Time | Thread | Line | Function | Message |
11:34:11.730 | 3828 | 365 | ftw1 | Loading (pid: 10956) |
11:34:11.732 | 3828 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X660E0000>6|2|1247872178 |
11:34:11.732 | 3828 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X68860000>6|2|1247872242 |
11:34:11.868 | 3828 | 173 | DXManager::Detect | Found in 0 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0X2A40|10816 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0X6AA70|436848 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0X21390|136080 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0X3C60|15456 |
11:34:11.869 | 3828 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0XFD9A8860|-40204192 |
11:34:11.869 | 3828 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0XFD9ADC30|-40182736 |
11:34:11.869 | 3828 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0XFD9AC5F0|-40188432 |
11:34:11.869 | 3828 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000 |
11:34:11.869 | 3828 | 209 | Initialize::GetLocation | @ 0XFD88A7F0|-41375760 |
11:34:11.944 | 3828 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X5C0A0000>6|2|1247871904 |
11:34:12.44 | 3828 | 129 | DXManager::Detect | OK |
11:34:12.85 | 3828 | 186 | DXManager::Detect | Done |
11:34:12.85 | 3828 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X41090|266384 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X3CBC0|248768 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XB76A0|751264 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XB71F0|750064 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XA1F0|41456 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XB7290|750224 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X1ABB0|109488 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X1D600|120320 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X25C30|154672 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X113920|1128736 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X1133E0|1127392 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X1AAA0|109216 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X1A9B0|108976 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XCB80|52096 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X48030|294960 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XCE890|845968 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XCEF60|847712 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0X9D60|40288 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XCFA50|850512 |
11:34:12.85 | 3828 | 209 | Initialize::GetLocation | @ 0XD00B0|852144 |
11:34:12.170 | 3828 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X4A230000>6|2|1247870977 |
11:34:12.180 | 3828 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
11:34:12.180 | 3828 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
11:34:12.181 | 3828 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
11:34:12.181 | 3828 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
11:34:12.189 | 3828 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X41660000>6|2|1247870977 |
11:34:12.197 | 3828 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
11:34:12.198 | 3828 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
11:34:12.198 | 3828 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
11:34:12.198 | 3828 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
11:34:12.198 | 3828 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
11:34:12.264 | 3828 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_184_4_10956 opened succesfuly |
11:34:12.264 | 3828 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
11:34:12.265 | 3828 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_184_4_10956 close 2147483647 bytes |
11:34:12.265 | 3828 | 301 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.184.0.35\OWExplorer.dll] |
11:34:12.279 | 3828 | 389 | ftw1 | OWExplorer injected |
11:34:12.293 | 3D98 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
11:34:12.512 | 5E34 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
11:34:12.512 | 5E34 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
11:34:12.512 | 5E34 | 56 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
11:34:12.512 | 5E34 | 53 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
11:34:40.427 | 58DC | 564 | ProcessInjector::InjectExplorerToProcess | Injected to process 4228 [mt 21152] 0x3e2378 |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |108|: Registry |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2100|: \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2384|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_44dc4eefedc0d082\Display.NvContainer\NVDisplay.Container.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2572|: MemCompression |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2824|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_44dc4eefedc0d082\Display.NvContainer\NVDisplay.Container.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4748|: \Device\HarddiskVolume4\Program Files\ESET\RemoteAdministrator\Agent\ERAAgent.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4912|: \Device\HarddiskVolume4\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |5004|: \Device\HarddiskVolume4\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |7960|: C:\Program Files\Logitech Gaming Software\LCore.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |8020|: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
11:35:13.288 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |10624|: C:\Program Files\ESET\ESET Security\eguiProxy.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |372|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |2328|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21092.149.0_x64__8wekyb3d8bbwe\YourPhone.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |4348|: C:\Program Files\Riot Vanguard\vgtray.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |8176|: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21090.10008.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |20436|: C:\Windows\HelpPane.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |20596|: \Device\HarddiskVolume4\Program Files\PCHealthCheck\PCHealthCheck.exe |
11:35:17.325 | 58DC | 258 | ProcessInjector::HandlePendingProccesss | process detection skipped |22552|: \Device\HarddiskVolume4\Program Files (x86)\Google\Chrome Remote Desktop\96.0.4664.39\remoting_host.exe |