Time | Thread | Line | Function | Message |
14:11:12.847 | 694 | 74 | GameListService::CreateProcessMap | loading game list... |
14:11:12.854 | 694 | 88 | GameListService::CreateProcessMap | 1016, 2 loaded |
14:11:12.856 | 694 | 369 | ftw1 | Loading (pid: 5920) |
14:11:12.860 | 694 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XCE6C0000>6|2|1441792527 |
14:11:12.860 | 694 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XE8690000>6|2|1441792593 |
14:11:13.290 | 694 | 173 | DXManager::Detect | Found in 0 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0X14D0|5328 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0X1640|5696 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0X27B80|162688 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0X5540|21824 |
14:11:13.291 | 694 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XCE6C0000 <> 0XE8690000 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0XE615DD10|-434774768 |
14:11:13.291 | 694 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XCE6C0000 <> 0XE8690000 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0XE6162F80|-434753664 |
14:11:13.291 | 694 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XCE6C0000 <> 0XE8690000 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0XE6161420|-434760672 |
14:11:13.291 | 694 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XCE6C0000 <> 0XE8690000 |
14:11:13.291 | 694 | 209 | Initialize::GetLocation | @ 0XE60398A0|-435971936 |
14:11:13.335 | 694 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X98670000>6|2|1441792120 |
14:11:13.508 | 694 | 129 | DXManager::Detect | OK |
14:11:13.553 | 694 | 186 | DXManager::Detect | Done |
14:11:13.554 | 694 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4030 , 0x55a0 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X45F40|286528 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X33490|210064 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X40870|264304 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0XBC6B0|771760 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0XBC200|770560 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0XBED0|48848 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0XBC2A0|770720 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X31360|201568 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X22D80|142720 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X22BD0|142288 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X4F800|325632 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0XFBEF0|1031920 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X31620|202272 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X31240|201280 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X33320|209696 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X4A460|304224 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X8AB0|35504 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X3A180|237952 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X3AA10|240144 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X8AB0|35504 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X39D80|236928 |
14:11:13.555 | 694 | 209 | Initialize::GetLocation | @ 0X3A4E0|238816 |
14:11:13.689 | 694 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XA6D40000>6|2|1441792001 |
14:11:13.755 | 694 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
14:11:13.756 | 694 | 209 | Initialize::GetLocation | @ 0X3760|14176 |
14:11:13.756 | 694 | 209 | Initialize::GetLocation | @ 0X69C0|27072 |
14:11:13.756 | 694 | 209 | Initialize::GetLocation | @ 0X6780|26496 |
14:11:13.831 | 694 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XA38D0000>6|2|1441792001 |
14:11:13.847 | 694 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
14:11:13.848 | 694 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
14:11:13.848 | 694 | 209 | Initialize::GetLocation | @ 0XAF80|44928 |
14:11:13.848 | 694 | 209 | Initialize::GetLocation | @ 0XDFD0|57296 |
14:11:13.848 | 694 | 209 | Initialize::GetLocation | @ 0XDD90|56720 |
14:11:13.949 | 694 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_1945920 opened succesfuly |
14:11:13.949 | 694 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4030 , 0x55a0 |
14:11:13.949 | 694 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_1945920 close 2147483647 bytes |
14:11:13.949 | 694 | 305 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.194.0.15\OWExplorer.dll] |
14:11:13.985 | 694 | 393 | ftw1 | OWExplorer injected |
14:11:13.986 | 4DF4 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |104| (w: 0x0): |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |168| (w: 0x0): Registry |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |1044| (w: 0x0): C:\Program Files\PowerToys\PowerToys.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |2792| (w: 0x0): MemCompression |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |3132| (w: 0x0): C:\Program Files\PowerToys\modules\AlwaysOnTop\PowerToys.AlwaysOnTop.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |3720| (w: 0x0): \Device\HarddiskVolume3\Program Files\Bonjour\mDNSResponder.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |4032| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |4048| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |4112| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |4300| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |4360| (w: 0x0): C:\Users\Yuki\AppData\Local\GitHubDesktop\app-2.9.12\GitHubDesktop.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |4940| (w: 0x0): C:\Users\Yuki\AppData\Local\GitHubDesktop\app-2.9.12\GitHubDesktop.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |5180| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |5424| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |6152| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |6808| (w: 0x0): \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\MfeAVSvc.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |7552| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |7652| (w: 0x0): \Device\HarddiskVolume3\Program Files\WindowsApps\Microsoft.GamingServices_3.63.22003.