TimeThreadLineFunctionMessage
18:27:05.2512518363ftw1Loading (pid: 11988)
18:27:05.2519DC146ProcessHardwareRecorder::CommandThreadstarting recorder thread
18:27:05.253251848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XA5F30000>6|2|1245708289
18:27:05.253251848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XA81D0000>6|2|1245708289
18:27:05.3572518169DXManager::DetectFound in 0
18:27:05.3582518209Initialize::GetLocation@ 0X5240|21056
18:27:05.3582518209Initialize::GetLocation@ 0X788C0|493760
18:27:05.3582518209Initialize::GetLocation@ 0XECA0|60576
18:27:05.3582518209Initialize::GetLocation@ 0X1470|5232
18:27:05.3582518111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000
18:27:05.3582518209Initialize::GetLocation@ 0XFDE88850|-35092400
18:27:05.3582518111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000
18:27:05.3582518209Initialize::GetLocation@ 0XFDE8DE80|-35070336
18:27:05.3582518111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000
18:27:05.3582518209Initialize::GetLocation@ 0XFDE8C5E0|-35076640
18:27:05.3582518111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000
18:27:05.3582518209Initialize::GetLocation@ 0XFDD6A7F0|-36263952
18:27:05.384251848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X8E340000>6|2|1245708289
18:27:05.4852518128DXManager::DetectOK
18:27:05.5322518185DXManager::DetectDone
18:27:05.5322518214VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
18:27:05.5332518209Initialize::GetLocation@ 0X3FC00|261120
18:27:05.5332518209Initialize::GetLocation@ 0X33840|211008
18:27:05.5332518209Initialize::GetLocation@ 0X3BFA0|245664
18:27:05.5332518209Initialize::GetLocation@ 0XB70D0|749776
18:27:05.5332518209Initialize::GetLocation@ 0XB6C20|748576
18:27:05.5332518209Initialize::GetLocation@ 0XAF40|44864
18:27:05.5332518209Initialize::GetLocation@ 0XB6CC0|748736
18:27:05.5332518209Initialize::GetLocation@ 0X20C40|134208
18:27:05.5332518209Initialize::GetLocation@ 0X16A10|92688
18:27:05.5332518209Initialize::GetLocation@ 0X2D530|185648
18:27:05.5332518209Initialize::GetLocation@ 0X113340|1127232
18:27:05.5332518209Initialize::GetLocation@ 0X112E00|1125888
18:27:05.5332518209Initialize::GetLocation@ 0X20B30|133936
18:27:05.5332518209Initialize::GetLocation@ 0X20A40|133696
18:27:05.5332518209Initialize::GetLocation@ 0XD8D0|55504
18:27:05.5332518209Initialize::GetLocation@ 0X466A0|288416
18:27:05.5332518209Initialize::GetLocation@ 0XAAB0|43696
18:27:05.5332518209Initialize::GetLocation@ 0XCE2C0|844480
18:27:05.5332518209Initialize::GetLocation@ 0XCE990|846224
18:27:05.5332518209Initialize::GetLocation@ 0XAAB0|43696
18:27:05.5332518209Initialize::GetLocation@ 0XCF480|849024
18:27:05.5332518209Initialize::GetLocation@ 0XCFAE0|850656
18:27:05.548251848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X8D030000>6|2|1245708289
18:27:05.573251883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
18:27:05.5742518209Initialize::GetLocation@ 0X4040|16448
18:27:05.5742518209Initialize::GetLocation@ 0X6410|25616
18:27:05.5742518209Initialize::GetLocation@ 0X65C0|26048
18:27:05.575251848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X77930000>6|2|1245708289
18:27:05.588251891VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
18:27:05.5892518108VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
18:27:05.5892518209Initialize::GetLocation@ 0XA600|42496
18:27:05.5892518209Initialize::GetLocation@ 0XD500|54528
18:27:05.5892518209Initialize::GetLocation@ 0XD2C0|53952
18:27:05.6552518225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_73_6_11988 opened succesfuly
18:27:05.655251872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
18:27:05.6552518256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_73_6_11988 close 2147483647 bytes
18:27:05.6552518299InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.136.0.10\OWExplorer.dll]
18:27:05.7032518387ftw1OWExplorer injected
18:27:06.586340C51`anonymous-namespace'::CreateProviderInitialize provider: NET
18:27:06.586340C117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
18:27:06.586340C54`anonymous-namespace'::CreateProviderFail to initlized provider: NET
18:27:06.586340C51`anonymous-namespace'::CreateProviderInitialize provider: GPU
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [420] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |420|: bash
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [524] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |524|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [1668] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |1668|: bash
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [2884] [t: 0 w_t_id: 0]- ssh-agent.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |2884|: ssh-agent.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [3304] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |3304|: nvcontainer.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [3464] [t: 0 w_t_id: 0]- NvTelemetryContainer.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |3464|: NvTelemetryContainer.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [3604] [t: 0 w_t_id: 0]- ssh-agent (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |3604|: ssh-agent
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [3632] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |3632|: NVDisplay.Container.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [3888] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |3888|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [4672] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |4672|: bash
