TimeThreadLineFunctionMessage
14:53:47.3001E18365ftw1Loading (pid: 15612)
14:53:47.3003CB4147ProcessHardwareRecorder::CommandThreadstarting recorder thread
14:53:47.3021E1848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X4B560000>6|2|1247871722
14:53:47.3021E1848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X4DE10000>6|2|1247871940
14:53:47.4181E18172DXManager::DetectFound in 0
14:53:47.4181E18209Initialize::GetLocation@ 0X59E0|23008
14:53:47.4181E18209Initialize::GetLocation@ 0X6AE20|437792
14:53:47.4181E18209Initialize::GetLocation@ 0X211E0|135648
14:53:47.4181E18209Initialize::GetLocation@ 0X2840|10304
14:53:47.4181E18111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X4B560000 <> 0X4DE10000
14:53:47.4181E18209Initialize::GetLocation@ 0XFD878860|-41449376
14:53:47.4181E18111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X4B560000 <> 0X4DE10000
14:53:47.4181E18209Initialize::GetLocation@ 0XFD87DC30|-41427920
14:53:47.4181E18111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X4B560000 <> 0X4DE10000
14:53:47.4181E18209Initialize::GetLocation@ 0XFD87C5F0|-41433616
14:53:47.4181E18111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X4B560000 <> 0X4DE10000
14:53:47.4181E18209Initialize::GetLocation@ 0XFD75A7F0|-42620944
14:53:47.4291E1848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X414C0000>6|2|1247871904
14:53:47.5171E18129DXManager::DetectOK
14:53:47.5541E18186DXManager::DetectDone
14:53:47.5541E18215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
14:53:47.5551E18209Initialize::GetLocation@ 0X41090|266384
14:53:47.5551E18209Initialize::GetLocation@ 0X33320|209696
14:53:47.5551E18209Initialize::GetLocation@ 0X3CBC0|248768
14:53:47.5551E18209Initialize::GetLocation@ 0XB76A0|751264
14:53:47.5551E18209Initialize::GetLocation@ 0XB71F0|750064
14:53:47.5551E18209Initialize::GetLocation@ 0XA1F0|41456
14:53:47.5551E18209Initialize::GetLocation@ 0XB7290|750224
14:53:47.5551E18209Initialize::GetLocation@ 0X1ABB0|109488
14:53:47.5551E18209Initialize::GetLocation@ 0X1D600|120320
14:53:47.5551E18209Initialize::GetLocation@ 0X25C30|154672
14:53:47.5551E18209Initialize::GetLocation@ 0X113920|1128736
14:53:47.5551E18209Initialize::GetLocation@ 0X1133E0|1127392
14:53:47.5551E18209Initialize::GetLocation@ 0X1AAA0|109216
14:53:47.5551E18209Initialize::GetLocation@ 0X1A9B0|108976
14:53:47.5551E18209Initialize::GetLocation@ 0XCB80|52096
14:53:47.5551E18209Initialize::GetLocation@ 0X48030|294960
14:53:47.5551E18209Initialize::GetLocation@ 0X9D60|40288
14:53:47.5551E18209Initialize::GetLocation@ 0XCE890|845968
14:53:47.5551E18209Initialize::GetLocation@ 0XCEF60|847712
14:53:47.5551E18209Initialize::GetLocation@ 0X9D60|40288
14:53:47.5551E18209Initialize::GetLocation@ 0XCFA50|850512
14:53:47.5551E18209Initialize::GetLocation@ 0XD00B0|852144
14:53:47.5661E1848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0XD9C50000>6|2|1247870977
14:53:47.5791E1883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
14:53:47.5801E18209Initialize::GetLocation@ 0X4040|16448
14:53:47.5801E18209Initialize::GetLocation@ 0X6410|25616
14:53:47.5801E18209Initialize::GetLocation@ 0X65C0|26048
14:53:47.5811E1848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XD9C00000>6|2|1247870977
14:53:47.5901E1893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
14:53:47.5901E18110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
14:53:47.5901E18209Initialize::GetLocation@ 0XA5D0|42448
14:53:47.5901E18209Initialize::GetLocation@ 0XD4D0|54480
14:53:47.5901E18209Initialize::GetLocation@ 0XD290|53904
14:53:47.6511E18225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_85_4_15612 opened succesfuly
14:53:47.6511E1872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
14:53:47.6511E18256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_85_4_15612 close 2147483647 bytes
14:53:47.6511E18301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.170.0.13\OWExplorer.dll]
14:53:47.6581E18389ftw1OWExplorer injected
14:53:47.658425C71Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
14:53:47.9713D0451`anonymous-namespace'::CreateProviderInitialize provider: NET
14:53:47.9713D04117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
14:53:47.9713D0454`anonymous-namespace'::CreateProviderFail to initlized provider: NET
14:53:47.9713D0451`anonymous-namespace'::CreateProviderInitialize provider: GPU
14:53:47.9814324669ProcessInjector::InjectProcessprocess |gxxsvc.exe| missing h
14:53:48.414324669ProcessInjector::InjectProcessprocess |mDNSResponder.exe| missing h
14:53:48.414324669ProcessInjector::InjectProcessprocess |WireHelperSvc.exe| missing h
14:53:48.1864324669ProcessInjector::InjectProcessprocess |tv_w32.exe| missing h
14:53:48.1864324669ProcessInjector::InjectProcessprocess |tv_x64.exe| missing h
14:53:48.1864324669ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
14:53:48.1864324669ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
14:55:11.3524324669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [2148] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |2148|: NVDisplay.Container.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [2332] [t: 0 w_t_id: 0]- gxxsvc.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |2332|: gxxsvc.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [3800] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |3800|: tv_w32.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [4600] [t: 0 w_t_id: 0]- mDNSResponder.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |4600|: mDNSResponder.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [4628] [t: 0 w_t_id: 0]- WireHelperSvc.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |4628|: WireHelperSvc.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [4796] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |4796|: nvcontainer.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [8828] [t: 0 w_t_id: 0]- Glorious Core.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |8828|: Glorious Core.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [10004] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |10004|: tv_x64.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [10596] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |10596|: GoogleCrashHandler.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [10608] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |10608|: GoogleCrashHandler64.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [11452] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |11452|: NVIDIA Share.exe
14:56:18.8564324386ProcessInjector::HandleElevatedProcessFail injection to process [12160] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
14:56:18.8564324318ProcessInjector::HandlePendingProccesssFail to inject pending process |12160|: NVIDIA Share.exe
14:58:44.514324669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
15:45:12.7094324669ProcessInjector::InjectProcessprocess |gxxsvc.exe| missing h
15:47:42.9684324386ProcessInjector::HandleElevatedProcessFail injection to process [2960] [t: 0 w_t_id: 0]- gxxsvc.exe (elevated True) 0x0
15:47:42.9684324318ProcessInjector::HandlePendingProccesssFail to inject pending process |2960|: gxxsvc.exe
16:19:48.954324669ProcessInjector::InjectProcessprocess |nvcontainer.exe| missing h
16:19:50.1094324669ProcessInjector::InjectProcessprocess |nvcontainer.exe| missing h
16:21:13.614425C76Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
16:21:13.6771E1866ProcessesMonitor::Stopstopping PM...
16:21:13.6773D04119ProcessesMonitor::ProcessEnumerateThreadexit process listener
16:21:13.6781E18527ProcessInjector::Unhookunhook running process