TimeThreadLineFunctionMessage
09:13:02.5793530361ftw1Loading (pid: 2388)
09:13:02.582353048Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X14800000>6|2|1247871522
09:13:02.582353048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X17760000>6|2|1247871522
09:13:02.5853050146ProcessHardwareRecorder::CommandThreadstarting recorder thread
09:13:02.6963530172DXManager::DetectFound in 0
09:13:02.6963530209Initialize::GetLocation@ 0X4F80|20352
09:13:02.6963530209Initialize::GetLocation@ 0X69640|431680
09:13:02.6963530209Initialize::GetLocation@ 0X206F0|132848
09:13:02.6963530209Initialize::GetLocation@ 0X1DE0|7648
09:13:02.6963530111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000
09:13:02.6963530209Initialize::GetLocation@ 0XFD1C8860|-48461728
09:13:02.6963530111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000
09:13:02.6963530209Initialize::GetLocation@ 0XFD1CDC30|-48440272
09:13:02.6963530111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000
09:13:02.6963530209Initialize::GetLocation@ 0XFD1CC5F0|-48445968
09:13:02.6963530111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000
09:13:02.6963530209Initialize::GetLocation@ 0XFD0AA7F0|-49633296
09:13:02.771353048Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XF4510000>6|2|1247871638
09:13:02.9783530129DXManager::DetectOK
09:13:03.503530186DXManager::DetectDone
09:13:03.503530215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
09:13:03.503530209Initialize::GetLocation@ 0X41B90|269200
09:13:03.503530209Initialize::GetLocation@ 0X33E20|212512
09:13:03.503530209Initialize::GetLocation@ 0X3D6C0|251584
09:13:03.503530209Initialize::GetLocation@ 0XB8E10|757264
09:13:03.503530209Initialize::GetLocation@ 0XB8960|756064
09:13:03.503530209Initialize::GetLocation@ 0XACF0|44272
09:13:03.503530209Initialize::GetLocation@ 0XB8A00|756224
09:13:03.503530209Initialize::GetLocation@ 0X1B6B0|112304
09:13:03.503530209Initialize::GetLocation@ 0X1E100|123136
09:13:03.503530209Initialize::GetLocation@ 0X26730|157488
09:13:03.503530209Initialize::GetLocation@ 0X1146B0|1132208
09:13:03.503530209Initialize::GetLocation@ 0X114170|1130864
09:13:03.503530209Initialize::GetLocation@ 0X1B5A0|112032
09:13:03.503530209Initialize::GetLocation@ 0X1B4B0|111792
09:13:03.503530209Initialize::GetLocation@ 0XD680|54912
09:13:03.503530209Initialize::GetLocation@ 0X493C0|299968
09:13:03.503530209Initialize::GetLocation@ 0XA860|43104
09:13:03.503530209Initialize::GetLocation@ 0XD0000|851968
09:13:03.503530209Initialize::GetLocation@ 0XD06D0|853712
09:13:03.503530209Initialize::GetLocation@ 0XA860|43104
09:13:03.503530209Initialize::GetLocation@ 0XD11C0|856512
09:13:03.503530209Initialize::GetLocation@ 0XD1820|858144
09:13:03.77353048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0XC5FC0000>6|2|1247870977
09:13:03.91353083VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
09:13:03.923530209Initialize::GetLocation@ 0X4040|16448
09:13:03.923530209Initialize::GetLocation@ 0X6410|25616
09:13:03.923530209Initialize::GetLocation@ 0X65C0|26048
09:13:03.93353048Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XC4C50000>6|2|1247870977
09:13:03.103353093VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
09:13:03.1033530110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
09:13:03.1033530209Initialize::GetLocation@ 0XA5D0|42448
09:13:03.1033530209Initialize::GetLocation@ 0XD4D0|54480
09:13:03.1033530209Initialize::GetLocation@ 0XD290|53904
09:13:03.1573530225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_83_1_2388 opened succesfuly
09:13:03.157353072HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
09:13:03.1573530256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_83_1_2388 close 2147483647 bytes
09:13:03.1573530297InjectOWExplorerExplorer file name [D:\Programs\Overwolf\0.162.0.8\OWExplorer.dll]
09:13:03.1673530385ftw1OWExplorer injected
09:13:03.57555C51`anonymous-namespace'::CreateProviderInitialize provider: NET
09:13:03.57555C117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
09:13:03.57555C54`anonymous-namespace'::CreateProviderFail to initlized provider: NET
09:13:03.57555C51`anonymous-namespace'::CreateProviderInitialize provider: GPU
09:13:03.5862984629ProcessInjector::InjectProcessprocess |officeclicktorun.exe| missing h
09:13:03.5862984629ProcessInjector::InjectProcessprocess |hamachi-2.exe| missing h
09:13:03.5862984629ProcessInjector::InjectProcessprocess |lghub_updater.exe| missing h
09:13:03.5862984629ProcessInjector::InjectProcessprocess |LMIGuardianSvc.exe| missing h
09:13:03.5862984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
09:13:03.5862984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
09:13:03.7192984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
09:13:31.3742984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
09:15:34.3932984441ProcessInjector::HandleElevatedProcessFail injection to process [4160] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0
09:15:34.3932984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4160|: MicrosoftEdgeUpdate.exe
09:15:34.3932984441ProcessInjector::HandleElevatedProcessFail injection to process [4588] [t: 0 w_t_id: 0]- officeclicktorun.exe (elevated True) 0x0
09:15:34.3932984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4588|: officeclicktorun.exe
09:15:34.3932984441ProcessInjector::HandleElevatedProcessFail injection to process [4720] [t: 0 w_t_id: 0]- hamachi-2.exe (elevated True) 0x0
09:15:34.3942984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4720|: hamachi-2.exe
09:15:34.3942984441ProcessInjector::HandleElevatedProcessFail injection to process [4804] [t: 0 w_t_id: 0]- lghub_updater.exe (elevated True) 0x0
09:15:34.3942984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4804|: lghub_updater.exe
09:15:34.3942984441ProcessInjector::HandleElevatedProcessFail injection to process [4824] [t: 0 w_t_id: 0]- LMIGuardianSvc.exe (elevated True) 0x0
09:15:34.3942984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4824|: LMIGuardianSvc.exe
09:15:34.3942984441ProcessInjector::HandleElevatedProcessFail injection to process [5084] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0
09:15:34.3942984380ProcessInjector::HandlePendingProccesssFail to inject pending process |5084|: MsMpEng.exe
09:15:34.3942984441ProcessInjector::HandleElevatedProcessFail injection to process [7816] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0
09:15:34.3942984380ProcessInjector::HandlePendingProccesssFail to inject pending process |7816|: EpicWebHelper.exe
09:15:51.5442984441ProcessInjector::HandleElevatedProcessFail injection to process [13664] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0
09:15:51.5442984380ProcessInjector::HandlePendingProccesssFail to inject pending process |13664|: EpicWebHelper.exe
09:18:00.592984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
09:18:00.9442984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
09:19:50.7882984441ProcessInjector::HandleElevatedProcessFail injection to process [13360] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0
09:19:50.7882984380ProcessInjector::HandlePendingProccesssFail to inject pending process |13360|: EpicWebHelper.exe
09:20:11.9402984441ProcessInjector::HandleElevatedProcessFail injection to process [2432] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0
09:20:11.9402984380ProcessInjector::HandlePendingProccesssFail to inject pending process |2432|: EOSOverlayRenderer-Win64-Shipping.exe
09:20:18.12984441ProcessInjector::HandleElevatedProcessFail injection to process [9540] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0
09:20:18.12984380ProcessInjector::HandlePendingProccesssFail to inject pending process |9540|: EOSOverlayRenderer-Win64-Shipping.exe
09:21:44.6072984441ProcessInjector::HandleElevatedProcessFail injection to process [10568] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
09:21:44.6072984380ProcessInjector::HandlePendingProccesssFail to inject pending process |10568|: owobs-ffmpeg-mux.exe
09:23:36.4812984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
09:28:38.6142984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
09:29:13.7972984441ProcessInjector::HandleElevatedProcessFail injection to process [10920] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0
09:29:13.7972984380ProcessInjector::HandlePendingProccesssFail to inject pending process |10920|: EpicWebHelper.exe
09:35:41.6482984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
09:42:16.7412984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
09:43:02.592984441ProcessInjector::HandleElevatedProcessFail injection to process [8788] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0
09:43:02.592984380ProcessInjector::HandlePendingProccesssFail to inject pending process |8788|: EpicWebHelper.exe
09:43:23.2102984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
09:52:05.6382984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
09:52:33.7802984441ProcessInjector::HandleElevatedProcessFail injection to process [4156] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0
09:52:33.7802984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4156|: EOSOverlayRenderer-Win64-Shipping.exe
09:52:39.8102984441ProcessInjector::HandleElevatedProcessFail injection to process [15236] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0
09:52:39.8102984380ProcessInjector::HandlePendingProccesssFail to inject pending process |15236|: EOSOverlayRenderer-Win64-Shipping.exe
09:56:25.2392984441ProcessInjector::HandleElevatedProcessFail injection to process [16840] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0
09:56:25.2392984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16840|: EpicWebHelper.exe
10:00:19.2892984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
10:01:37.6812984441ProcessInjector::HandleElevatedProcessFail injection to process [16616] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:01:37.6812984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16616|: firefox.exe
10:01:38.6872984441ProcessInjector::HandleElevatedProcessFail injection to process [12416] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:01:38.6872984380ProcessInjector::HandlePendingProccesssFail to inject pending process |12416|: firefox.exe
10:01:38.6872984441ProcessInjector::HandleElevatedProcessFail injection to process [13536] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:01:38.6872984380ProcessInjector::HandlePendingProccesssFail to inject pending process |13536|: firefox.exe
10:02:21.312984441ProcessInjector::HandleElevatedProcessFail injection to process [13012] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:02:21.312984380ProcessInjector::HandlePendingProccesssFail to inject pending process |13012|: firefox.exe
10:02:54.2652984441ProcessInjector::HandleElevatedProcessFail injection to process [14536] [t: 0 w_t_id: 0]- software_reporter_tool.exe (elevated True) 0x0
10:02:54.2652984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14536|: software_reporter_tool.exe
10:02:54.2652984441ProcessInjector::HandleElevatedProcessFail injection to process [15228] [t: 0 w_t_id: 0]- software_reporter_tool.exe (elevated True) 0x0
10:02:54.2652984380ProcessInjector::HandlePendingProccesssFail to inject pending process |15228|: software_reporter_tool.exe
10:02:55.2692984441ProcessInjector::HandleElevatedProcessFail injection to process [16448] [t: 0 w_t_id: 0]- software_reporter_tool.exe (elevated True) 0x0
10:02:55.2692984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16448|: software_reporter_tool.exe
10:03:13.4322984441ProcessInjector::HandleElevatedProcessFail injection to process [15364] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:03:13.4322984380ProcessInjector::HandlePendingProccesssFail to inject pending process |15364|: firefox.exe
10:04:35.932984441ProcessInjector::HandleElevatedProcessFail injection to process [16980] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:04:35.932984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16980|: firefox.exe
10:08:26.9062984441ProcessInjector::HandleElevatedProcessFail injection to process [11768] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:08:26.9062984380ProcessInjector::HandlePendingProccesssFail to inject pending process |11768|: firefox.exe
10:11:38.5282984441ProcessInjector::HandleElevatedProcessFail injection to process [11188] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:11:38.5282984380ProcessInjector::HandlePendingProccesssFail to inject pending process |11188|: firefox.exe
10:11:54.6762984441ProcessInjector::HandleElevatedProcessFail injection to process [7968] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:11:54.6762984380ProcessInjector::HandlePendingProccesssFail to inject pending process |7968|: firefox.exe
10:15:49.2872984441ProcessInjector::HandleElevatedProcessFail injection to process [15524] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:15:49.2872984380ProcessInjector::HandlePendingProccesssFail to inject pending process |15524|: firefox.exe
10:17:34.1582984441ProcessInjector::HandleElevatedProcessFail injection to process [14340] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:17:34.1582984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14340|: firefox.exe
10:23:37.1322984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
10:25:01.9942984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
10:26:33.9452984441ProcessInjector::HandleElevatedProcessFail injection to process [18224] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:26:33.9452984380ProcessInjector::HandlePendingProccesssFail to inject pending process |18224|: firefox.exe
10:28:12.8232984441ProcessInjector::HandleElevatedProcessFail injection to process [17460] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
10:28:12.8232984380ProcessInjector::HandlePendingProccesssFail to inject pending process |17460|: firefox.exe
10:45:47.9122984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
10:49:53.3812984441ProcessInjector::HandleElevatedProcessFail injection to process [14064] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
10:49:53.3812984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14064|: owobs-ffmpeg-mux.exe
10:52:05.6852984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
11:33:02.6522984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
12:05:00.6352984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
12:12:52.9882984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
12:28:16.6132984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:17:58.2432984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:17:59.2182984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:18:28.4952984441ProcessInjector::HandleElevatedProcessFail injection to process [5440] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
13:18:28.4962984380ProcessInjector::HandlePendingProccesssFail to inject pending process |5440|: owobs-ffmpeg-mux.exe
13:25:01.6532984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:32:22.5052984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
13:32:22.5052984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
13:52:05.6032984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
14:25:02.3222984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
14:31:57.8312984441ProcessInjector::HandleElevatedProcessFail injection to process [16560] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578
14:31:57.8312984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16560|: firefox.exe
14:34:32.2382984441ProcessInjector::HandleElevatedProcessFail injection to process [10356] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x578
14:34:32.2382984380ProcessInjector::HandlePendingProccesssFail to inject pending process |10356|: owobs-ffmpeg-mux.exe
14:45:47.9052984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:50:28.3782984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
16:58:45.4872984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
17:17:57.7222984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
17:17:58.7342984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
17:26:37.3982984441ProcessInjector::HandleElevatedProcessFail injection to process [1056] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x578
17:26:37.3982984380ProcessInjector::HandlePendingProccesssFail to inject pending process |1056|: owobs-ffmpeg-mux.exe
17:28:16.5732984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
17:52:05.5722984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
18:02:36.7002984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
18:09:18.2182984441ProcessInjector::HandleElevatedProcessFail injection to process [15252] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578
18:09:18.2182984380ProcessInjector::HandlePendingProccesssFail to inject pending process |15252|: firefox.exe
18:10:47.242984441ProcessInjector::HandleElevatedProcessFail injection to process [16152] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578
18:10:47.242984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16152|: firefox.exe
18:12:26.7452984441ProcessInjector::HandleElevatedProcessFail injection to process [2936] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
18:12:26.7452984380ProcessInjector::HandlePendingProccesssFail to inject pending process |2936|: firefox.exe
18:12:35.8012984441ProcessInjector::HandleElevatedProcessFail injection to process [16004] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
18:12:35.8012984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16004|: firefox.exe
18:15:43.5882984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
18:28:31.1162984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
18:45:48.1182984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
18:52:05.5932984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
19:09:23.5562984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
19:17:01.9432984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
19:21:44.6882984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
19:25:02.5092984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
19:25:57.9962984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
19:29:41.9642984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
19:30:09.1762984441ProcessInjector::HandleElevatedProcessFail injection to process [4360] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:30:09.1762984380ProcessInjector::HandlePendingProccesssFail to inject pending process |4360|: firefox.exe
19:30:10.1772984441ProcessInjector::HandleElevatedProcessFail injection to process [7628] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:30:10.1772984380ProcessInjector::HandlePendingProccesssFail to inject pending process |7628|: firefox.exe
