TimeThreadLineFunctionMessage
13:59:18.41043C0365ftw1Loading (pid: 13864)
13:59:18.41243EC147ProcessHardwareRecorder::CommandThreadstarting recorder thread
13:59:18.41243C048Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X746E0000>6|2|1247871722
13:59:18.41243C048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X76F90000>6|2|1247871940
13:59:18.66143C0172DXManager::DetectFound in 0
13:59:18.66543C0209Initialize::GetLocation@ 0X59E0|23008
13:59:18.66543C0209Initialize::GetLocation@ 0X6AE20|437792
13:59:18.66543C0209Initialize::GetLocation@ 0X211E0|135648
13:59:18.66543C0209Initialize::GetLocation@ 0X2840|10304
13:59:18.66543C0111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X746E0000 <> 0X76F90000
13:59:18.66543C0209Initialize::GetLocation@ 0XFD878860|-41449376
13:59:18.66543C0111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X746E0000 <> 0X76F90000
13:59:18.66543C0209Initialize::GetLocation@ 0XFD87DC30|-41427920
13:59:18.66543C0111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X746E0000 <> 0X76F90000
13:59:18.66543C0209Initialize::GetLocation@ 0XFD87C5F0|-41433616
13:59:18.66543C0111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X746E0000 <> 0X76F90000
13:59:18.66543C0209Initialize::GetLocation@ 0XFD75A7F0|-42620944
13:59:18.70643C048Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X6FD40000>6|2|1247871904
13:59:19.643C0129DXManager::DetectOK
13:59:19.15443C0186DXManager::DetectDone
13:59:19.15443C0215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
13:59:19.15443C0209Initialize::GetLocation@ 0X41090|266384
13:59:19.15443C0209Initialize::GetLocation@ 0X33320|209696
13:59:19.15443C0209Initialize::GetLocation@ 0X3CBC0|248768
13:59:19.15443C0209Initialize::GetLocation@ 0XB76A0|751264
13:59:19.15443C0209Initialize::GetLocation@ 0XB71F0|750064
13:59:19.15443C0209Initialize::GetLocation@ 0XA1F0|41456
13:59:19.15443C0209Initialize::GetLocation@ 0XB7290|750224
13:59:19.15443C0209Initialize::GetLocation@ 0X1ABB0|109488
13:59:19.15443C0209Initialize::GetLocation@ 0X1D600|120320
13:59:19.15443C0209Initialize::GetLocation@ 0X25C30|154672
13:59:19.15443C0209Initialize::GetLocation@ 0X113920|1128736
13:59:19.15443C0209Initialize::GetLocation@ 0X1133E0|1127392
13:59:19.15443C0209Initialize::GetLocation@ 0X1AAA0|109216
13:59:19.15443C0209Initialize::GetLocation@ 0X1A9B0|108976
13:59:19.15443C0209Initialize::GetLocation@ 0XCB80|52096
13:59:19.15443C0209Initialize::GetLocation@ 0X48030|294960
13:59:19.15443C0209Initialize::GetLocation@ 0X9D60|40288
13:59:19.15443C0209Initialize::GetLocation@ 0XCE890|845968
13:59:19.15443C0209Initialize::GetLocation@ 0XCEF60|847712
13:59:19.15443C0209Initialize::GetLocation@ 0X9D60|40288
13:59:19.15443C0209Initialize::GetLocation@ 0XCFA50|850512
13:59:19.15443C0209Initialize::GetLocation@ 0XD00B0|852144
13:59:19.22943C048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X5A080000>6|2|1247870977
13:59:19.24843C083VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
13:59:19.24843C0209Initialize::GetLocation@ 0X4040|16448
13:59:19.24843C0209Initialize::GetLocation@ 0X6410|25616
13:59:19.24843C0209Initialize::GetLocation@ 0X65C0|26048
13:59:19.25443C048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X2EF0000>6|2|1247870977
13:59:19.27443C093VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
13:59:19.27443C0110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
13:59:19.27443C0209Initialize::GetLocation@ 0XA5D0|42448
13:59:19.27443C0209Initialize::GetLocation@ 0XD4D0|54480
13:59:19.27443C0209Initialize::GetLocation@ 0XD290|53904
13:59:19.34543C0225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_85_4_13864 opened succesfuly
13:59:19.34543C072HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
13:59:19.34543C0256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_85_4_13864 close 2147483647 bytes
13:59:19.34543C0301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.170.0.13\OWExplorer.dll]
13:59:19.35343C0389ftw1OWExplorer injected
13:59:19.358230471Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
13:59:19.7701FE051`anonymous-namespace'::CreateProviderInitialize provider: NET
13:59:19.7701FE0117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
13:59:19.7701FE054`anonymous-namespace'::CreateProviderFail to initlized provider: NET
13:59:19.7701FE051`anonymous-namespace'::CreateProviderInitialize provider: GPU
13:59:19.7782058669ProcessInjector::InjectProcessprocess |gxxsvc.exe| missing h
13:59:19.8832058669ProcessInjector::InjectProcessprocess |mDNSResponder.exe| missing h
13:59:19.8832058669ProcessInjector::InjectProcessprocess |WireHelperSvc.exe| missing h
13:59:20.1262058669ProcessInjector::InjectProcessprocess |tv_w32.exe| missing h
13:59:20.1262058669ProcessInjector::InjectProcessprocess |tv_x64.exe| missing h
13:59:20.1262058669ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
13:59:20.1262058669ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
13:59:20.5942058669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [2200] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |2200|: NVDisplay.Container.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [2320] [t: 0 w_t_id: 0]- gxxsvc.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |2320|: gxxsvc.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [4460] [t: 0 w_t_id: 0]- mDNSResponder.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |4460|: mDNSResponder.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [4484] [t: 0 w_t_id: 0]- WireHelperSvc.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |4484|: WireHelperSvc.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [4628] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |4628|: nvcontainer.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [9852] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |9852|: tv_w32.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [10136] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |10136|: tv_x64.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [10528] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |10528|: GoogleCrashHandler.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [10552] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |10552|: GoogleCrashHandler64.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [11288] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |11288|: NVIDIA Share.exe
14:01:50.4832058386ProcessInjector::HandleElevatedProcessFail injection to process [11820] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x5a4
14:01:50.4832058318ProcessInjector::HandlePendingProccesssFail to inject pending process |11820|: NVIDIA Share.exe
14:01:51.4872058386ProcessInjector::HandleElevatedProcessFail injection to process [13888] [t: 0 w_t_id: 0]- Glorious Core.exe (elevated True) 0x5a4
14:01:51.4872058318ProcessInjector::HandlePendingProccesssFail to inject pending process |13888|: Glorious Core.exe
14:04:13.5262058669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:04:27.6512058669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:07:34.1322058669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
14:08:01.3672058669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
14:43:32.8012058669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
14:46:05.901230476Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
14:46:06.31043C066ProcessesMonitor::Stopstopping PM...
14:46:06.3101FE0119ProcessesMonitor::ProcessEnumerateThreadexit process listener
14:46:06.31143C0527ProcessInjector::Unhookunhook running process