Time | Thread | Line | Function | Message |
19:03:14.670 | 5FAC | 361 | ftw1 | Loading (pid: 27528) |
19:03:14.672 | 5FAC | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0XB7F80000>6|2|1203373203 |
19:03:14.672 | 5FAC | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0XB9FC0000>6|2|1203373081 |
19:03:14.684 | 2944 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
19:03:14.754 | 5FAC | 172 | DXManager::Detect | Found in 0 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0X4660|18016 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0X661F0|418288 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0X19DB0|105904 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0X1350|4944 |
19:03:14.754 | 5FAC | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XB7F80000 <> 0XB9FC0000 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0XFE0E3020|-32624608 |
19:03:14.754 | 5FAC | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XB7F80000 <> 0XB9FC0000 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0XFE0E8060|-32604064 |
19:03:14.754 | 5FAC | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XB7F80000 <> 0XB9FC0000 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0XFE0DE620|-32643552 |
19:03:14.754 | 5FAC | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0XB7F80000 <> 0XB9FC0000 |
19:03:14.754 | 5FAC | 209 | Initialize::GetLocation | @ 0XFDFCAA80|-33772928 |
19:03:14.804 | 5FAC | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X8AB00000>6|2|1203373142 |
19:03:15.73 | 5FAC | 129 | DXManager::Detect | OK |
19:03:15.184 | 5FAC | 186 | DXManager::Detect | Done |
19:03:15.185 | 5FAC | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X3AC00|240640 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X2C5B0|181680 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X36D00|224512 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XAE210|713232 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XADD60|712032 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X5880|22656 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XADE00|712192 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X20FF0|135152 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X1CA60|117344 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X1C8E0|116960 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X1086D0|1083088 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X108180|1081728 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X248B0|149680 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X247A0|149408 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X2C440|181312 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0X3F3F0|259056 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XF4E0|62688 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XF5D0|62928 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XF280|62080 |
19:03:15.187 | 5FAC | 209 | Initialize::GetLocation | @ 0XF430|62512 |
19:03:15.221 | 5FAC | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0X8C7B0000>6|2|1203372033 |
19:03:15.242 | 5FAC | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
19:03:15.242 | 5FAC | 209 | Initialize::GetLocation | @ 0X3CC0|15552 |
19:03:15.242 | 5FAC | 209 | Initialize::GetLocation | @ 0X5FD0|24528 |
19:03:15.242 | 5FAC | 209 | Initialize::GetLocation | @ 0X6180|24960 |
19:03:15.243 | 5FAC | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X8C760000>6|2|1203372033 |
19:03:15.254 | 5FAC | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
19:03:15.254 | 5FAC | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
19:03:15.254 | 5FAC | 209 | Initialize::GetLocation | @ 0X10000|65536 |
19:03:15.254 | 5FAC | 209 | Initialize::GetLocation | @ 0X12C80|76928 |
19:03:15.254 | 5FAC | 209 | Initialize::GetLocation | @ 0X12A60|76384 |
19:03:15.309 | 5FAC | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_82_5_27528 opened succesfuly |
19:03:15.309 | 5FAC | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
19:03:15.310 | 5FAC | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_82_5_27528 close 2147483647 bytes |
19:03:15.310 | 5FAC | 297 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.159.0.26\OWExplorer.dll] |
19:03:15.370 | 5FAC | 385 | ftw1 | OWExplorer injected |
19:03:15.963 | 3120 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
19:03:15.964 | 3120 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
19:03:15.964 | 3120 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
19:03:15.964 | 3120 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |vpnagent.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |com.docker.service| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |gameinputsvc.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |nassvc.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |httpd.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |mysqld.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |httpd.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
19:03:15.992 | 5758 | 629 | ProcessInjector::InjectProcess | process |gameinputsvc.exe| missing h |
19:03:15.993 | 5758 | 629 | ProcessInjector::InjectProcess | process |tv_w32.exe| missing h |
19:03:15.993 | 5758 | 629 | ProcessInjector::InjectProcess | process |tv_x64.exe| missing h |
19:03:16.522 | 5758 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
19:03:16.523 | 5758 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2672] [t: 0 w_t_id: 0]- vpnagent.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2672|: vpnagent.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2896] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2896|: MsMpEng.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3684] [t: 0 w_t_id: 0]- com.docker.service (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3684|: com.docker.service |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3708] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3708|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3728] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3728|: gameinputsvc.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4048] [t: 0 w_t_id: 0]- nassvc.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4048|: nassvc.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4148] [t: 0 w_t_id: 0]- httpd.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4148|: httpd.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4652] [t: 0 w_t_id: 0]- mysqld.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4652|: mysqld.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5680] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5680|: GoogleCrashHandler64.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5716] [t: 0 w_t_id: 0]- DropboxUpdate.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5716|: DropboxUpdate.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6276] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6276|: tv_w32.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6668] [t: 0 w_t_id: 0]- httpd.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6668|: httpd.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6828] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6828|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7876] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7876|: GoogleCrashHandler.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9464] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9464|: tv_x64.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11696] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11696|: node.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13876] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13876|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13916] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13916|: Teams.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16212] [t: 0 w_t_id: 0]- docker-mutagen.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16212|: docker-mutagen.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16592] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16592|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18500] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18500|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18528] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18528|: Teams.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18944] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18944|: Teams.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19760] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19760|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [20400] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |20400|: Teams.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [21628] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.533 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |21628|: Code.exe |
