Time | Thread | Line | Function | Message |
19:14:57.339 | 30D4 | 365 | ftw1 | Loading (pid: 11788) |
19:14:57.343 | 30D4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X4F900000>6|2|1247872178 |
19:14:57.343 | 30D4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X55640000>6|2|1247872242 |
19:14:57.484 | 30D4 | 173 | DXManager::Detect | Found in 0 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0X2A40|10816 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0X6AA70|436848 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0X21390|136080 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0X3C60|15456 |
19:14:57.485 | 30D4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X4F900000 <> 0X55640000 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0XFA3E8860|-96565152 |
19:14:57.485 | 30D4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X4F900000 <> 0X55640000 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0XFA3EDC30|-96543696 |
19:14:57.485 | 30D4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X4F900000 <> 0X55640000 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0XFA3EC5F0|-96549392 |
19:14:57.485 | 30D4 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X4F900000 <> 0X55640000 |
19:14:57.485 | 30D4 | 209 | Initialize::GetLocation | @ 0XFA2CA7F0|-97736720 |
19:14:57.509 | 30D4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X4D850000>6|2|1247871904 |
19:14:57.563 | 30D4 | 129 | DXManager::Detect | OK |
19:14:57.582 | 30D4 | 186 | DXManager::Detect | Done |
19:14:57.582 | 30D4 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
19:14:57.583 | 30D4 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
19:14:57.608 | 30D4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X16E40000>6|2|1247870977 |
19:14:58.148 | 30D4 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
19:14:58.148 | 30D4 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
19:14:58.148 | 30D4 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
19:14:58.148 | 30D4 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
19:14:58.154 | 30D4 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X16DF0000>6|2|1247870977 |
19:14:58.532 | 30D4 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
19:14:58.533 | 30D4 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
19:14:58.533 | 30D4 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
19:14:58.533 | 30D4 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
19:14:58.533 | 30D4 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
19:14:58.596 | 30D4 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_181_1_11788 opened succesfuly |
19:14:58.596 | 30D4 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
19:14:58.596 | 30D4 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_181_1_11788 close 2147483647 bytes |
19:14:58.596 | 30D4 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.181.0.11\OWExplorer.dll] |
19:14:58.761 | 30D4 | 389 | ftw1 | OWExplorer injected |
19:14:58.762 | 31C8 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
19:14:59.263 | 31C4 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
19:14:59.263 | 31C4 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
19:14:59.263 | 31C4 | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
19:14:59.263 | 31C4 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |72|: |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |132|: Registry |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |3892|: MemCompression |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9804|: \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |9852|: \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11456|: C:\Program Files\Riot Vanguard\vgtray.exe |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11824|: C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe |
19:15:59.863 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |12216|: C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\IGCC.exe |
19:17:31.896 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |11368|: \Device\HarddiskVolume3\Program Files\HPCommRecovery\HPCommRecovery.exe |
19:17:32.896 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |6528|: \Device\HarddiskVolume3\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe |
19:41:02.306 | 31CC | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 7760 [mt 7596] 0x5027e |
19:41:48.478 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4492|: C:\Riot Games\VALORANT\live\VALORANT.exe |
19:42:06.641 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |1244|: C:\Riot Games\VALORANT\live\Engine\Binaries\Win64\UnrealCEFSubProcess.exe |
19:42:14.702 | 31CC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2768|: \Device\HarddiskVolume3\Program Files\Riot Vanguard\vgc.exe |
19:42:52.627 | 31C8 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
19:42:57.240 | 30D4 | 66 | ProcessesMonitor::Stop | stopping PM... |
19:42:57.241 | 31C4 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
19:42:57.243 | 30D4 | 394 | ProcessInjector::Unhook | unhook running process |
19:43:03.279 | 30D4 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |