062924209Initialize::GetLocation@ 0XD00B0|852144
12:30:02.820292448Update::DetectEnv (C:\Windows\SYSTEM32\dinput.dll) <0X2E280000>6|2|1247870977
12:30:02.838292483VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
12:30:02.8382924209Initialize::GetLocation@ 0X4040|16448
12:30:02.8382924209Initialize::GetLocation@ 0X6410|25616
12:30:02.8382924209Initialize::GetLocation@ 0X65C0|26048
12:30:02.841292448Update::DetectEnv (C:\Windows\SYSTEM32\dinput8.dll) <0X2E230000>6|2|1247870977
12:30:02.848292493VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
12:30:02.8482924110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
12:30:02.8492924209Initialize::GetLocation@ 0XA5D0|42448
12:30:02.8492924209Initialize::GetLocation@ 0XD4D0|54480
12:30:02.8492924209Initialize::GetLocation@ 0XD290|53904
12:30:02.9522924225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_173_4_14728 opened succesfuly
12:30:02.952292472HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
12:30:02.9522924255InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_173_4_14728 close 2147483647 bytes
12:30:02.9522924301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.173.0.16\OWExplorer.dll]
12:30:02.9632924389ftw1OWExplorer injected
12:30:02.96336B071Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
12:30:03.3183EA451`anonymous-namespace'::CreateProviderInitialize provider: NET
12:30:03.3193EA4117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
12:30:03.3193EA454`anonymous-namespace'::CreateProviderFail to initlized provider: NET
12:30:03.3193EA451`anonymous-namespace'::CreateProviderInitialize provider: GPU
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |atkexComSvc.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |Aac3572MbHal_x86.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:30:03.3336D0669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
12:30:03.4556D0669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
12:30:26.1446D0669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
12:30:36.2186D0669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:30:37.2226D0669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:32:34.1086D0386ProcessInjector::HandleElevatedProcessFail injection to process [740] [t: 0 w_t_id: 0]- Aac3572MbHal_x86.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |740|: Aac3572MbHal_x86.exe
12:32:34.1096D0386ProcessInjector::HandleElevatedProcessFail injection to process [1276] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |1276|: GoogleUpdate.exe
12:32:34.1096D0386ProcessInjector::HandleElevatedProcessFail injection to process [3372] [t: 0 w_t_id: 0]- AsusUpdate.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |3372|: AsusUpdate.exe
12:32:34.1096D0386ProcessInjector::HandleElevatedProcessFail injection to process [3992] [t: 0 w_t_id: 0]- atkexComSvc.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |3992|: atkexComSvc.exe
12:32:34.1096D0386ProcessInjector::HandleElevatedProcessFail injection to process [4744] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |4744|: GoogleCrashHandler64.exe
12:32:34.1096D0386ProcessInjector::HandleElevatedProcessFail injection to process [5076] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |5076|: GoogleCrashHandler.exe
12:32:34.1096D0386ProcessInjector::HandleElevatedProcessFail injection to process [12372] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0
12:32:34.1096D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |12372|: MicrosoftEdgeUpdate.exe
12:32:37.1586D0669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
12:32:37.1586D0669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
12:34:07.8186D0386ProcessInjector::HandleElevatedProcessFail injection to process [1932] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:07.8186D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |1932|: Code.exe
12:34:08.8326D0386ProcessInjector::HandleElevatedProcessFail injection to process [8128] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:08.8326D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |8128|: Code.exe
12:34:09.8466D0386ProcessInjector::HandleElevatedProcessFail injection to process [8200] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:09.8466D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |8200|: Code.exe
12:34:32.186D0386ProcessInjector::HandleElevatedProcessFail injection to process [15168] [t: 0 w_t_id: 0]- curseforge.exe (elevated True) 0x0
12:34:32.186D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |15168|: curseforge.exe
12:34:42.1136D0386ProcessInjector::HandleElevatedProcessFail injection to process [17432] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:42.1136D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |17432|: Code.exe
12:34:43.1136D0386ProcessInjector::HandleElevatedProcessFail injection to process [12104] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:43.1136D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |12104|: Code.exe
12:34:44.1266D0386ProcessInjector::HandleElevatedProcessFail injection to process [3856] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:44.1266D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |3856|: Code.exe
12:34:44.1266D0386ProcessInjector::HandleElevatedProcessFail injection to process [13064] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:44.1266D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |13064|: Code.exe
12:34:44.1266D0386ProcessInjector::HandleElevatedProcessFail injection to process [15084] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:34:44.1266D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |15084|: Code.exe
12:34:58.2416D0669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:42:00.4816D0386ProcessInjector::HandleElevatedProcessFail injection to process [1324] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:42:00.4816D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |1324|: Code.exe
12:42:23.6566D0386ProcessInjector::HandleElevatedProcessFail injection to process [7984] [t: 0 w_t_id: 0]- GameBarFTServer.exe (elevated True) 0x0
12:42:23.6566D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |7984|: GameBarFTServer.exe
12:46:55.7036D0386ProcessInjector::HandleElevatedProcessFail injection to process [10696] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:46:55.7036D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |10696|: Code.exe
12:46:55.7036D0386ProcessInjector::HandleElevatedProcessFail injection to process [16828] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x0
12:46:55.7036D0318ProcessInjector::HandlePendingProccesssFail to inject pending process |16828|: Code.exe
13:32:37.6676D0669ProcessInjector::InjectProcessprocess |AsusUpdate.exe| missing h
13:32:37.6676D0669ProcessInjector::InjectProcessprocess |Get-AppxVersion.exe| missing h