19:05:46.533 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [22108] [t: 0 w_t_id: 0]- com.docker.proxy.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |22108|: com.docker.proxy.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23248] [t: 0 w_t_id: 0]- vpnkit.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23248|: vpnkit.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23288] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23288|: Code.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [25564] [t: 0 w_t_id: 0]- com.docker.backend.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |25564|: com.docker.backend.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [26044] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |26044|: node.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [27700] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |27700|: gameinputsvc.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [31436] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |31436|: Code.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [31692] [t: 0 w_t_id: 0]- vpnkit-bridge.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |31692|: vpnkit-bridge.exe |
19:05:46.534 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [32736] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:05:46.534 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |32736|: Teams.exe |
19:08:08.619 | 5758 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
19:16:05.325 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [21872] [t: 0 w_t_id: 0]- Microsoft.ServiceHub.Controller.exe (elevated True) 0x0 |
19:16:05.325 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |21872|: Microsoft.ServiceHub.Controller.exe |
19:16:40.313 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16576] [t: 0 w_t_id: 0]- ServiceHub.TestWindowStoreHost.exe (elevated True) 0x0 |
19:16:40.313 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16576|: ServiceHub.TestWindowStoreHost.exe |
19:17:19.312 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [27076] [t: 0 w_t_id: 0]- VBCSCompiler.exe (elevated True) 0x0 |
19:17:19.313 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |27076|: VBCSCompiler.exe |
19:18:02.324 | 5758 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
19:20:21.344 | 5758 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
19:20:21.344 | 5758 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
19:20:21.344 | 5758 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
19:22:11.331 | 5758 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
19:28:33.346 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [29288] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:28:33.346 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |29288|: Teams.exe |
19:38:34.769 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [31764] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f |
19:38:34.769 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |31764|: Teams.exe |
19:44:01.940 | 5758 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
19:44:01.940 | 5758 | 629 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
19:45:16.962 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [24512] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:45:16.962 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |24512|: Teams.exe |
19:49:18.3 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11772] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
19:49:18.3 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11772|: Teams.exe |
20:18:02.328 | 5758 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
20:20:49.398 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [29468] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f |
20:20:49.398 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |29468|: Teams.exe |
20:32:13.539 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9876] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f |
20:32:13.539 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9876|: Teams.exe |
20:41:34.607 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [26488] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f |
20:41:34.607 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |26488|: Teams.exe |
20:44:02.625 | 5758 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
20:44:55.620 | 5758 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
20:54:17.829 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7224] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
20:54:17.829 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7224|: Teams.exe |
20:58:32.957 | 5758 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
20:58:32.957 | 5758 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
21:00:59.141 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6180] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
21:00:59.141 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6180|: Teams.exe |
21:07:03.189 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15868] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
21:07:03.189 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15868|: Teams.exe |
21:17:04.219 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [30004] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
21:17:04.220 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |30004|: Teams.exe |
21:18:03.240 | 5758 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
21:21:05.304 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2260] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5 |
21:21:05.304 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2260|: Teams.exe |
21:25:45.424 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17704] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0 |
21:25:45.424 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17704|: Teams.exe |
21:39:09.956 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [26452] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0 |
21:39:09.956 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |26452|: Teams.exe |
22:05:53.44 | 5758 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14056] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0 |
22:05:53.44 | 5758 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14056|: Teams.exe |
22:16:48.195 | 5758 | 629 | ProcessInjector::InjectProcess | process |gameinputsvc.exe| missing h |
22:16:49.314 | 5FAC | 66 | ProcessesMonitor::Stop | stopping PM... |
22:16:49.314 | 3120 | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
22:16:49.318 | 5FAC | 526 | ProcessInjector::Unhook | unhook running process |