Time | Thread | Line | Function | Message |
10:07:51.504 | 4394 | 74 | GameListService::CreateProcessMap | loading game list... |
10:07:51.506 | 4394 | 88 | GameListService::CreateProcessMap | 1131, 2 loaded |
10:07:51.506 | 4394 | 369 | ftw1 | Loading (pid: 15204) |
10:07:51.508 | 4394 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XF2F20000>6|2|1441792778 |
10:07:51.508 | 4394 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XF9BE0000>6|2|1441792708 |
10:07:51.565 | 4394 | 173 | DXManager::Detect | Found in 0 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0X14C0|5312 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0X1630|5680 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0X27790|161680 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0X5530|21808 |
10:07:51.566 | 4394 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF2F20000 <> 0XF9BE0000 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0XF9471190|-112782960 |
10:07:51.566 | 4394 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF2F20000 <> 0XF9BE0000 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0XF94763E0|-112761888 |
10:07:51.566 | 4394 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF2F20000 <> 0XF9BE0000 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0XF9474880|-112768896 |
10:07:51.566 | 4394 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF2F20000 <> 0XF9BE0000 |
10:07:51.566 | 4394 | 209 | Initialize::GetLocation | @ 0XF9349C60|-113992608 |
10:07:51.575 | 4394 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XD7A80000>6|2|1441792708 |
10:07:51.609 | 4394 | 129 | DXManager::Detect | OK |
10:07:51.629 | 4394 | 186 | DXManager::Detect | Done |
10:07:51.629 | 4394 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4030 , 0x55a0 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X45BB0|285616 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X314F0|201968 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X3FF50|261968 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0XBC780|771968 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0XBC2D0|770768 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0XCB50|52048 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0XBC370|770928 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X2F3C0|193472 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X24EE0|151264 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X24D30|150832 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X4FB50|326480 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0XFBFE0|1032160 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X2F680|194176 |
10:07:51.629 | 4394 | 209 | Initialize::GetLocation | @ 0X2F2A0|193184 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X31380|201600 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X4A780|305024 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X9730|38704 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X38C50|232528 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X39F30|237360 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X9730|38704 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X38850|231504 |
10:07:51.630 | 4394 | 209 | Initialize::GetLocation | @ 0X39A00|236032 |
10:07:51.648 | 4394 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X4CE90000>6|2|1441792653 |
10:07:51.677 | 4394 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
10:07:51.678 | 4394 | 209 | Initialize::GetLocation | @ 0X3760|14176 |
10:07:51.678 | 4394 | 209 | Initialize::GetLocation | @ 0X69C0|27072 |
10:07:51.678 | 4394 | 209 | Initialize::GetLocation | @ 0X6780|26496 |
10:07:51.679 | 4394 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X7D5E0000>6|2|1441792001 |
10:07:51.690 | 4394 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
10:07:51.690 | 4394 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
10:07:51.690 | 4394 | 209 | Initialize::GetLocation | @ 0XAF80|44928 |
10:07:51.690 | 4394 | 209 | Initialize::GetLocation | @ 0XDFD0|57296 |
10:07:51.690 | 4394 | 209 | Initialize::GetLocation | @ 0XDD90|56720 |
10:07:51.746 | 4394 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_20115204 opened succesfuly |
10:07:51.746 | 4394 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4030 , 0x55a0 |
10:07:51.746 | 4394 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_20115204 close 2147483647 bytes |
10:07:51.746 | 4394 | 305 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.204.0.1\OWExplorer.dll] |
10:07:51.759 | 4394 | 393 | ftw1 | OWExplorer injected |
10:07:51.760 | 4120 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |104| (w: 0x0): |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |168| (w: 0x0): Registry |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |3028| (w: 0x0): \Device\HarddiskVolume3\Program Files\ESET\ESET Security\ekrn.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |3140| (w: 0x0): \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_9682deda3bac5b6f\Display.NvContainer\NVDisplay.Container.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |3240| (w: 0x0): C:\Program Files\LGHUB\lghub.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |3392| (w: 0x0): MemCompression |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |3720| (w: 0x0): \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_9682deda3bac5b6f\Display.NvContainer\NVDisplay.Container.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |5396| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Bonjour\mDNSResponder.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |5572| (w: 0x0): \Device\HarddiskVolume3\Program Files\ESET\RemoteAdministrator\Agent\ERAAgent.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |5660| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Everything\Everything.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |5984| (w: 0x0): \Device\HarddiskVolume3\Program Files\LGHUB\lghub_updater.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |6128| (w: 0x0): \Device\HarddiskVolume3\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |7144| (w: 0x0): \Device\HarddiskVolume3\Program Files\WindowsApps\Microsoft.GamingServices_4.67.21001.0_x64__8wekyb3d8bbwe\gamingservices.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |7152| (w: 0x0): \Device\HarddiskVolume3\Program Files\WindowsApps\Microsoft.GamingServices_4.67.21001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |9844| (w: 0x0): C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |12840| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.534.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |13724| (w: 0x0): C:\Program Files\Riot Vanguard\vgtray.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |13728| (w: 0x0): C:\Program Files\ESET\ESET Security\eguiProxy.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |14016| (w: 0x0): C:\Users\admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |15108| (w: 0x0): C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |15560| (w: 0x0): C:\Program Files\LGHUB\lghub_agent.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |15656| (w: 0x0): C:\Program Files\LGHUB\lghub.exe |