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [6056] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |6056|: MsMpEng.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [6576] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |6576|: bash
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [6612] [t: 0 w_t_id: 0]- ssh-agent (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |6612|: ssh-agent
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [6732] [t: 0 w_t_id: 0]- plugin_host.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |6732|: plugin_host.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [6760] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |6760|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [6888] [t: 0 w_t_id: 0]- ssh-agent (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |6888|: ssh-agent
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [8956] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |8956|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [10544] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |10544|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [10784] [t: 0 w_t_id: 0]- init (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |10784|: init
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [12588] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |12588|: bash
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [13640] [t: 0 w_t_id: 0]- init (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |13640|: init
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [13732] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |13732|: bash
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [13844] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |13844|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [14128] [t: 0 w_t_id: 0]- java (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |14128|: java
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [14236] [t: 0 w_t_id: 0]- java (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |14236|: java
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [14644] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |14644|: firefox.exe
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [14972] [t: 0 w_t_id: 0]- init (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |14972|: init
18:29:36.9911C50349ProcessInjector::HandleElevatedProcessFail injection to process [15624] [t: 0 w_t_id: 0]- init (elevated True) 0x1f
18:29:36.9911C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |15624|: init
18:51:02.3471C50349ProcessInjector::HandleElevatedProcessFail injection to process [10860] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
18:51:02.3471C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |10860|: firefox.exe
01:02:26.3931C50349ProcessInjector::HandleElevatedProcessFail injection to process [7164] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
01:02:26.3931C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |7164|: firefox.exe
01:04:04.2631C50349ProcessInjector::HandleElevatedProcessFail injection to process [5796] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
01:04:04.2631C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |5796|: bash
01:04:04.2631C50349ProcessInjector::HandleElevatedProcessFail injection to process [10188] [t: 0 w_t_id: 0]- init (elevated True) 0x1f
01:04:04.2631C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |10188|: init
01:04:12.2811C50349ProcessInjector::HandleElevatedProcessFail injection to process [12584] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
01:04:12.2811C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |12584|: bash
01:05:38.9891C50349ProcessInjector::HandleElevatedProcessFail injection to process [17800] [t: 0 w_t_id: 0]- java (elevated True) 0x1f
01:05:38.9891C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |17800|: java
01:07:18.8781C50349ProcessInjector::HandleElevatedProcessFail injection to process [17120] [t: 0 w_t_id: 0]- init (elevated True) 0x1f
01:07:18.8781C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |17120|: init
01:07:18.8781C50349ProcessInjector::HandleElevatedProcessFail injection to process [18284] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
01:07:18.8781C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |18284|: bash
01:07:27.9741C50349ProcessInjector::HandleElevatedProcessFail injection to process [9092] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f
01:07:27.9741C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |9092|: bash
01:10:02.3691C50349ProcessInjector::HandleElevatedProcessFail injection to process [14252] [t: 0 w_t_id: 0]- java (elevated True) 0x1f
01:10:02.3691C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |14252|: java
01:52:27.2791C50349ProcessInjector::HandleElevatedProcessFail injection to process [8240] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
01:52:27.2791C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |8240|: firefox.exe
01:54:50.4471C50349ProcessInjector::HandleElevatedProcessFail injection to process [17772] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f
01:54:50.4471C50288ProcessInjector::HandlePendingProccesssFail to inject pending process |17772|: firefox.exe