Time | Thread | Line | Function | Message |
09:52:44.541 | B38 | 365 | ftw1 | Loading (pid: 13780) |
09:52:44.544 | B38 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XEE280000>6|2|1203372419 |
09:52:44.544 | B38 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XEFEE0000>6|2|1203372847 |
09:52:44.546 | 2130 | 147 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
09:52:44.574 | B38 | 172 | DXManager::Detect | Found in 0 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0X4670|18032 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0X66400|418816 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0X19DE0|105952 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0X1350|4944 |
09:52:44.575 | B38 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XEE280000 <> 0XEFEE0000 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0XFE4C2E80|-28561792 |
09:52:44.575 | B38 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XEE280000 <> 0XEFEE0000 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0XFE4C7F80|-28541056 |
09:52:44.575 | B38 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XEE280000 <> 0XEFEE0000 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0XFE4BE620|-28580320 |
09:52:44.575 | B38 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XEE280000 <> 0XEFEE0000 |
09:52:44.575 | B38 | 209 | Initialize::GetLocation | @ 0XFE3AAD10|-29709040 |
09:52:44.585 | B38 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XD0D70000>6|2|1203372419 |
09:52:44.606 | B38 | 129 | DXManager::Detect | OK |
09:52:44.618 | B38 | 186 | DXManager::Detect | Done |
09:52:44.618 | B38 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X3AC00|240640 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X2C5B0|181680 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X36D00|224512 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XAE020|712736 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XADB70|711536 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X5880|22656 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XADC10|711696 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X20FF0|135152 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X1CA60|117344 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X1C8E0|116960 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X1084E0|1082592 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X107F90|1081232 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X248B0|149680 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X247A0|149408 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X2C440|181312 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0X3F210|258576 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XF4E0|62688 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XF5D0|62928 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XF280|62080 |
09:52:44.618 | B38 | 209 | Initialize::GetLocation | @ 0XF430|62512 |
09:52:44.627 | B38 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XCEFE0000>6|2|1203372033 |
09:52:44.711 | B38 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
09:52:44.711 | B38 | 209 | Initialize::GetLocation | @ 0X3CC0|15552 |
09:52:44.711 | B38 | 209 | Initialize::GetLocation | @ 0X5FD0|24528 |
09:52:44.711 | B38 | 209 | Initialize::GetLocation | @ 0X6180|24960 |
09:52:44.712 | B38 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XCD8A0000>6|2|1203372033 |
09:52:44.733 | B38 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
09:52:44.734 | B38 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
09:52:44.734 | B38 | 209 | Initialize::GetLocation | @ 0X10000|65536 |
09:52:44.734 | B38 | 209 | Initialize::GetLocation | @ 0X12C80|76928 |
09:52:44.734 | B38 | 209 | Initialize::GetLocation | @ 0X12A60|76384 |
09:52:44.786 | B38 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_85_4_13780 opened succesfuly |
09:52:44.786 | B38 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
09:52:44.786 | B38 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_85_4_13780 close 2147483647 bytes |
09:52:44.787 | B38 | 301 | InjectOWExplorer | Explorer file name [C:\Users\User\Desktop\Overwolf\0.169.0.22\OWExplorer.dll] |
09:52:44.800 | B38 | 389 | ftw1 | OWExplorer injected |
09:52:44.806 | 2E60 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
09:52:45.44 | 35E0 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
09:52:45.44 | 35E0 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
09:52:45.44 | 35E0 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
09:52:45.44 | 35E0 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
09:52:45.54 | 2C70 | 669 | ProcessInjector::InjectProcess | process |EvtEng.exe| missing h |
09:52:45.54 | 2C70 | 669 | ProcessInjector::InjectProcess | process |mDNSResponder.exe| missing h |
09:52:45.54 | 2C70 | 669 | ProcessInjector::InjectProcess | process |gameinputsvc.exe| missing h |
09:52:45.54 | 2C70 | 669 | ProcessInjector::InjectProcess | process |gameinputsvc.exe| missing h |
09:52:45.54 | 2C70 | 669 | ProcessInjector::InjectProcess | process |servicehost.exe| missing h |
09:52:45.54 | 2C70 | 669 | ProcessInjector::InjectProcess | process |rtop_svc.exe| missing h |
09:52:45.55 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GamingServicesNet.exe| missing h |
09:52:45.58 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GamingServices.exe| missing h |
09:52:45.62 | 2C70 | 669 | ProcessInjector::InjectProcess | process |IAStorDataMgrSvc.exe| missing h |
09:52:45.62 | 2C70 | 669 | ProcessInjector::InjectProcess | process |ChromiumUpdate.exe| missing h |
09:52:45.62 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleCrashHandler.exe| missing h |
09:52:45.62 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleCrashHandler64.exe| missing h |
09:52:45.62 | 2C70 | 669 | ProcessInjector::InjectProcess | process |LMS.exe| missing h |
09:52:45.62 | 2C70 | 669 | ProcessInjector::InjectProcess | process |DiscoverySrv.exe| missing h |
09:52:45.188 | 2C70 | 669 | ProcessInjector::InjectProcess | process |parsecd.exe| missing h |
09:53:34.912 | 2C70 | 669 | ProcessInjector::InjectProcess | process |WatchDog.exe| missing h |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1360] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1360|: GoogleCrashHandler.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4112] [t: 0 w_t_id: 0]- EvtEng.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4112|: EvtEng.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4120] [t: 0 w_t_id: 0]- mDNSResponder.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4120|: mDNSResponder.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4152] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4152|: gameinputsvc.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4628] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4628|: gameinputsvc.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4796] [t: 0 w_t_id: 0]- servicehost.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4796|: servicehost.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5020] [t: 0 w_t_id: 0]- rtop_svc.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5020|: rtop_svc.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6772] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6772|: GoogleCrashHandler64.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7036] [t: 0 w_t_id: 0]- uihost.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7036|: uihost.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8148] [t: 0 w_t_id: 0]- DiscoverySrv.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8148|: DiscoverySrv.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8304] [t: 0 w_t_id: 0]- IAStorDataMgrSvc.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8304|: IAStorDataMgrSvc.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8336] [t: 0 w_t_id: 0]- ChromiumUpdate.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8336|: ChromiumUpdate.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8968] [t: 0 w_t_id: 0]- LMS.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8968|: LMS.exe |
09:55:15.757 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12832] [t: 0 w_t_id: 0]- FAHWindow64.exe (elevated True) 0x0 |
09:55:15.757 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12832|: FAHWindow64.exe |
09:56:26.769 | 2C70 | 386 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16356] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
09:56:26.769 | 2C70 | 318 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16356|: owobs-ffmpeg-mux.exe |
09:57:25.897 | 2C70 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
09:57:27.982 | 2C70 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
10:13:54.925 | 2C70 | 669 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
10:26:52.20 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
10:31:27.252 | 2C70 | 669 | ProcessInjector::InjectProcess | process |ChromiumUpdate.exe| missing h |
10:43:41.749 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
10:51:21.49 | 2C70 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
11:26:52.364 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
11:31:29.515 | 2C70 | 669 | ProcessInjector::InjectProcess | process |ChromiumUpdate.exe| missing h |
11:43:41.941 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
11:51:21.167 | 2C70 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
12:43:41.551 | 2C70 | 669 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
12:51:21.431 | 2C70 | 669 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |