Time | Thread | Line | Function | Message |
09:13:02.579 | 3530 | 361 | ftw1 | Loading (pid: 2388) |
09:13:02.582 | 3530 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X14800000>6|2|1247871522 |
09:13:02.582 | 3530 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X17760000>6|2|1247871522 |
09:13:02.585 | 3050 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
09:13:02.696 | 3530 | 172 | DXManager::Detect | Found in 0 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0X4F80|20352 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0X69640|431680 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0X206F0|132848 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0X1DE0|7648 |
09:13:02.696 | 3530 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0XFD1C8860|-48461728 |
09:13:02.696 | 3530 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0XFD1CDC30|-48440272 |
09:13:02.696 | 3530 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0XFD1CC5F0|-48445968 |
09:13:02.696 | 3530 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X14800000 <> 0X17760000 |
09:13:02.696 | 3530 | 209 | Initialize::GetLocation | @ 0XFD0AA7F0|-49633296 |
09:13:02.771 | 3530 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XF4510000>6|2|1247871638 |
09:13:02.978 | 3530 | 129 | DXManager::Detect | OK |
09:13:03.50 | 3530 | 186 | DXManager::Detect | Done |
09:13:03.50 | 3530 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X41B90|269200 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X33E20|212512 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X3D6C0|251584 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XB8E10|757264 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XB8960|756064 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XACF0|44272 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XB8A00|756224 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X1B6B0|112304 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X1E100|123136 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X26730|157488 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X1146B0|1132208 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X114170|1130864 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X1B5A0|112032 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X1B4B0|111792 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XD680|54912 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0X493C0|299968 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XA860|43104 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XD0000|851968 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XD06D0|853712 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XA860|43104 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XD11C0|856512 |
09:13:03.50 | 3530 | 209 | Initialize::GetLocation | @ 0XD1820|858144 |
09:13:03.77 | 3530 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XC5FC0000>6|2|1247870977 |
09:13:03.91 | 3530 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
09:13:03.92 | 3530 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
09:13:03.92 | 3530 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
09:13:03.92 | 3530 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
09:13:03.93 | 3530 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XC4C50000>6|2|1247870977 |
09:13:03.103 | 3530 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
09:13:03.103 | 3530 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
09:13:03.103 | 3530 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
09:13:03.103 | 3530 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
09:13:03.103 | 3530 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
09:13:03.157 | 3530 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_83_1_2388 opened succesfuly |
09:13:03.157 | 3530 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
09:13:03.157 | 3530 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_83_1_2388 close 2147483647 bytes |
09:13:03.157 | 3530 | 297 | InjectOWExplorer | Explorer file name [D:\Programs\Overwolf\0.162.0.8\OWExplorer.dll] |
09:13:03.167 | 3530 | 385 | ftw1 | OWExplorer injected |
09:13:03.575 | 55C | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
09:13:03.575 | 55C | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
09:13:03.575 | 55C | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
09:13:03.575 | 55C | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
09:13:03.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |officeclicktorun.exe| missing h |
09:13:03.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |hamachi-2.exe| missing h |
09:13:03.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |lghub_updater.exe| missing h |
09:13:03.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |LMIGuardianSvc.exe| missing h |
09:13:03.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
09:13:03.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
09:13:03.719 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
09:13:31.374 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
09:15:34.393 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4160] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0 |
09:15:34.393 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4160|: MicrosoftEdgeUpdate.exe |
09:15:34.393 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4588] [t: 0 w_t_id: 0]- officeclicktorun.exe (elevated True) 0x0 |
09:15:34.393 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4588|: officeclicktorun.exe |
09:15:34.393 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4720] [t: 0 w_t_id: 0]- hamachi-2.exe (elevated True) 0x0 |
09:15:34.394 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4720|: hamachi-2.exe |
09:15:34.394 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4804] [t: 0 w_t_id: 0]- lghub_updater.exe (elevated True) 0x0 |
09:15:34.394 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4804|: lghub_updater.exe |
09:15:34.394 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4824] [t: 0 w_t_id: 0]- LMIGuardianSvc.exe (elevated True) 0x0 |
09:15:34.394 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4824|: LMIGuardianSvc.exe |
09:15:34.394 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5084] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0 |
09:15:34.394 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5084|: MsMpEng.exe |
09:15:34.394 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7816] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0 |
09:15:34.394 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7816|: EpicWebHelper.exe |
09:15:51.544 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13664] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0 |
09:15:51.544 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13664|: EpicWebHelper.exe |
09:18:00.59 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
09:18:00.944 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
09:19:50.788 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13360] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0 |
09:19:50.788 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13360|: EpicWebHelper.exe |
09:20:11.940 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2432] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0 |
09:20:11.940 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2432|: EOSOverlayRenderer-Win64-Shipping.exe |
09:20:18.1 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9540] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0 |
09:20:18.1 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9540|: EOSOverlayRenderer-Win64-Shipping.exe |
09:21:44.607 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10568] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
09:21:44.607 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10568|: owobs-ffmpeg-mux.exe |
09:23:36.481 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
09:28:38.614 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
09:29:13.797 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10920] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0 |
09:29:13.797 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10920|: EpicWebHelper.exe |
09:35:41.648 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
09:42:16.741 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
09:43:02.59 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8788] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0 |
09:43:02.59 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8788|: EpicWebHelper.exe |
09:43:23.210 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
09:52:05.638 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
09:52:33.780 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4156] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0 |
09:52:33.780 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4156|: EOSOverlayRenderer-Win64-Shipping.exe |
09:52:39.810 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15236] [t: 0 w_t_id: 0]- EOSOverlayRenderer-Win64-Shipping.exe (elevated True) 0x0 |
09:52:39.810 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15236|: EOSOverlayRenderer-Win64-Shipping.exe |
09:56:25.239 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16840] [t: 0 w_t_id: 0]- EpicWebHelper.exe (elevated True) 0x0 |
09:56:25.239 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16840|: EpicWebHelper.exe |
10:00:19.289 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
10:01:37.681 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16616] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:01:37.681 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16616|: firefox.exe |
10:01:38.687 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12416] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:01:38.687 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12416|: firefox.exe |
10:01:38.687 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13536] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:01:38.687 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13536|: firefox.exe |
10:02:21.31 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13012] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:02:21.31 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13012|: firefox.exe |
10:02:54.265 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14536] [t: 0 w_t_id: 0]- software_reporter_tool.exe (elevated True) 0x0 |
10:02:54.265 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14536|: software_reporter_tool.exe |
10:02:54.265 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15228] [t: 0 w_t_id: 0]- software_reporter_tool.exe (elevated True) 0x0 |
10:02:54.265 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15228|: software_reporter_tool.exe |
10:02:55.269 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16448] [t: 0 w_t_id: 0]- software_reporter_tool.exe (elevated True) 0x0 |
10:02:55.269 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16448|: software_reporter_tool.exe |
10:03:13.432 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15364] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:03:13.432 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15364|: firefox.exe |
10:04:35.93 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16980] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:04:35.93 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16980|: firefox.exe |
10:08:26.906 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11768] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:08:26.906 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11768|: firefox.exe |
10:11:38.528 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11188] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:11:38.528 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11188|: firefox.exe |
10:11:54.676 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7968] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:11:54.676 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7968|: firefox.exe |
10:15:49.287 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15524] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:15:49.287 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15524|: firefox.exe |
10:17:34.158 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14340] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:17:34.158 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14340|: firefox.exe |
10:23:37.132 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
10:25:01.994 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
10:26:33.945 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18224] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:26:33.945 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18224|: firefox.exe |
10:28:12.823 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17460] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
10:28:12.823 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17460|: firefox.exe |
10:45:47.912 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
10:49:53.381 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14064] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
10:49:53.381 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14064|: owobs-ffmpeg-mux.exe |
10:52:05.685 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
11:33:02.652 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
12:05:00.635 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
12:12:52.988 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
12:28:16.613 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
13:17:58.243 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
13:17:59.218 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
13:18:28.495 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5440] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
13:18:28.496 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5440|: owobs-ffmpeg-mux.exe |
13:25:01.653 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
13:32:22.505 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
13:32:22.505 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
13:52:05.603 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
14:25:02.322 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
14:31:57.831 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16560] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
14:31:57.831 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16560|: firefox.exe |
14:34:32.238 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10356] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x578 |
14:34:32.238 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10356|: owobs-ffmpeg-mux.exe |
14:45:47.905 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
14:50:28.378 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
16:58:45.487 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
17:17:57.722 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
17:17:58.734 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
17:26:37.398 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1056] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x578 |
17:26:37.398 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1056|: owobs-ffmpeg-mux.exe |
17:28:16.573 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
17:52:05.572 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
18:02:36.700 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
18:09:18.218 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15252] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
18:09:18.218 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15252|: firefox.exe |
18:10:47.24 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16152] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x578 |
18:10:47.24 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16152|: firefox.exe |
18:12:26.745 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2936] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
18:12:26.745 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2936|: firefox.exe |
18:12:35.801 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16004] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
18:12:35.801 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16004|: firefox.exe |
18:15:43.588 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
18:28:31.116 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
18:45:48.118 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
18:52:05.593 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
19:09:23.556 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
19:17:01.943 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
19:21:44.688 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
19:25:02.509 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
19:25:57.996 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
19:29:41.964 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
19:30:09.176 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4360] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:30:09.176 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4360|: firefox.exe |
