TimeThreadLineFunctionMessage
16:39:56.4452D60365ftw1Loading (pid: 9536)
16:39:56.4452A1C147ProcessHardwareRecorder::CommandThreadstarting recorder thread
16:39:56.4462D6048Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XF1E40000>6|2|1247871722
16:39:56.4462D6048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XF4DF0000>6|2|1247871940
16:39:56.5532D60172DXManager::DetectFound in 0
16:39:56.5532D60209Initialize::GetLocation@ 0X59E0|23008
16:39:56.5532D60209Initialize::GetLocation@ 0X6AE20|437792
16:39:56.5532D60209Initialize::GetLocation@ 0X211E0|135648
16:39:56.5532D60209Initialize::GetLocation@ 0X2840|10304
16:39:56.5532D60111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XF1E40000 <> 0XF4DF0000
16:39:56.5532D60209Initialize::GetLocation@ 0XFD178860|-48789408
16:39:56.5532D60111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XF1E40000 <> 0XF4DF0000
16:39:56.5532D60209Initialize::GetLocation@ 0XFD17DC30|-48767952
16:39:56.5532D60111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XF1E40000 <> 0XF4DF0000
16:39:56.5532D60209Initialize::GetLocation@ 0XFD17C5F0|-48773648
16:39:56.5532D60111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XF1E40000 <> 0XF4DF0000
16:39:56.5532D60209Initialize::GetLocation@ 0XFD05A7F0|-49960976
16:39:56.5652D6048Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XED5C0000>6|2|1247871904
16:39:56.6602D60129DXManager::DetectOK
16:39:56.7012D60186DXManager::DetectDone
16:39:56.7012D60215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
16:39:56.7012D60209Initialize::GetLocation@ 0X41090|266384
16:39:56.7012D60209Initialize::GetLocation@ 0X33320|209696
16:39:56.7012D60209Initialize::GetLocation@ 0X3CBC0|248768
16:39:56.7012D60209Initialize::GetLocation@ 0XB76A0|751264
16:39:56.7012D60209Initialize::GetLocation@ 0XB71F0|750064
16:39:56.7012D60209Initialize::GetLocation@ 0XA1F0|41456
16:39:56.7012D60209Initialize::GetLocation@ 0XB7290|750224
16:39:56.7012D60209Initialize::GetLocation@ 0X1ABB0|109488
16:39:56.7012D60209Initialize::GetLocation@ 0X1D600|120320
16:39:56.7012D60209Initialize::GetLocation@ 0X25C30|154672
16:39:56.7012D60209Initialize::GetLocation@ 0X113920|1128736
16:39:56.7012D60209Initialize::GetLocation@ 0X1133E0|1127392
16:39:56.7012D60209Initialize::GetLocation@ 0X1AAA0|109216
16:39:56.7012D60209Initialize::GetLocation@ 0X1A9B0|108976
16:39:56.7012D60209Initialize::GetLocation@ 0XCB80|52096
16:39:56.7012D60209Initialize::GetLocation@ 0X48030|294960
16:39:56.7012D60209Initialize::GetLocation@ 0X9D60|40288
16:39:56.7012D60209Initialize::GetLocation@ 0XCE890|845968
16:39:56.7012D60209Initialize::GetLocation@ 0XCEF60|847712
16:39:56.7012D60209Initialize::GetLocation@ 0X9D60|40288
16:39:56.7012D60209Initialize::GetLocation@ 0XCFA50|850512
16:39:56.7012D60209Initialize::GetLocation@ 0XD00B0|852144
16:39:56.7142D6048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X81970000>6|2|1247870977
16:39:56.7262D6083VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
16:39:56.7262D60209Initialize::GetLocation@ 0X4040|16448
16:39:56.7262D60209Initialize::GetLocation@ 0X6410|25616
16:39:56.7262D60209Initialize::GetLocation@ 0X65C0|26048
16:39:56.7292D6048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X81920000>6|2|1247870977
16:39:56.7382D6093VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
16:39:56.7382D60110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
16:39:56.7392D60209Initialize::GetLocation@ 0XA5D0|42448
16:39:56.7392D60209Initialize::GetLocation@ 0XD4D0|54480
16:39:56.7392D60209Initialize::GetLocation@ 0XD290|53904
16:39:56.8062D60225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_85_4_9536 opened succesfuly
16:39:56.8072D6072HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
16:39:56.8072D60256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_85_4_9536 close 2147483647 bytes
16:39:56.8072D60301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.170.0.13\OWExplorer.dll]
16:39:56.8492D60389ftw1OWExplorer injected
16:39:56.84942C871Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
16:39:57.174429451`anonymous-namespace'::CreateProviderInitialize provider: NET
16:39:57.1744294117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
16:39:57.174429454`anonymous-namespace'::CreateProviderFail to initlized provider: NET
16:39:57.174429451`anonymous-namespace'::CreateProviderInitialize provider: GPU
16:39:57.1832C70669ProcessInjector::InjectProcessprocess |gxxsvc.exe| missing h
16:39:57.2432C70669ProcessInjector::InjectProcessprocess |mDNSResponder.exe| missing h
16:39:57.2432C70669ProcessInjector::InjectProcessprocess |WireHelperSvc.exe| missing h
16:39:57.3862C70669ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
16:39:57.3862C70669ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
16:39:57.3862C70669ProcessInjector::InjectProcessprocess |tv_w32.exe| missing h
16:39:57.3862C70669ProcessInjector::InjectProcessprocess |tv_x64.exe| missing h
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [2148] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |2148|: NVDisplay.Container.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [2236] [t: 0 w_t_id: 0]- gxxsvc.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |2236|: gxxsvc.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [3856] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |3856|: tv_x64.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [3868] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |3868|: tv_w32.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [4392] [t: 0 w_t_id: 0]- mDNSResponder.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |4392|: mDNSResponder.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [4484] [t: 0 w_t_id: 0]- WireHelperSvc.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |4484|: WireHelperSvc.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [4616] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |4616|: nvcontainer.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [6804] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |6804|: NVIDIA Share.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [6976] [t: 0 w_t_id: 0]- Glorious Core.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |6976|: Glorious Core.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [9316] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |9316|: GoogleCrashHandler.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [9444] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |9444|: NVIDIA Share.exe
16:42:28.732C70386ProcessInjector::HandleElevatedProcessFail injection to process [9476] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
16:42:28.732C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |9476|: GoogleCrashHandler64.exe
16:43:32.5712C70669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
16:44:52.1842C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
16:44:53.1862C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
18:04:28.2322C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
19:43:32.8952C70669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
19:46:03.8522C70386ProcessInjector::HandleElevatedProcessFail injection to process [3512] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
19:46:03.8522C70318ProcessInjector::HandlePendingProccesssFail to inject pending process |3512|: GoogleUpdate.exe
20:44:52.5102C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
21:42:50.562C70669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
21:43:33.3522C70669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
21:43:37.3882C70669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
22:04:27.2222C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
00:42:49.5302C70669ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
00:44:52.5012C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
02:04:27.5742C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
02:43:33.6452C70669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
02:44:03.9592C70669ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
04:44:52.7422C70669ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
05:41:52.56142C876Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
05:41:52.6862D6066ProcessesMonitor::Stopstopping PM...
05:41:52.6864294119ProcessesMonitor::ProcessEnumerateThreadexit process listener
05:41:52.6872D60527ProcessInjector::Unhookunhook running process