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |7680| (w: 0x0): \Device\HarddiskVolume3\Program Files\WindowsApps\Microsoft.GamingServices_3.63.22003.0_x64__8wekyb3d8bbwe\gamingservices.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |8140| (w: 0x0): C:\Program Files (x86)\Fujitsu\SptNavi\EzCheckPC.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |8648| (w: 0x0): C:\Program Files\PowerShell\7\pwsh.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |9024| (w: 0x0): C:\Users\Yuki\AppData\Local\Packages\Microsoft.4297127D64EC6_8wekyb3d8bbwe\LocalCache\Local\Microsoft\WritablePackageRoot\Minecraft.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |9316| (w: 0x0): C:\Users\Yuki\AppData\Local\GitHubDesktop\app-2.9.12\GitHubDesktop.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |9500| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |9948| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |9996| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |10520| (w: 0x0): C:\Program Files\PowerToys\modules\launcher\PowerToys.PowerLauncher.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |10568| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |10584| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |10604| (w: 0x0): \Device\HarddiskVolume3\Program Files\McAfee\MQS\QcShm.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |10792| (w: 0x0): C:\Program Files\WindowsApps\96e699ba.batteryutility_5.0.8.0_x64__7shgd1s8y1app\BatteryAid2\BatteryDaemon.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |10816| (w: 0x0): C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt\IGCC.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |11480| (w: 0x0): C:\Program Files\McAfee\MSC\MfeBrowserHost.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |11644| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.22021.10291.0_x64__8wekyb3d8bbwe\Video.UI.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |12368| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |12668| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |12688| (w: 0x0): C:\Program Files\PowerToys\modules\FancyZones\PowerToys.FancyZones.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |12920| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |13724| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |13784| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |14504| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |14644| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |15704| (w: 0x0): \Device\HarddiskVolume3\Program Files\Fujitsu\chitose\updnvsrv.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |15828| (w: 0x0): C:\Program Files\PowerToys\modules\Awake\PowerToys.Awake.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |16072| (w: 0x0): C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_2021.5.0.0_x64__v826wp6bftszj\TranslucentTB.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |16256| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |16412| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |16460| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |16484| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |16900| (w: 0x0): C:\Program Files\Google\Drive File Stream\56.0.7.0\crashpad_handler.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |17100| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |17240| (w: 0x0): C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |17272| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |17316| (w: 0x0): C:\Program Files\PowerToys\modules\ColorPicker\PowerToys.ColorPickerUI.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18020| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18168| (w: 0x0): \Device\HarddiskVolume3\Program Files\SoftEther VPN Client\vpnclient_x64.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18188| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18196| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18520| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Fujitsu\SptNavi\EzInfoSvc.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18772| (w: 0x0): C:\Users\Yuki\AppData\Local\Packages\Microsoft.4297127D64EC6_8wekyb3d8bbwe\LocalCache\Local\Microsoft\WritablePackageRoot\Minecraft.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18832| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |18976| (w: 0x0): C:\Users\Yuki\AppData\Local\Packages\Microsoft.4297127D64EC6_8wekyb3d8bbwe\LocalCache\Local\Microsoft\WritablePackageRoot\Minecraft.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |19744| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |20160| (w: 0x0): C:\Program Files\McAfee\MQS\QcShm.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |20176| (w: 0x0): C:\Users\Yuki\AppData\Local\Programs\Microsoft VS Code\Code.exe |
14:13:14.997 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |20396| (w: 0x0): C:\Users\Yuki\AppData\Local\Packages\Microsoft.4297127D64EC6_8wekyb3d8bbwe\LocalCache\Local\Microsoft\WritablePackageRoot\Minecraft.exe |
14:15:18.984 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |15004| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:15:40.171 | 247C | 620 | ProcessInjector::InjectExplorerToProcess | Injected to process 18732 [mt 11400] 0x1e0b0c |
14:16:51.372 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |8300| (w: 0x0): C:\Program Files\WindowsApps\microsoft.xboxgamingoverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
14:17:09.849 | 247C | 293 | ProcessInjector::HandlePendingProccesss | process detection skipped |15276| (w: 0x0): C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe |
14:19:23.700 | 4DF4 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
14:19:24.332 | 694 | 66 | ProcessesMonitor::Stop | stopping PM... |
14:19:24.332 | 2154 | 126 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
14:19:24.336 | 694 | 428 | ProcessInjector::Unhook | unhook running process |
14:19:30.348 | 694 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |