Time | Thread | Line | Function | Message |
14:28:17.550 | 1940 | 361 | ftw1 | Loading (pid: 7848) |
14:28:17.553 | 1940 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0X796B0000>6|2|1203372419 |
14:28:17.553 | 1940 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0X7AF70000>6|2|1203372419 |
14:28:17.556 | 26BC | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
14:28:17.747 | 1940 | 172 | DXManager::Detect | Found in 0 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0X4300|17152 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0X66280|418432 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0X19A50|105040 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0X1350|4944 |
14:28:17.747 | 1940 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X796B0000 <> 0X7AF70000 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0XFE862E80|-24760704 |
14:28:17.747 | 1940 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X796B0000 <> 0X7AF70000 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0XFE867F80|-24739968 |
14:28:17.747 | 1940 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X796B0000 <> 0X7AF70000 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0XFE85E620|-24779232 |
14:28:17.747 | 1940 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X796B0000 <> 0X7AF70000 |
14:28:17.747 | 1940 | 209 | Initialize::GetLocation | @ 0XFE74AD10|-25907952 |
14:28:17.799 | 1940 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X6EAF0000>6|2|1203372419 |
14:28:17.993 | 1940 | 129 | DXManager::Detect | OK |
14:28:18.44 | 1940 | 186 | DXManager::Detect | Done |
14:28:18.44 | 1940 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X3AC00|240640 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X2C5B0|181680 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X36D00|224512 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XAE020|712736 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XADB70|711536 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X5880|22656 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XADC10|711696 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X20FF0|135152 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X1CA60|117344 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X1C8E0|116960 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X1084E0|1082592 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X107F90|1081232 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X248B0|149680 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X247A0|149408 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X2C440|181312 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0X3F210|258576 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XF4E0|62688 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XF5D0|62928 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XF3E0|62432 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XF280|62080 |
14:28:18.45 | 1940 | 209 | Initialize::GetLocation | @ 0XF430|62512 |
14:28:18.81 | 1940 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0X3D8C0000>6|2|1203372033 |
14:28:18.115 | 1940 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
14:28:18.115 | 1940 | 209 | Initialize::GetLocation | @ 0X3CC0|15552 |
14:28:18.115 | 1940 | 209 | Initialize::GetLocation | @ 0X5FD0|24528 |
14:28:18.115 | 1940 | 209 | Initialize::GetLocation | @ 0X6180|24960 |
14:28:18.133 | 1940 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X3D050000>6|2|1203372033 |
14:28:18.143 | 1940 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
14:28:18.143 | 1940 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
14:28:18.144 | 1940 | 209 | Initialize::GetLocation | @ 0X10000|65536 |
14:28:18.144 | 1940 | 209 | Initialize::GetLocation | @ 0X12C80|76928 |
14:28:18.144 | 1940 | 209 | Initialize::GetLocation | @ 0X12A60|76384 |
14:28:18.198 | 1940 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_79_8_7848 opened succesfuly |
14:28:18.198 | 1940 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
14:28:18.198 | 1940 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_79_8_7848 close 2147483647 bytes |
14:28:18.198 | 1940 | 297 | InjectOWExplorer | Explorer file name [D:\Programmes\Overwolf\0.153.0.13\OWExplorer.dll] |
14:28:18.219 | 1940 | 385 | ftw1 | OWExplorer injected |
14:28:19.92 | 27AC | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
14:28:19.92 | 27AC | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
14:28:19.92 | 27AC | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
14:28:19.92 | 27AC | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
14:30:49.291 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2376] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
14:30:49.291 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2376|: NVDisplay.Container.exe |
14:30:49.291 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7316] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x0 |
14:30:49.291 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7316|: node.exe |
14:30:49.291 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7320] [t: 0 w_t_id: 0]- CCXProcess.exe (elevated True) 0x0 |
14:30:49.291 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7320|: CCXProcess.exe |
14:30:49.291 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8232] [t: 0 w_t_id: 0]- com.docker.backend.exe (elevated True) 0x0 |
14:30:49.291 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8232|: com.docker.backend.exe |
14:30:49.291 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8252] [t: 0 w_t_id: 0]- docker-mutagen.exe (elevated True) 0x0 |
14:30:49.291 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8252|: docker-mutagen.exe |
14:30:57.289 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6668] [t: 0 w_t_id: 0]- vpnkit-bridge.exe (elevated True) 0x0 |
14:30:57.289 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6668|: vpnkit-bridge.exe |
14:31:03.288 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11008] [t: 0 w_t_id: 0]- vpnkit.exe (elevated True) 0x0 |
14:31:03.288 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11008|: vpnkit.exe |
14:31:05.288 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10268] [t: 0 w_t_id: 0]- com.docker.proxy.exe (elevated True) 0x0 |
14:31:05.288 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10268|: com.docker.proxy.exe |
12:33:38.638 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11480] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:33:38.638 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11480|: Code.exe |
12:33:41.734 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13992] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:33:41.734 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13992|: Code.exe |
12:35:31.281 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12852] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:35:31.281 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12852|: Code.exe |
12:35:35.279 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9268] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:35:35.279 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9268|: Code.exe |
12:35:42.311 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9284] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:35:42.311 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9284|: Code.exe |
12:35:42.311 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13880] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:35:42.311 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13880|: Code.exe |
12:35:43.312 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9668] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:35:43.312 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9668|: Code.exe |
12:35:47.313 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14296] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:35:47.313 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14296|: Code.exe |
12:36:30.374 | 27DC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12016] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5 |
12:36:30.374 | 27DC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12016|: Code.exe |
11:36:19.416 | 1940 | 66 | ProcessesMonitor::Stop | stopping PM... |
11:36:19.416 | 27AC | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |