TimeThreadLineFunctionMessage
11:45:52.811237C365ftw1Loading (pid: 16976)
11:45:52.813237C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XDC9A0000>6|2|1247871722
11:45:52.813237C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XDF100000>6|2|1247871940
11:45:53.10237C173DXManager::DetectFound in 0
11:45:53.13237C209Initialize::GetLocation@ 0X59E0|23008
11:45:53.13237C209Initialize::GetLocation@ 0X6AE20|437792
11:45:53.13237C209Initialize::GetLocation@ 0X211E0|135648
11:45:53.13237C209Initialize::GetLocation@ 0X2840|10304
11:45:53.13237C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XDC9A0000 <> 0XDF100000
11:45:53.13237C209Initialize::GetLocation@ 0XFD9C8860|-40073120
11:45:53.13237C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XDC9A0000 <> 0XDF100000
11:45:53.13237C209Initialize::GetLocation@ 0XFD9CDC30|-40051664
11:45:53.13237C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XDC9A0000 <> 0XDF100000
11:45:53.13237C209Initialize::GetLocation@ 0XFD9CC5F0|-40057360
11:45:53.13237C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XDC9A0000 <> 0XDF100000
11:45:53.13237C209Initialize::GetLocation@ 0XFD8AA7F0|-41244688
11:45:53.159237C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XD0860000>6|2|1247871904
11:45:53.538237C129DXManager::DetectOK
11:45:54.17237C186DXManager::DetectDone
11:45:54.17237C215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
11:45:54.18237C209Initialize::GetLocation@ 0X41090|266384
11:45:54.18237C209Initialize::GetLocation@ 0X33320|209696
11:45:54.18237C209Initialize::GetLocation@ 0X3CBC0|248768
11:45:54.18237C209Initialize::GetLocation@ 0XB76A0|751264
11:45:54.18237C209Initialize::GetLocation@ 0XB71F0|750064
11:45:54.18237C209Initialize::GetLocation@ 0XA1F0|41456
11:45:54.18237C209Initialize::GetLocation@ 0XB7290|750224
11:45:54.18237C209Initialize::GetLocation@ 0X1ABB0|109488
11:45:54.18237C209Initialize::GetLocation@ 0X1D600|120320
11:45:54.18237C209Initialize::GetLocation@ 0X25C30|154672
11:45:54.18237C209Initialize::GetLocation@ 0X113920|1128736
11:45:54.18237C209Initialize::GetLocation@ 0X1133E0|1127392
11:45:54.18237C209Initialize::GetLocation@ 0X1AAA0|109216
11:45:54.18237C209Initialize::GetLocation@ 0X1A9B0|108976
11:45:54.18237C209Initialize::GetLocation@ 0XCB80|52096
11:45:54.18237C209Initialize::GetLocation@ 0X48030|294960
11:45:54.18237C209Initialize::GetLocation@ 0X9D60|40288
11:45:54.18237C209Initialize::GetLocation@ 0XCE890|845968
11:45:54.18237C209Initialize::GetLocation@ 0XCEF60|847712
11:45:54.18237C209Initialize::GetLocation@ 0X9D60|40288
11:45:54.18237C209Initialize::GetLocation@ 0XCFA50|850512
11:45:54.18237C209Initialize::GetLocation@ 0XD00B0|852144
11:45:54.148237C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0XBBA10000>6|2|1247870977
11:45:54.181237C83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
11:45:54.182237C209Initialize::GetLocation@ 0X4040|16448
11:45:54.182237C209Initialize::GetLocation@ 0X6410|25616
11:45:54.182237C209Initialize::GetLocation@ 0X65C0|26048
11:45:54.200237C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XB1B00000>6|2|1247870977
11:45:54.231237C93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
11:45:54.231237C110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
11:45:54.233237C209Initialize::GetLocation@ 0XA5D0|42448
11:45:54.233237C209Initialize::GetLocation@ 0XD4D0|54480
11:45:54.233237C209Initialize::GetLocation@ 0XD290|53904
11:45:54.313237C225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_174_12_16976 opened succesfuly
11:45:54.313237C72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
11:45:54.313237C255InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_174_12_16976 close 2147483647 bytes
11:45:54.313237C301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.174.0.10\OWExplorer.dll]
11:45:54.318237C389ftw1OWExplorer injected
11:45:54.32045AC71Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
11:45:58.3224E453`anonymous-namespace'::CreateProviderInitialize provider: NET
11:45:58.3224E4117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
11:45:58.3224E456`anonymous-namespace'::CreateProviderFail to initlized provider: NET
11:45:58.3224E453`anonymous-namespace'::CreateProviderInitialize provider: GPU
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |108|: Registry
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |2088|: \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |2372|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5d5c294bb8d17217\Display.NvContainer\NVDisplay.Container.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |2528|: \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5d5c294bb8d17217\Display.NvContainer\NVDisplay.Container.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |2628|: MemCompression
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |4928|: \Device\HarddiskVolume4\Program Files\ESET\RemoteAdministrator\Agent\ERAAgent.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |4944|: \Device\HarddiskVolume4\Program Files (x86)\Google\Chrome Remote Desktop\92.0.4515.41\remoting_host.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |4996|: \Device\HarddiskVolume4\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |5036|: \Device\HarddiskVolume4\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |7316|: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |8788|: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.21052.124.0_x64__8wekyb3d8bbwe\YourPhone.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |9432|: C:\Program Files\Logitech Gaming Software\LCore.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |10312|: C:\Program Files\Riot Vanguard\vgtray.exe
11:46:58.5634680258ProcessInjector::HandlePendingProccesssprocess detection skipped |11136|: C:\Program Files\ESET\ESET Security\eguiProxy.exe
11:46:59.5744680258ProcessInjector::HandlePendingProccesssprocess detection skipped |4696|: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21060.9012.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe