TimeThreadLineFunctionMessage
08:17:32.30939C365ftw1Loading (pid: 17480)
08:17:32.31139C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X85DF0000>6|2|1247871522
08:17:32.31139C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X88320000>6|2|1247871522
08:17:32.3152150147ProcessHardwareRecorder::CommandThreadstarting recorder thread
08:17:32.47839C172DXManager::DetectFound in 0
08:17:32.47839C209Initialize::GetLocation@ 0X4F80|20352
08:17:32.47839C209Initialize::GetLocation@ 0X69640|431680
08:17:32.47839C209Initialize::GetLocation@ 0X206F0|132848
08:17:32.47839C209Initialize::GetLocation@ 0X1DE0|7648
08:17:32.47839C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X85DF0000 <> 0X88320000
08:17:32.47839C209Initialize::GetLocation@ 0XFDBF8860|-37779360
08:17:32.47839C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X85DF0000 <> 0X88320000
08:17:32.47839C209Initialize::GetLocation@ 0XFDBFDC30|-37757904
08:17:32.47839C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X85DF0000 <> 0X88320000
08:17:32.47839C209Initialize::GetLocation@ 0XFDBFC5F0|-37763600
08:17:32.47839C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X85DF0000 <> 0X88320000
08:17:32.47839C209Initialize::GetLocation@ 0XFDADA7F0|-38950928
08:17:32.50839C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X7CFB0000>6|2|1247871638
08:17:32.85939C112VTableHolderD3d9::initCannot Create HW_VP.
08:17:32.86239C139VTableHolderD3d9::initFailed -> m_pD3D->CreateDevice 0x8876086a
08:17:32.97039C186DXManager::DetectDone
08:17:32.97039C215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.97139C198Initialize::GetLocationFailed Renderer.
08:17:32.97139C201Initialize::GetLocationFailed.
08:17:32.99439C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X26690000>6|2|1247870977
08:17:33.1839C83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
08:17:33.1839C209Initialize::GetLocation@ 0X4040|16448
08:17:33.1839C209Initialize::GetLocation@ 0X6410|25616
08:17:33.1839C209Initialize::GetLocation@ 0X65C0|26048
08:17:33.2439C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X26500000>6|2|1247870977
08:17:33.4939C93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
08:17:33.4939C110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
08:17:33.4939C209Initialize::GetLocation@ 0XA5D0|42448
08:17:33.4939C209Initialize::GetLocation@ 0XD4D0|54480
08:17:33.4939C209Initialize::GetLocation@ 0XD290|53904
08:17:33.10939C225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_84_8_17480 opened succesfuly
08:17:33.10939C72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
08:17:33.10939C256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_84_8_17480 close 2147483647 bytes
08:17:33.10939C301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.165.0.5\OWExplorer.dll]
08:17:33.11739C389ftw1OWExplorer injected
08:17:33.1176E7070Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
08:17:33.63616CC51`anonymous-namespace'::CreateProviderInitialize provider: NET
08:17:33.63616CC117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
08:17:33.63616CC54`anonymous-namespace'::CreateProviderFail to initlized provider: NET
08:17:33.63616CC51`anonymous-namespace'::CreateProviderInitialize provider: GPU
08:17:33.6492AF8726ProcessInjector::InjectProcessprocess |RzSDKServer.exe| missing h
08:17:33.6492AF8726ProcessInjector::InjectProcessprocess |wmpnetwk.exe| missing h
08:17:33.6492AF8726ProcessInjector::InjectProcessprocess |LMS.exe| missing h
08:17:33.6492AF8726ProcessInjector::InjectProcessprocess |isa.exe| missing h
08:17:33.8362AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
08:17:33.8362AF8726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
08:17:34.7112AF8726ProcessInjector::InjectProcessprocess |CTHelper.exe| missing h
08:20:04.3352AF8481ProcessInjector::HandleElevatedProcessFail injection to process [3640] [t: 0 w_t_id: 0]- RzSDKServer.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |3640|: RzSDKServer.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [3756] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |3756|: MsMpEng.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [4104] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |4104|: GoogleUpdate.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [5176] [t: 0 w_t_id: 0]- wmpnetwk.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |5176|: wmpnetwk.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [5396] [t: 0 w_t_id: 0]- isa.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |5396|: isa.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [8908] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |8908|: NVIDIA Share.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [9032] [t: 0 w_t_id: 0]- LMS.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |9032|: LMS.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [9164] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |9164|: NVIDIA Share.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [16640] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |16640|: nvcontainer.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [17416] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |17416|: MicrosoftEdgeUpdate.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [20908] [t: 0 w_t_id: 0]- GoogleDriveFS.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |20908|: GoogleDriveFS.exe
08:20:04.3362AF8481ProcessInjector::HandleElevatedProcessFail injection to process [24904] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
08:20:04.3362AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |24904|: NVDisplay.Container.exe
08:20:05.3462AF8481ProcessInjector::HandleElevatedProcessFail injection to process [3688] [t: 0 w_t_id: 0]- CTHelper.exe (elevated True) 0x0
08:20:05.3462AF8413ProcessInjector::HandlePendingProccesssFail to inject pending process |3688|: CTHelper.exe
08:22:22.3522AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
08:26:48.7612AF8726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
12:01:29.1652AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
12:22:21.5302AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:45:02.9492AF8726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
14:04:34.8822AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
16:01:28.7672AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
16:22:21.6262AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
16:45:02.4062AF8726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
18:04:34.8492AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
18:19:35.5552AF8726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
18:45:02.4162AF8726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
19:04:35.72AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
19:05:31.3822AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
20:01:29.2352AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
20:22:21.2932AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
20:22:22.3002AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
21:04:34.8942AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:04:34.8722AF8726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
23:13:10.3382AF8726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
23:13:10.3382AF8726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
23:45:02.5212AF8726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
23:45:56.8762AF8726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
00:01:29.1342AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
00:22:21.1672AF8726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
00:33:15.6122AF8726ProcessInjector::InjectProcessprocess |NVDisplay.Container.exe| missing h
00:33:15.8676E7075Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
00:33:16.4539C66ProcessesMonitor::Stopstopping PM...
00:33:16.4616CC119ProcessesMonitor::ProcessEnumerateThreadexit process listener
00:33:16.4839C619ProcessInjector::Unhookunhook running process