10:09:51.864 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |15676| (w: 0x0): C:\Program Files\LGHUB\lghub.exe |
10:09:57.911 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |17868| (w: 0x0): C:\Program Files\WindowsApps\MicrosoftTeams_22183.300.1431.9295_x64__8wekyb3d8bbwe\msteams.exe |
10:09:58.927 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |18808| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.54\msedgewebview2.exe |
10:09:58.927 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |18912| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.54\msedgewebview2.exe |
10:09:59.932 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |19064| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.54\msedgewebview2.exe |
10:09:59.932 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |19072| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.54\msedgewebview2.exe |
10:09:59.932 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |19156| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.54\msedgewebview2.exe |
10:10:01.953 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |19944| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.54\msedgewebview2.exe |
10:10:14.44 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |22440| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.6271.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
10:10:34.222 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |4392| (w: 0x0): C:\Program Files\Kairos\Duet Display\duet.exe |
10:10:42.291 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |18820| (w: 0x0): C:\Program Files\WindowsApps\microsoft.gamingapp_2112.1001.10.0_x64__8wekyb3d8bbwe\XboxAppServices.exe |
10:14:56.682 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |8400| (w: 0x0): C:\Users\admin\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe |
10:14:56.682 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |9304| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe |
10:14:56.682 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |9360| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\GoogleUpdate.exe |
10:27:22.393 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |11924| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:22.393 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |20392| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:23.404 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |1636| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:23.404 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |21692| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:25.421 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |8720| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:25.421 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |21740| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:26.431 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |10484| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:27.441 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |12000| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:30.476 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |20700| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:27:33.512 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |23448| (w: 0x0): vmmem |
10:27:48.670 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |7112| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
10:39:27.716 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |9316| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2022.31070.26005.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe |
10:40:31.259 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |12196| (w: 0x0): C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe |
12:08:51.512 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |2208| (w: 0x0): C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2228.14.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe |
12:08:51.513 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |6548| (w: 0x0): C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2228.14.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe |
12:08:51.513 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |8776| (w: 0x0): C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2228.14.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe |
12:08:51.513 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |10208| (w: 0x0): C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2228.14.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe |
12:08:52.518 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |12552| (w: 0x0): C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2228.14.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe |
12:10:55.581 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |4948| (w: 0x0): C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2228.14.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe |
13:52:15.318 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |2040| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
13:52:15.318 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |13380| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
13:52:15.318 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |22988| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |
13:52:17.329 | 4100 | 280 | ProcessInjector::HandlePendingProccesss | process detection skipped |23048| (w: 0x0): C:\Users\admin\AppData\Local\Programs\Microsoft VS Code\Code.exe |