TimeThreadLineFunctionMessage
14:28:22.60830CC361ftw1Loading (pid: 8204)
14:28:22.6083B78146ProcessHardwareRecorder::CommandThreadstarting recorder thread
14:28:22.61030CC48Update::DetectEnv (C:\Windows\SYSTEM32\d3d11.dll) <0X338C0000>6|2|1203373203
14:28:22.61030CC48Update::DetectEnv (C:\Windows\SYSTEM32\dxgi.dll) <0X35380000>6|2|1203373081
14:28:22.68130CC172DXManager::DetectFound in 0
14:28:22.68230CC209Initialize::GetLocation@ 0X4660|18016
14:28:22.68230CC209Initialize::GetLocation@ 0X661F0|418288
14:28:22.68230CC209Initialize::GetLocation@ 0X19DB0|105904
14:28:22.68230CC209Initialize::GetLocation@ 0X1350|4944
14:28:22.68230CC111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X338C0000 <> 0X35380000
14:28:22.68230CC209Initialize::GetLocation@ 0XFE663020|-26857440
14:28:22.68230CC111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X338C0000 <> 0X35380000
14:28:22.68230CC209Initialize::GetLocation@ 0XFE668060|-26836896
14:28:22.68230CC111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X338C0000 <> 0X35380000
14:28:22.68230CC209Initialize::GetLocation@ 0XFE65E620|-26876384
14:28:22.68230CC111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X338C0000 <> 0X35380000
14:28:22.68230CC209Initialize::GetLocation@ 0XFE54AA80|-28005760
14:28:22.68730CC48Update::DetectEnv (C:\Windows\SYSTEM32\d3d9.dll) <0X28380000>6|2|1203373142
14:28:22.71830CC129DXManager::DetectOK
14:28:22.73830CC186DXManager::DetectDone
14:28:22.73830CC215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
14:28:22.73830CC209Initialize::GetLocation@ 0X3AC00|240640
14:28:22.73830CC209Initialize::GetLocation@ 0X2C5B0|181680
14:28:22.73830CC209Initialize::GetLocation@ 0X36D00|224512
14:28:22.73830CC209Initialize::GetLocation@ 0XAE210|713232
14:28:22.73830CC209Initialize::GetLocation@ 0XADD60|712032
14:28:22.73830CC209Initialize::GetLocation@ 0X5880|22656
14:28:22.73830CC209Initialize::GetLocation@ 0XADE00|712192
14:28:22.73830CC209Initialize::GetLocation@ 0X20FF0|135152
14:28:22.73830CC209Initialize::GetLocation@ 0X1CA60|117344
14:28:22.73830CC209Initialize::GetLocation@ 0X1C8E0|116960
14:28:22.73830CC209Initialize::GetLocation@ 0X1086D0|1083088
14:28:22.73830CC209Initialize::GetLocation@ 0X108180|1081728
14:28:22.73830CC209Initialize::GetLocation@ 0X248B0|149680
14:28:22.73830CC209Initialize::GetLocation@ 0X247A0|149408
14:28:22.73830CC209Initialize::GetLocation@ 0X2C440|181312
14:28:22.73830CC209Initialize::GetLocation@ 0X3F3F0|259056
14:28:22.73830CC209Initialize::GetLocation@ 0XF3E0|62432
14:28:22.73830CC209Initialize::GetLocation@ 0XF4E0|62688
14:28:22.73830CC209Initialize::GetLocation@ 0XF5D0|62928
14:28:22.73830CC209Initialize::GetLocation@ 0XF3E0|62432
14:28:22.73830CC209Initialize::GetLocation@ 0XF280|62080
14:28:22.73830CC209Initialize::GetLocation@ 0XF430|62512
14:28:22.75930CC48Update::DetectEnv (C:\Windows\SYSTEM32\dinput.dll) <0X16D10000>6|2|1203372033
14:28:22.77030CC83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
14:28:22.77030CC209Initialize::GetLocation@ 0X3CC0|15552
14:28:22.77030CC209Initialize::GetLocation@ 0X5FD0|24528
14:28:22.77030CC209Initialize::GetLocation@ 0X6180|24960
14:28:22.77230CC48Update::DetectEnv (C:\Windows\SYSTEM32\dinput8.dll) <0X6400000>6|2|1203372033
14:28:22.78330CC93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
14:28:22.78530CC110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
14:28:22.78530CC209Initialize::GetLocation@ 0X10000|65536
14:28:22.78530CC209Initialize::GetLocation@ 0X12C80|76928
14:28:22.78530CC209Initialize::GetLocation@ 0X12A60|76384
14:28:22.83830CC225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_82_5_8204 opened succesfuly
14:28:22.83830CC72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
14:28:22.83830CC256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_82_5_8204 close 2147483647 bytes
14:28:22.83830CC297InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.159.0.24\OWExplorer.dll]
14:28:22.91730CC385ftw1OWExplorer injected
14:28:23.323409451`anonymous-namespace'::CreateProviderInitialize provider: NET
14:28:23.3234094117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
14:28:23.323409454`anonymous-namespace'::CreateProviderFail to initlized provider: NET
14:28:23.323409451`anonymous-namespace'::CreateProviderInitialize provider: GPU
