Time | Thread | Line | Function | Message |
16:36:02.630 | 1740 | 365 | ftw1 | Loading (pid: 7196) |
16:36:02.636 | 1740 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XF72D0000>6|2|1247872178 |
16:36:02.639 | 1740 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XFD000000>6|2|1247872242 |
16:36:02.775 | 1740 | 173 | DXManager::Detect | Found in 0 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0X2A40|10816 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0X6AA70|436848 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0X21390|136080 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0X3C60|15456 |
16:36:02.776 | 1740 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF72D0000 <> 0XFD000000 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0XFA3F8860|-96499616 |
16:36:02.776 | 1740 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF72D0000 <> 0XFD000000 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0XFA3FDC30|-96478160 |
16:36:02.776 | 1740 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF72D0000 <> 0XFD000000 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0XFA3FC5F0|-96483856 |
16:36:02.776 | 1740 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XF72D0000 <> 0XFD000000 |
16:36:02.776 | 1740 | 209 | Initialize::GetLocation | @ 0XFA2DA7F0|-97671184 |
16:36:02.792 | 1740 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XB8FF0000>6|2|1247871904 |
16:36:02.890 | 1740 | 129 | DXManager::Detect | OK |
16:36:02.918 | 1740 | 186 | DXManager::Detect | Done |
16:36:02.918 | 1740 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
16:36:02.919 | 1740 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
16:36:02.937 | 1740 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XD7830000>6|2|1247870977 |
16:36:03.7 | 1740 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
16:36:03.7 | 1740 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
16:36:03.7 | 1740 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
16:36:03.7 | 1740 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
16:36:03.9 | 1740 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XD0420000>6|2|1247870977 |
16:36:03.71 | 1740 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
16:36:03.74 | 1740 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
16:36:03.75 | 1740 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
16:36:03.75 | 1740 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
16:36:03.75 | 1740 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
16:36:03.132 | 1740 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_181_1_7196 opened succesfuly |
16:36:03.132 | 1740 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
16:36:03.132 | 1740 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_181_1_7196 close 2147483647 bytes |
16:36:03.132 | 1740 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.181.0.11\OWExplorer.dll] |
16:36:03.355 | 1740 | 389 | ftw1 | OWExplorer injected |
16:36:03.355 | F44 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
16:36:03.672 | 1464 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
16:36:03.672 | 1464 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
16:36:03.672 | 1464 | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
16:36:03.672 | 1464 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |72|: |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |132|: Registry |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3948|: MemCompression |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5968|: \Device\HarddiskVolume3\Program Files (x86)\HP\Shared\hpqwmiex.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7768|: \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7928|: \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9368|: C:\Program Files\Riot Vanguard\vgtray.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11664|: \Device\HarddiskVolume3\Program Files\HPCommRecovery\HPCommRecovery.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11940|: \Device\HarddiskVolume3\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12036|: C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe |
16:37:03.721 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12216|: C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\IGCC.exe |
17:02:33.25 | 24E0 | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 11420 [mt 3896] 0x140200 |
17:03:20.328 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11124|: C:\Riot Games\VALORANT\live\VALORANT.exe |
17:03:35.564 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12500|: C:\Riot Games\VALORANT\live\Engine\Binaries\Win64\UnrealCEFSubProcess.exe |
17:03:43.709 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |13100|: \Device\HarddiskVolume3\Program Files\Riot Vanguard\vgc.exe |
17:04:31.208 | 24E0 | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |14324|: C:\Riot Games\VALORANT\live\Engine\Binaries\Win64\UnrealCEFSubProcess.exe |
17:25:34.716 | F44 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
17:25:39.482 | 1740 | 66 | ProcessesMonitor::Stop | stopping PM... |
17:25:39.482 | 1464 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
17:25:39.492 | 1740 | 394 | ProcessInjector::Unhook | unhook running process |
17:25:45.552 | 1740 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |