Time | Thread | Line | Function | Message |
20:39:39.440 | 48F4 | 365 | ftw1 | Loading (pid: 10040) |
20:39:39.440 | 48F4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X61FF0000>6|2|1247872178 |
20:39:39.440 | 48F4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X64990000>6|2|1247872242 |
20:39:39.492 | 48F4 | 173 | DXManager::Detect | Found in 0 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0X2A40|10816 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0X6AA70|436848 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0X21390|136080 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0X3C60|15456 |
20:39:39.492 | 48F4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0XFD788860|-42432416 |
20:39:39.492 | 48F4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0XFD78DC30|-42410960 |
20:39:39.492 | 48F4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0XFD78C5F0|-42416656 |
20:39:39.492 | 48F4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X61FF0000 <> 0X64990000 |
20:39:39.492 | 48F4 | 209 | Initialize::GetLocation | @ 0XFD66A7F0|-43603984 |
20:39:39.504 | 48F4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X59D20000>6|2|1247872363 |
20:39:39.558 | 48F4 | 129 | DXManager::Detect | OK |
20:39:39.597 | 48F4 | 186 | DXManager::Detect | Done |
20:39:39.597 | 48F4 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x55a0 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X43770|276336 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X3A070|237680 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X40050|262224 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0XB9850|759888 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0XB93A0|758688 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0XA9F0|43504 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0XB9440|758848 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X1B820|112672 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X1E270|123504 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X268A0|157856 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X115100|1134848 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X114BC0|1133504 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X1B710|112400 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0X1B620|112160 |
20:39:39.597 | 48F4 | 209 | Initialize::GetLocation | @ 0XD380|54144 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0X4B1C0|307648 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0XA560|42336 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0XD0A40|854592 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0XD1110|856336 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0XA560|42336 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0XD1C00|859136 |
20:39:39.598 | 48F4 | 209 | Initialize::GetLocation | @ 0XD2260|860768 |
20:39:39.627 | 48F4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X35D80000>6|2|1247870977 |
20:39:39.633 | 48F4 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
20:39:39.633 | 48F4 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
20:39:39.633 | 48F4 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
20:39:39.633 | 48F4 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
20:39:39.633 | 48F4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X22340000>6|2|1247870977 |
20:39:39.637 | 48F4 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
20:39:39.638 | 48F4 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
20:39:39.638 | 48F4 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
20:39:39.638 | 48F4 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
20:39:39.638 | 48F4 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
20:39:39.696 | 48F4 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_18910040 opened succesfuly |
20:39:39.696 | 48F4 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x55a0 |
20:39:39.696 | 48F4 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_18910040 close 2147483647 bytes |
20:39:39.696 | 48F4 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.188.0.14\OWExplorer.dll] |
20:39:39.699 | 48F4 | 389 | ftw1 | OWExplorer injected |
20:39:39.699 | 2668 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
20:39:39.840 | 3CD0 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
20:39:39.840 | 3CD0 | 120 | libprocess::NetworkTracer::Initialize | init res:0xb7 [started:0 active:1 enbaled:1] |
20:39:39.840 | 3CD0 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
20:39:40.974 | D44 | 590 | ProcessInjector::InjectExplorerToProcess | Injected to process 19096 [mt 7000] 0x820b44 |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |196| (w: 0x0): Registry |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |1324| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |1364| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |1624| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2064| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2088| (w: 0x0): \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2112| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |2280| (w: 0x0): C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryWebBrowserEdge.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3016| (w: 0x0): \Device\HarddiskVolume2\Program Files (x86)\ASUS\AXSP\4.02.12\atkexComSvc.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3172| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\81.0.4196.61\opera_crashreporter.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3460| (w: 0x0): C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3696| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3824| (w: 0x0): \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |3884| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |4504| (w: 0x0): \Device\HarddiskVolume2\Users\BLUE_D~1\AppData\Local\Temp\TeamViewer\TeamViewer_Desktop.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |4540| (w: 0x0): \Device\HarddiskVolume2\Program Files\Prio\prio_svc.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |4728| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |4824| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |4880| (w: 0x0): C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |7180| (w: 0x0): \Device\HarddiskVolume2\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8352| (w: 0x0): \Device\HarddiskVolume2\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8376| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8396| (w: 0x0): C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AIOFanSDK\ArmouryAIOFanServer.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8504| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |8564| (w: 0x0): C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\SetThreadAffinityMaskX64.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9208| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9240| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |9584| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10444| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10584| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |10888| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12236| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12492| (w: 0x0): \Device\HarddiskVolume2\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12600| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12636| (w: 0x0): \Device\HarddiskVolume2\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12700| (w: 0x0): \Device\HarddiskVolume2\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12892| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |13032| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |13296| (w: 0x0): \Device\HarddiskVolume2\Users\BLUE_D~1\AppData\Local\Temp\TeamViewer\tv_x64.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |13512| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |13828| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |15688| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |15984| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |16104| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |16892| (w: 0x0): \Device\HarddiskVolume2\Users\BLUE_D~1\AppData\Local\Temp\TeamViewer\tv_w32.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |17200| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |17312| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |17404| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |17812| (w: 0x0): C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryWebBrowserEdge.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |17944| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |18500| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |18612| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |18708| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |18720| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |19276| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |19460| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |19564| (w: 0x0): C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |19604| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |19792| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |20060| (w: 0x0): C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |20268| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:41:40.709 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |20456| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:42:23.98 | D44 | 267 | ProcessInjector::HandlePendingProccesss | process detection skipped |12896| (w: 0x0): C:\Users\Blue_Dawn\AppData\Local\Programs\Opera GX\opera.exe |
20:42:23.588 | 2668 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
20:42:25.918 | 48F4 | 66 | ProcessesMonitor::Stop | stopping PM... |
20:42:25.918 | 3CD0 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
20:42:25.919 | 48F4 | 402 | ProcessInjector::Unhook | unhook running process |
20:42:31.932 | 48F4 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |