Time | Thread | Line | Function | Message |
19:31:57.825 | 40CC | 365 | ftw1 | Loading (pid: 15236) |
19:31:57.826 | 40CC | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X61FF0000>6|2|1247872178 |
19:31:57.826 | 40CC | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X64990000>6|2|1247872242 |
19:31:57.900 | 40CC | 173 | DXManager::Detect | Found in 0 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0X2A40|10816 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0X6AA70|436848 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0X21390|136080 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0X3C60|15456 |
19:31:57.900 | 40CC | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0XFD788860|-42432416 |
19:31:57.900 | 40CC | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0XFD78DC30|-42410960 |
19:31:57.900 | 40CC | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0XFD78C5F0|-42416656 |
19:31:57.900 | 40CC | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
19:31:57.900 | 40CC | 209 | Initialize::GetLocation | @ 0XFD66A7F0|-43603984 |
19:31:57.908 | 40CC | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X5CAE0000>6|2|1247872363 |
19:31:57.946 | 40CC | 129 | DXManager::Detect | OK |
19:31:57.965 | 40CC | 186 | DXManager::Detect | Done |
19:31:57.965 | 40CC | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x55a0 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X43770|276336 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X3A070|237680 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X40050|262224 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XB9850|759888 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XB93A0|758688 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XA9F0|43504 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XB9440|758848 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X1B820|112672 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X1E270|123504 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X268A0|157856 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X115100|1134848 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X114BC0|1133504 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X1B710|112400 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X1B620|112160 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XD380|54144 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0X4B1C0|307648 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XA560|42336 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XD0A40|854592 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XD1110|856336 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XA560|42336 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XD1C00|859136 |
19:31:57.965 | 40CC | 209 | Initialize::GetLocation | @ 0XD2260|860768 |
19:31:57.975 | 40CC | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X589A0000>6|2|1247870977 |
19:31:57.996 | 40CC | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
19:31:57.996 | 40CC | 209 | Initialize::GetLocation | @ 0X4040|16448 |
19:31:57.996 | 40CC | 209 | Initialize::GetLocation | @ 0X6410|25616 |
19:31:57.996 | 40CC | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
19:31:57.998 | 40CC | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X10BF0000>6|2|1247870977 |
19:31:58.3 | 40CC | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
19:31:58.3 | 40CC | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
19:31:58.3 | 40CC | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
19:31:58.3 | 40CC | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
19:31:58.3 | 40CC | 209 | Initialize::GetLocation | @ 0XD290|53904 |
19:31:58.62 | 40CC | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_18615236 opened succesfuly |
19:31:58.62 | 40CC | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x55a0 |
19:31:58.62 | 40CC | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_18615236 close 2147483647 bytes |
19:31:58.62 | 40CC | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.187.0.11\OWExplorer.dll] |
19:31:58.127 | 40CC | 389 | ftw1 | OWExplorer injected |
19:31:58.127 | 4244 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
19:31:58.250 | 4240 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
19:31:58.250 | 4240 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
19:31:58.250 | 4240 | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
19:31:58.250 | 4240 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |196|: Registry |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1480|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryWebBrowserEdge.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1488|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryWebBrowserEdge.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2088|: \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2112|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2264|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3016|: \Device\HarddiskVolume2\Program Files (x86)\ASUS\AXSP\4.02.12\atkexComSvc.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4168|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4472|: C:\Program Files\Logitech Gaming Software\LCore.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4540|: \Device\HarddiskVolume2\Program Files\Prio\prio_svc.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7180|: \Device\HarddiskVolume2\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7256|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7808|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |8336|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |8352|: \Device\HarddiskVolume2\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |8704|: C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9168|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9204|: C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\SetThreadAffinityMaskX64.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11696|: \Device\HarddiskVolume2\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11736|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AIOFanSDK\ArmouryAIOFanServer.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11780|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11788|: \Device\HarddiskVolume2\Program Files (x86)\ASUS\Update\AsusUpdate.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12492|: \Device\HarddiskVolume2\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12636|: \Device\HarddiskVolume2\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12700|: \Device\HarddiskVolume2\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13204|: \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe |
19:32:58.652 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |14552|: C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe |
19:33:10.768 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16768|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\81.0.4196.61\opera_crashreporter.exe |
19:33:10.768 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16900|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:10.768 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16920|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2036|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4808|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5644|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6464|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12528|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12592|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |14536|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16300|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16724|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16732|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |16992|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:11.781 | 4248 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |17284|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
19:33:12.148 | 4244 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
19:33:12.335 | 40CC | 66 | ProcessesMonitor::Stop | stopping PM... |
19:33:12.335 | 4240 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
19:33:18.358 | 40CC | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |