Time | Thread | Line | Function | Message |
10:47:09.49 | 1754 | 361 | ftw1 | Loading (pid: 7612) |
10:47:09.49 | 1530 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
10:47:09.81 | 1754 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XD5830000>6|2|1203373203 |
10:47:09.82 | 1754 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XD7210000>6|2|1203373081 |
10:47:09.380 | 1754 | 172 | DXManager::Detect | Found in 0 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0X4660|18016 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0X661F0|418288 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0X19DB0|105904 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0X1350|4944 |
10:47:09.383 | 1754 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XD5830000 <> 0XD7210000 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0XFE743020|-25939936 |
10:47:09.383 | 1754 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XD5830000 <> 0XD7210000 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0XFE748060|-25919392 |
10:47:09.383 | 1754 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XD5830000 <> 0XD7210000 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0XFE73E620|-25958880 |
10:47:09.383 | 1754 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XD5830000 <> 0XD7210000 |
10:47:09.383 | 1754 | 209 | Initialize::GetLocation | @ 0XFE62AA80|-27088256 |
10:47:09.506 | 1754 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X90270000>6|2|1203373142 |
10:47:09.712 | 1754 | 129 | DXManager::Detect | OK |
10:47:09.796 | 1754 | 186 | DXManager::Detect | Done |
10:47:09.796 | 1754 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
10:47:09.798 | 1754 | 209 | Initialize::GetLocation | @ 0X3AC00|240640 |
10:47:09.798 | 1754 | 209 | Initialize::GetLocation | @ 0X2C5B0|181680 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X36D00|224512 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XAE210|713232 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XADD60|712032 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X5880|22656 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XADE00|712192 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X20FF0|135152 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X1CA60|117344 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X1C8E0|116960 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X1086D0|1083088 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X108180|1081728 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X248B0|149680 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X247A0|149408 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X2C440|181312 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0X3F3F0|259056 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XF4E0|62688 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XF5D0|62928 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XF280|62080 |
10:47:09.799 | 1754 | 209 | Initialize::GetLocation | @ 0XF430|62512 |
10:47:09.964 | 1754 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XB1160000>6|2|1203372033 |
10:47:14.956 | 1754 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
10:47:14.957 | 1754 | 209 | Initialize::GetLocation | @ 0X3CC0|15552 |
10:47:14.957 | 1754 | 209 | Initialize::GetLocation | @ 0X5FD0|24528 |
10:47:14.957 | 1754 | 209 | Initialize::GetLocation | @ 0X6180|24960 |
10:47:15.129 | 1754 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XB1110000>6|2|1203372033 |
10:47:15.467 | 1754 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
10:47:15.578 | 1754 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
10:47:15.580 | 1754 | 209 | Initialize::GetLocation | @ 0X10000|65536 |
10:47:15.580 | 1754 | 209 | Initialize::GetLocation | @ 0X12C80|76928 |
10:47:15.580 | 1754 | 209 | Initialize::GetLocation | @ 0X12A60|76384 |
10:47:17.910 | 1754 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_83_1_7612 opened succesfuly |
10:47:17.910 | 1754 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
10:47:17.910 | 1754 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_83_1_7612 close 2147483647 bytes |
10:47:17.911 | 1754 | 297 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.162.0.13\OWExplorer.dll] |
10:47:19.717 | 1754 | 385 | ftw1 | OWExplorer injected |
10:47:24.62 | 2488 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
10:47:24.63 | 2488 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
10:47:24.63 | 2488 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
10:47:24.65 | 2488 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
10:47:24.653 | 2924 | 629 | ProcessInjector::InjectProcess | process |wsc_proxy.exe| missing h |
10:47:24.654 | 2924 | 629 | ProcessInjector::InjectProcess | process |RtkAudioService64.exe| missing h |
10:47:24.654 | 2924 | 629 | ProcessInjector::InjectProcess | process |RAVBg64.exe| missing h |
10:47:25.25 | 2924 | 629 | ProcessInjector::InjectProcess | process |RAVBg64.exe| missing h |
10:47:25.192 | 2924 | 629 | ProcessInjector::InjectProcess | process |AVGSvc.exe| missing h |
10:47:25.192 | 2924 | 629 | ProcessInjector::InjectProcess | process |avgToolsSvc.exe| missing h |
10:47:25.192 | 2924 | 629 | ProcessInjector::InjectProcess | process |TuneupSvc.exe| missing h |