19:30:11.1762984441ProcessInjector::HandleElevatedProcessFail injection to process [6088] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:30:11.1762984380ProcessInjector::HandlePendingProccesssFail to inject pending process |6088|: firefox.exe
19:30:11.1762984441ProcessInjector::HandleElevatedProcessFail injection to process [9696] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:30:11.1762984380ProcessInjector::HandlePendingProccesssFail to inject pending process |9696|: firefox.exe
19:31:42.9172984441ProcessInjector::HandleElevatedProcessFail injection to process [14880] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:31:42.9172984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14880|: firefox.exe
19:33:09.7132984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
19:33:36.8822984441ProcessInjector::HandleElevatedProcessFail injection to process [10120] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:33:36.8822984380ProcessInjector::HandlePendingProccesssFail to inject pending process |10120|: firefox.exe
19:34:26.2822984441ProcessInjector::HandleElevatedProcessFail injection to process [11124] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:34:26.2822984380ProcessInjector::HandlePendingProccesssFail to inject pending process |11124|: firefox.exe
19:35:09.5922984441ProcessInjector::HandleElevatedProcessFail injection to process [16316] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:35:09.5922984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16316|: firefox.exe
19:43:03.4802984441ProcessInjector::HandleElevatedProcessFail injection to process [5888] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:43:03.4802984380ProcessInjector::HandlePendingProccesssFail to inject pending process |5888|: firefox.exe
19:46:16.9232984441ProcessInjector::HandleElevatedProcessFail injection to process [10868] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
19:46:16.9232984380ProcessInjector::HandlePendingProccesssFail to inject pending process |10868|: firefox.exe
19:51:41.3232984629ProcessInjector::InjectProcessprocess |OneDriveStandaloneUpdater.exe| missing h
19:52:05.5602984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
19:52:53.9342984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
19:52:56.9532984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdateSetup_X86_1.3.139.65.exe| missing h
19:52:56.9532984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
19:55:55.4392984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
20:21:19.8012984441ProcessInjector::HandleElevatedProcessFail injection to process [14900] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:21:19.8012984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14900|: firefox.exe
20:21:38.9612984441ProcessInjector::HandleElevatedProcessFail injection to process [14292] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:21:38.9612984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14292|: firefox.exe
20:22:03.1752984441ProcessInjector::HandleElevatedProcessFail injection to process [8772] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:22:03.1752984380ProcessInjector::HandlePendingProccesssFail to inject pending process |8772|: firefox.exe
20:22:55.6062984441ProcessInjector::HandleElevatedProcessFail injection to process [17808] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:22:55.6062984380ProcessInjector::HandlePendingProccesssFail to inject pending process |17808|: firefox.exe
20:25:11.6972984441ProcessInjector::HandleElevatedProcessFail injection to process [11244] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:25:11.6972984380ProcessInjector::HandlePendingProccesssFail to inject pending process |11244|: firefox.exe
20:27:57.892984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
20:28:04.1592984441ProcessInjector::HandleElevatedProcessFail injection to process [16944] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:28:04.1592984380ProcessInjector::HandlePendingProccesssFail to inject pending process |16944|: firefox.exe
20:28:34.4222984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
20:30:52.6012984441ProcessInjector::HandleElevatedProcessFail injection to process [12564] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:30:52.6012984380ProcessInjector::HandlePendingProccesssFail to inject pending process |12564|: firefox.exe
20:32:20.3172984441ProcessInjector::HandleElevatedProcessFail injection to process [3836] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:32:20.3172984380ProcessInjector::HandlePendingProccesssFail to inject pending process |3836|: firefox.exe