14:28:23.3746BC629ProcessInjector::InjectProcessprocess |gameinputsvc.exe| missing h
14:28:23.3746BC629ProcessInjector::InjectProcessprocess |Sendevsvc.exe| missing h
14:28:23.3746BC629ProcessInjector::InjectProcessprocess |gameinputsvc.exe| missing h
14:28:23.3746BC629ProcessInjector::InjectProcessprocess |MSI.CentralServer.exe| missing h
14:28:23.4626BC629ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
14:28:23.4626BC629ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
14:28:23.6816BC629ProcessInjector::InjectProcessprocess |IAStorDataMgrSvc.exe| missing h
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [2712] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |2712|: NVDisplay.Container.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [5184] [t: 0 w_t_id: 0]- agent_ovpnconnect_1594367036109.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5184|: agent_ovpnconnect_1594367036109.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [5224] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5224|: gameinputsvc.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [5472] [t: 0 w_t_id: 0]- Sendevsvc.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5472|: Sendevsvc.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [5488] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5488|: gameinputsvc.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [5600] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5600|: nvcontainer.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [5756] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5756|: MsMpEng.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [7572] [t: 0 w_t_id: 0]- MSI.CentralServer.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |7572|: MSI.CentralServer.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [11656] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11656|: GoogleCrashHandler.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [11720] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11720|: GoogleCrashHandler64.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [12808] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |12808|: NVIDIA Share.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [13684] [t: 0 w_t_id: 0]- TslGame.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |13684|: TslGame.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [14284] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14284|: NVIDIA Share.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [17412] [t: 0 w_t_id: 0]- IAStorDataMgrSvc.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |17412|: IAStorDataMgrSvc.exe
14:30:53.9136BC441ProcessInjector::HandleElevatedProcessFail injection to process [18184] [t: 0 w_t_id: 0]- ExecPubg.exe (elevated True) 0x0
14:30:53.9136BC380ProcessInjector::HandlePendingProccesssFail to inject pending process |18184|: ExecPubg.exe
14:33:18.9116BC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:35:37.9086BC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:35:37.9086BC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:57:30.9736BC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:57:32.236BC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:57:32.236BC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
13:09:48.9036BC629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
13:09:48.9036BC629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:09:52.8976BC629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:09:56.8996BC629ProcessInjector::InjectProcessprocess |MSI.CentralServer.exe| missing h
13:10:12.9886BC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:10:21.8936BC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:10:25.8946BC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:10:48.8946BC629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
13:11:20.8946BC629ProcessInjector::InjectProcessprocess |ServiceSwitch.exe| missing h
13:11:40.8916BC629ProcessInjector::InjectProcessprocess |EasyAntiCheat.exe| missing h
13:12:48.8866BC629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
13:13:22.51830CC66ProcessesMonitor::Stopstopping PM...
13:13:22.5184094119ProcessesMonitor::ProcessEnumerateThreadexit process listener
13:13:22.52030CC526ProcessInjector::Unhookunhook running process
13:13:28.55030CC66ProcessesMonitor::Stopstopping PM...