10:47:25.192 | 2924 | 629 | ProcessInjector::InjectProcess | process |aswEngSrv.exe| missing h |
10:47:25.236 | 2924 | 629 | ProcessInjector::InjectProcess | process |aswidsagent.exe| missing h |
10:47:25.286 | 2924 | 629 | ProcessInjector::InjectProcess | process |AvEmUpdate.exe| missing h |
10:47:25.286 | 2924 | 629 | ProcessInjector::InjectProcess | process |DDVRulesProcessor.exe| missing h |
10:47:25.286 | 2924 | 629 | ProcessInjector::InjectProcess | process |DropboxUpdate.exe| missing h |
10:47:25.562 | 2924 | 629 | ProcessInjector::InjectProcess | process |LMS.exe| missing h |
10:47:25.607 | 2924 | 629 | ProcessInjector::InjectProcess | process |RichVideo.exe| missing h |
10:47:25.607 | 2924 | 629 | ProcessInjector::InjectProcess | process |DDVDataCollector.exe| missing h |
10:47:25.608 | 2924 | 629 | ProcessInjector::InjectProcess | process |DDVCollectorSvcApi.exe| missing h |
10:47:25.608 | 2924 | 629 | ProcessInjector::InjectProcess | process |instup.exe| missing h |
10:47:25.654 | 2924 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
10:47:53.601 | 2924 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
10:48:10.106 | 2924 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
10:48:34.576 | 2924 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
10:49:52.556 | 2924 | 468 | ProcessInjector::DoElevetedInjection | Failed to inject process [12576] 0x57 |
10:49:52.556 | 2924 | 424 | ProcessInjector::HandleElevatedProcess | Fail injection to process (will retry again in 5 ses) [12576] [t: 9252 w_t_id: 9252]- owver64.exe (elevated True) 0x57 |
10:49:55.556 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1856] [t: 0 w_t_id: 0]- aswidsagent.exe (elevated True) 0x0 |
10:49:55.556 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1856|: aswidsagent.exe |
10:49:55.556 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2316] [t: 0 w_t_id: 0]- AvEmUpdate.exe (elevated True) 0x0 |
10:49:55.556 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2316|: AvEmUpdate.exe |
10:49:55.556 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2452] [t: 0 w_t_id: 0]- wsc_proxy.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2452|: wsc_proxy.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3208] [t: 0 w_t_id: 0]- RtkAudioService64.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3208|: RtkAudioService64.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3880] [t: 0 w_t_id: 0]- AVGSvc.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3880|: AVGSvc.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4100] [t: 0 w_t_id: 0]- avgToolsSvc.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4100|: avgToolsSvc.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4688] [t: 0 w_t_id: 0]- TuneupSvc.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4688|: TuneupSvc.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6688] [t: 0 w_t_id: 0]- aswEngSrv.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6688|: aswEngSrv.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7144] [t: 0 w_t_id: 0]- DropboxUpdate.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7144|: DropboxUpdate.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8472] [t: 0 w_t_id: 0]- DDVRulesProcessor.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8472|: DDVRulesProcessor.exe |
10:49:55.557 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10772] [t: 0 w_t_id: 0]- LMS.exe (elevated True) 0x0 |
10:49:55.557 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10772|: LMS.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [316] [t: 0 w_t_id: 0]- UnityCrashHandler64.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |316|: UnityCrashHandler64.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5368] [t: 0 w_t_id: 0]- DDVDataCollector.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5368|: DDVDataCollector.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6440] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6440|: MicrosoftEdgeUpdate.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7900] [t: 0 w_t_id: 0]- AVGUI.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7900|: AVGUI.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11800] [t: 0 w_t_id: 0]- PlariumPlay.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11800|: PlariumPlay.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11876] [t: 0 w_t_id: 0]- DDVCollectorSvcApi.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11876|: DDVCollectorSvcApi.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11892] [t: 0 w_t_id: 0]- PlariumPlay.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11892|: PlariumPlay.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12124] [t: 0 w_t_id: 0]- RichVideo.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12124|: RichVideo.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12280] [t: 0 w_t_id: 0]- AVGUI.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12280|: AVGUI.exe |
10:49:56.558 | 2924 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12820] [t: 0 w_t_id: 0]- instup.exe (elevated True) 0x0 |
10:49:56.558 | 2924 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12820|: instup.exe |