19:30:10.177 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7628] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:30:10.177 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7628|: firefox.exe |
19:30:11.176 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6088] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:30:11.176 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6088|: firefox.exe |
19:30:11.176 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9696] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:30:11.176 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9696|: firefox.exe |
19:31:42.917 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14880] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:31:42.917 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14880|: firefox.exe |
19:33:09.713 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
19:33:36.882 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10120] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:33:36.882 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10120|: firefox.exe |
19:34:26.282 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11124] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:34:26.282 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11124|: firefox.exe |
19:35:09.592 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16316] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:35:09.592 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16316|: firefox.exe |
19:43:03.480 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5888] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:43:03.480 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5888|: firefox.exe |
19:46:16.923 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10868] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
19:46:16.923 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10868|: firefox.exe |
19:51:41.323 | 2984 | 629 | ProcessInjector::InjectProcess | process |OneDriveStandaloneUpdater.exe| missing h |
19:52:05.560 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
19:52:53.934 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
19:52:56.953 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdateSetup_X86_1.3.139.65.exe| missing h |
19:52:56.953 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
19:55:55.439 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
20:21:19.801 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14900] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:21:19.801 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14900|: firefox.exe |
20:21:38.961 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14292] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:21:38.961 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14292|: firefox.exe |
20:22:03.175 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8772] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:22:03.175 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8772|: firefox.exe |
20:22:55.606 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17808] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:22:55.606 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17808|: firefox.exe |
20:25:11.697 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11244] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:25:11.697 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11244|: firefox.exe |
20:27:57.89 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
20:28:04.159 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16944] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:28:04.159 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16944|: firefox.exe |
20:28:34.422 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
20:30:52.601 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12564] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:30:52.601 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12564|: firefox.exe |
20:32:20.317 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3836] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:32:20.317 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3836|: firefox.exe |
20:36:03.34 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14004] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:36:03.34 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14004|: firefox.exe |
20:37:03.554 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7296] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:37:03.554 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7296|: firefox.exe |
20:38:11.89 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8504] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:38:11.89 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8504|: firefox.exe |
20:40:29.62 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [636] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:40:29.62 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |636|: firefox.exe |
20:43:43.534 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7080] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:43:43.534 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7080|: firefox.exe |
20:44:18.868 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
20:44:19.971 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
20:44:19.971 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
20:45:10.426 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5104] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:45:10.426 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5104|: firefox.exe |
20:49:08.245 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17676] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
20:49:08.245 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17676|: firefox.exe |
21:04:15.859 | 2984 | 629 | ProcessInjector::InjectProcess | process |officec2rclient.exe| missing h |
21:11:25.321 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18172] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:11:25.321 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18172|: firefox.exe |
21:12:06.635 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12076] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:12:06.636 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12076|: firefox.exe |
21:15:02.993 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11896] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:15:02.993 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11896|: firefox.exe |
21:17:58.341 | 2984 | 629 | ProcessInjector::InjectProcess | process |OverwolfUpdater.exe| missing h |
21:20:10.397 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17912] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:20:10.397 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17912|: firefox.exe |
21:23:18.824 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17880] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:23:18.824 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17880|: firefox.exe |
21:25:01.586 | 2984 | 629 | ProcessInjector::InjectProcess | process |GoogleUpdate.exe| missing h |
21:27:57.987 | 2984 | 629 | ProcessInjector::InjectProcess | process |MicrosoftEdgeUpdate.exe| missing h |
21:34:12.333 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9828] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:34:12.333 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9828|: firefox.exe |
21:37:09.711 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
21:37:09.711 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
21:37:09.711 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
21:37:09.711 | 2984 | 629 | ProcessInjector::InjectProcess | process |MpCmdRun.exe| missing h |
21:39:39.913 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8752] [t: 0 w_t_id: 0]- MpCmdRun.exe (elevated True) 0x0 |
21:39:39.913 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8752|: MpCmdRun.exe |
21:49:31.495 | 2984 | 441 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14208] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:49:31.495 | 2984 | 380 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14208|: firefox.exe |
22:27:17.874 | 3530 | 66 | ProcessesMonitor::Stop | stopping PM... |
22:27:17.874 | 55C | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
22:27:17.876 | 3530 | 526 | ProcessInjector::Unhook | unhook running process |
22:27:23.892 | 3530 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |