TimeThreadLineFunctionMessage
19:31:57.82540CC365ftw1Loading (pid: 15236)
19:31:57.82640CC48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X61FF0000>6|2|1247872178
19:31:57.82640CC48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X64990000>6|2|1247872242
19:31:57.90040CC173DXManager::DetectFound in 0
19:31:57.90040CC209Initialize::GetLocation@ 0X2A40|10816
19:31:57.90040CC209Initialize::GetLocation@ 0X6AA70|436848
19:31:57.90040CC209Initialize::GetLocation@ 0X21390|136080
19:31:57.90040CC209Initialize::GetLocation@ 0X3C60|15456
19:31:57.90040CC111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000
19:31:57.90040CC209Initialize::GetLocation@ 0XFD788860|-42432416
19:31:57.90040CC111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000
19:31:57.90040CC209Initialize::GetLocation@ 0XFD78DC30|-42410960
19:31:57.90040CC111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000
19:31:57.90040CC209Initialize::GetLocation@ 0XFD78C5F0|-42416656
19:31:57.90040CC111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000
19:31:57.90040CC209Initialize::GetLocation@ 0XFD66A7F0|-43603984
19:31:57.90840CC48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X5CAE0000>6|2|1247872363
19:31:57.94640CC129DXManager::DetectOK
19:31:57.96540CC186DXManager::DetectDone
19:31:57.96540CC215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x55a0
19:31:57.96540CC209Initialize::GetLocation@ 0X43770|276336
19:31:57.96540CC209Initialize::GetLocation@ 0X3A070|237680
19:31:57.96540CC209Initialize::GetLocation@ 0X40050|262224
19:31:57.96540CC209Initialize::GetLocation@ 0XB9850|759888
19:31:57.96540CC209Initialize::GetLocation@ 0XB93A0|758688
19:31:57.96540CC209Initialize::GetLocation@ 0XA9F0|43504
19:31:57.96540CC209Initialize::GetLocation@ 0XB9440|758848
19:31:57.96540CC209Initialize::GetLocation@ 0X1B820|112672
19:31:57.96540CC209Initialize::GetLocation@ 0X1E270|123504
19:31:57.96540CC209Initialize::GetLocation@ 0X268A0|157856
19:31:57.96540CC209Initialize::GetLocation@ 0X115100|1134848
19:31:57.96540CC209Initialize::GetLocation@ 0X114BC0|1133504
19:31:57.96540CC209Initialize::GetLocation@ 0X1B710|112400
19:31:57.96540CC209Initialize::GetLocation@ 0X1B620|112160
19:31:57.96540CC209Initialize::GetLocation@ 0XD380|54144
19:31:57.96540CC209Initialize::GetLocation@ 0X4B1C0|307648
19:31:57.96540CC209Initialize::GetLocation@ 0XA560|42336
19:31:57.96540CC209Initialize::GetLocation@ 0XD0A40|854592
19:31:57.96540CC209Initialize::GetLocation@ 0XD1110|856336
19:31:57.96540CC209Initialize::GetLocation@ 0XA560|42336
19:31:57.96540CC209Initialize::GetLocation@ 0XD1C00|859136
19:31:57.96540CC209Initialize::GetLocation@ 0XD2260|860768
19:31:57.97540CC48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X589A0000>6|2|1247870977
19:31:57.99640CC83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
19:31:57.99640CC209Initialize::GetLocation@ 0X4040|16448
19:31:57.99640CC209Initialize::GetLocation@ 0X6410|25616
19:31:57.99640CC209Initialize::GetLocation@ 0X65C0|26048
19:31:57.99840CC48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X10BF0000>6|2|1247870977
19:31:58.340CC93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
19:31:58.340CC110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
19:31:58.340CC209Initialize::GetLocation@ 0XA5D0|42448
19:31:58.340CC209Initialize::GetLocation@ 0XD4D0|54480
19:31:58.340CC209Initialize::GetLocation@ 0XD290|53904
19:31:58.6240CC225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_18615236 opened succesfuly
19:31:58.6240CC72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x55a0
19:31:58.6240CC255InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_18615236 close 2147483647 bytes
19:31:58.6240CC301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.187.0.11\OWExplorer.dll]
19:31:58.12740CC389ftw1OWExplorer injected
19:31:58.127424471Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
19:31:58.250424053`anonymous-namespace'::CreateProviderInitialize provider: NET
19:31:58.2504240117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
19:31:58.250424056`anonymous-namespace'::CreateProviderFail to initlized provider: NET
19:31:58.250424053`anonymous-namespace'::CreateProviderInitialize provider: GPU
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |196|: Registry
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |1480|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryWebBrowserEdge.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |1488|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryWebBrowserEdge.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |2088|: \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |2112|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |2264|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |3016|: \Device\HarddiskVolume2\Program Files (x86)\ASUS\AXSP\4.02.12\atkexComSvc.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |4168|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |4472|: C:\Program Files\Logitech Gaming Software\LCore.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |4540|: \Device\HarddiskVolume2\Program Files\Prio\prio_svc.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |7180|: \Device\HarddiskVolume2\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |7256|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |7808|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |8336|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |8352|: \Device\HarddiskVolume2\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |8704|: C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |9168|: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |9204|: C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\SetThreadAffinityMaskX64.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |11696|: \Device\HarddiskVolume2\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |11736|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AIOFanSDK\ArmouryAIOFanServer.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |11780|: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |11788|: \Device\HarddiskVolume2\Program Files (x86)\ASUS\Update\AsusUpdate.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |12492|: \Device\HarddiskVolume2\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |12636|: \Device\HarddiskVolume2\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |12700|: \Device\HarddiskVolume2\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |13204|: \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe
19:32:58.6524248258ProcessInjector::HandlePendingProccesssprocess detection skipped |14552|: C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe
19:33:10.7684248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16768|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\81.0.4196.61\opera_crashreporter.exe
19:33:10.7684248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16900|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:10.7684248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16920|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |2036|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |4808|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |5644|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |6464|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |12528|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |12592|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |14536|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16300|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16724|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16732|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |16992|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:11.7814248258ProcessInjector::HandlePendingProccesssprocess detection skipped |17284|: C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe
19:33:12.148424476Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
19:33:12.33540CC66ProcessesMonitor::Stopstopping PM...
19:33:12.3354240126ProcessesMonitor::ProcessEnumerateThreadexit process listener
19:33:18.35840CC66ProcessesMonitor::Stopstopping PM...