20:36:03.342984441ProcessInjector::HandleElevatedProcessFail injection to process [14004] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:36:03.342984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14004|: firefox.exe
20:37:03.5542984441ProcessInjector::HandleElevatedProcessFail injection to process [7296] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:37:03.5542984380ProcessInjector::HandlePendingProccesssFail to inject pending process |7296|: firefox.exe
20:38:11.892984441ProcessInjector::HandleElevatedProcessFail injection to process [8504] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:38:11.892984380ProcessInjector::HandlePendingProccesssFail to inject pending process |8504|: firefox.exe
20:40:29.622984441ProcessInjector::HandleElevatedProcessFail injection to process [636] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:40:29.622984380ProcessInjector::HandlePendingProccesssFail to inject pending process |636|: firefox.exe
20:43:43.5342984441ProcessInjector::HandleElevatedProcessFail injection to process [7080] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:43:43.5342984380ProcessInjector::HandlePendingProccesssFail to inject pending process |7080|: firefox.exe
20:44:18.8682984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
20:44:19.9712984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
20:44:19.9712984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
20:45:10.4262984441ProcessInjector::HandleElevatedProcessFail injection to process [5104] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:45:10.4262984380ProcessInjector::HandlePendingProccesssFail to inject pending process |5104|: firefox.exe
20:49:08.2452984441ProcessInjector::HandleElevatedProcessFail injection to process [17676] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
20:49:08.2452984380ProcessInjector::HandlePendingProccesssFail to inject pending process |17676|: firefox.exe
21:04:15.8592984629ProcessInjector::InjectProcessprocess |officec2rclient.exe| missing h
21:11:25.3212984441ProcessInjector::HandleElevatedProcessFail injection to process [18172] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:11:25.3212984380ProcessInjector::HandlePendingProccesssFail to inject pending process |18172|: firefox.exe
21:12:06.6352984441ProcessInjector::HandleElevatedProcessFail injection to process [12076] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:12:06.6362984380ProcessInjector::HandlePendingProccesssFail to inject pending process |12076|: firefox.exe
21:15:02.9932984441ProcessInjector::HandleElevatedProcessFail injection to process [11896] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:15:02.9932984380ProcessInjector::HandlePendingProccesssFail to inject pending process |11896|: firefox.exe
21:17:58.3412984629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
21:20:10.3972984441ProcessInjector::HandleElevatedProcessFail injection to process [17912] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:20:10.3972984380ProcessInjector::HandlePendingProccesssFail to inject pending process |17912|: firefox.exe
21:23:18.8242984441ProcessInjector::HandleElevatedProcessFail injection to process [17880] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:23:18.8242984380ProcessInjector::HandlePendingProccesssFail to inject pending process |17880|: firefox.exe
21:25:01.5862984629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
21:27:57.9872984629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
21:34:12.3332984441ProcessInjector::HandleElevatedProcessFail injection to process [9828] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:34:12.3332984380ProcessInjector::HandlePendingProccesssFail to inject pending process |9828|: firefox.exe
21:37:09.7112984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
21:37:09.7112984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
21:37:09.7112984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
21:37:09.7112984629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
21:39:39.9132984441ProcessInjector::HandleElevatedProcessFail injection to process [8752] [t: 0 w_t_id: 0]- MpCmdRun.exe (elevated True) 0x0
21:39:39.9132984380ProcessInjector::HandlePendingProccesssFail to inject pending process |8752|: MpCmdRun.exe
21:49:31.4952984441ProcessInjector::HandleElevatedProcessFail injection to process [14208] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0
21:49:31.4952984380ProcessInjector::HandlePendingProccesssFail to inject pending process |14208|: firefox.exe
22:27:17.874353066ProcessesMonitor::Stopstopping PM...
22:27:17.87455C119ProcessesMonitor::ProcessEnumerateThreadexit process listener
22:27:17.8763530526ProcessInjector::Unhookunhook running process
22:27:23.892353066ProcessesMonitor::Stopstopping PM...