TimeThreadLineFunctionMessage
11:34:11.7303828365ftw1Loading (pid: 10956)
11:34:11.732382848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X660E0000>6|2|1247872178
11:34:11.732382848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X68860000>6|2|1247872242
11:34:11.8683828173DXManager::DetectFound in 0
11:34:11.8693828209Initialize::GetLocation@ 0X2A40|10816
11:34:11.8693828209Initialize::GetLocation@ 0X6AA70|436848
11:34:11.8693828209Initialize::GetLocation@ 0X21390|136080
11:34:11.8693828209Initialize::GetLocation@ 0X3C60|15456
11:34:11.8693828111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000
11:34:11.8693828209Initialize::GetLocation@ 0XFD9A8860|-40204192
11:34:11.8693828111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000
11:34:11.8693828209Initialize::GetLocation@ 0XFD9ADC30|-40182736
11:34:11.8693828111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000
11:34:11.8693828209Initialize::GetLocation@ 0XFD9AC5F0|-40188432
11:34:11.8693828111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X660E0000 <> 0X68860000
11:34:11.8693828209Initialize::GetLocation@ 0XFD88A7F0|-41375760
11:34:11.944382848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X5C0A0000>6|2|1247871904
11:34:12.443828129DXManager::DetectOK
11:34:12.853828186DXManager::DetectDone
11:34:12.853828215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
11:34:12.853828209Initialize::GetLocation@ 0X41090|266384
11:34:12.853828209Initialize::GetLocation@ 0X33320|209696
11:34:12.853828209Initialize::GetLocation@ 0X3CBC0|248768
11:34:12.853828209Initialize::GetLocation@ 0XB76A0|751264
11:34:12.853828209Initialize::GetLocation@ 0XB71F0|750064
11:34:12.853828209Initialize::GetLocation@ 0XA1F0|41456
11:34:12.853828209Initialize::GetLocation@ 0XB7290|750224
11:34:12.853828209Initialize::GetLocation@ 0X1ABB0|109488
11:34:12.853828209Initialize::GetLocation@ 0X1D600|120320
11:34:12.853828209Initialize::GetLocation@ 0X25C30|154672
11:34:12.853828209Initialize::GetLocation@ 0X113920|1128736
11:34:12.853828209Initialize::GetLocation@ 0X1133E0|1127392
11:34:12.853828209Initialize::GetLocation@ 0X1AAA0|109216
11:34:12.853828209Initialize::GetLocation@ 0X1A9B0|108976
11:34:12.853828209Initialize::GetLocation@ 0XCB80|52096
11:34:12.853828209Initialize::GetLocation@ 0X48030|294960
11:34:12.853828209Initialize::GetLocation@ 0X9D60|40288
11:34:12.853828209Initialize::GetLocation@ 0XCE890|845968
11:34:12.853828209Initialize::GetLocation@ 0XCEF60|847712
11:34:12.853828209Initialize::GetLocation@ 0X9D60|40288
11:34:12.853828209Initialize::GetLocation@ 0XCFA50|850512
11:34:12.853828209Initialize::GetLocation@ 0XD00B0|852144
11:34:12.170382848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X4A230000>6|2|1247870977
11:34:12.180382883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
11:34:12.1803828209Initialize::GetLocation@ 0X4040|16448
11:34:12.1813828209Initialize::GetLocation@ 0X6410|25616
11:34:12.1813828209Initialize::GetLocation@ 0X65C0|26048
11:34:12.189382848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X41660000>6|2|1247870977
11:34:12.197382893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
11:34:12.1983828110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
11:34:12.1983828209Initialize::GetLocation@ 0XA5D0|42448
11:34:12.1983828209Initialize::GetLocation@ 0XD4D0|54480
11:34:12.1983828209Initialize::GetLocation@ 0XD290|53904
11:34:12.2643828225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_184_4_10956 opened succesfuly
11:34:12.264382872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
11:34:12.2653828255InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_184_4_10956 close 2147483647 bytes
11:34:12.2653828301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.184.0.35\OWExplorer.dll]
11:34:12.2793828389ftw1OWExplorer injected
11:34:12.2933D9871Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
11:34:12.5125E3453`anonymous-namespace'::CreateProviderInitialize provider: NET
11:34:12.5125E34117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
11:34:12.5125E3456`anonymous-namespace'::CreateProviderFail to initlized provider: NET
11:34:12.5125E3453`anonymous-namespace'::CreateProviderInitialize provider: GPU
11:34:40.42758DC564ProcessInjector::InjectExplorerToProcessInjected to process 4228 [mt 21152] 0x3e2378
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |108|: Registry
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |2100|: \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |2384|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_44dc4eefedc0d082\Display.NvContainer\NVDisplay.Container.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |2572|: MemCompression
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |2824|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_44dc4eefedc0d082\Display.NvContainer\NVDisplay.Container.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |4748|: \Device\HarddiskVolume4\Program Files\ESET\RemoteAdministrator\Agent\ERAAgent.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |4912|: \Device\HarddiskVolume4\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |5004|: \Device\HarddiskVolume4\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |7960|: C:\Program Files\Logitech Gaming Software\LCore.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |8020|: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
11:35:13.28858DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |10624|: C:\Program Files\ESET\ESET Security\eguiProxy.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |372|: \Device\HarddiskVolume4\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |2328|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21092.149.0_x64__8wekyb3d8bbwe\YourPhone.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |4348|: C:\Program Files\Riot Vanguard\vgtray.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |8176|: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21090.10008.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |20436|: C:\Windows\HelpPane.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |20596|: \Device\HarddiskVolume4\Program Files\PCHealthCheck\PCHealthCheck.exe
11:35:17.32558DC258ProcessInjector::HandlePendingProccesssprocess detection skipped |22552|: \Device\HarddiskVolume4\Program Files (x86)\Google\Chrome Remote Desktop\96.0.4664.39\remoting_host.exe