TimeThreadLineFunctionMessage
10:30:03.9803D24365ftw1Loading (pid: 20952)
10:30:03.9804F08147ProcessHardwareRecorder::CommandThreadstarting recorder thread
10:30:03.9813D2448Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XB8720000>6|2|1247871522
10:30:03.9813D2448Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XBAC20000>6|2|1247871522
10:30:04.1073D24172DXManager::DetectFound in 0
10:30:04.1103D24209Initialize::GetLocation@ 0X4F80|20352
10:30:04.1103D24209Initialize::GetLocation@ 0X69640|431680
10:30:04.1103D24209Initialize::GetLocation@ 0X206F0|132848
10:30:04.1103D24209Initialize::GetLocation@ 0X1DE0|7648
10:30:04.1103D24111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XB8720000 <> 0XBAC20000
10:30:04.1103D24209Initialize::GetLocation@ 0XFDC28860|-37582752
10:30:04.1103D24111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XB8720000 <> 0XBAC20000
10:30:04.1103D24209Initialize::GetLocation@ 0XFDC2DC30|-37561296
10:30:04.1103D24111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XB8720000 <> 0XBAC20000
10:30:04.1103D24209Initialize::GetLocation@ 0XFDC2C5F0|-37566992
10:30:04.1103D24111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0XB8720000 <> 0XBAC20000
10:30:04.1103D24209Initialize::GetLocation@ 0XFDB0A7F0|-38754320
10:30:04.1263D2448Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XB59E0000>6|2|1247871638
10:30:04.2133D24129DXManager::DetectOK
10:30:04.2503D24186DXManager::DetectDone
10:30:04.2503D24215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
10:30:04.2513D24209Initialize::GetLocation@ 0X41B90|269200
10:30:04.2513D24209Initialize::GetLocation@ 0X33E20|212512
10:30:04.2513D24209Initialize::GetLocation@ 0X3D6C0|251584
10:30:04.2513D24209Initialize::GetLocation@ 0XB8E10|757264
10:30:04.2513D24209Initialize::GetLocation@ 0XB8960|756064
10:30:04.2513D24209Initialize::GetLocation@ 0XACF0|44272
10:30:04.2513D24209Initialize::GetLocation@ 0XB8A00|756224
10:30:04.2513D24209Initialize::GetLocation@ 0X1B6B0|112304
10:30:04.2513D24209Initialize::GetLocation@ 0X1E100|123136
10:30:04.2513D24209Initialize::GetLocation@ 0X26730|157488
10:30:04.2513D24209Initialize::GetLocation@ 0X1146B0|1132208
10:30:04.2513D24209Initialize::GetLocation@ 0X114170|1130864
10:30:04.2513D24209Initialize::GetLocation@ 0X1B5A0|112032
10:30:04.2513D24209Initialize::GetLocation@ 0X1B4B0|111792
10:30:04.2513D24209Initialize::GetLocation@ 0XD680|54912
10:30:04.2513D24209Initialize::GetLocation@ 0X493C0|299968
10:30:04.2513D24209Initialize::GetLocation@ 0XA860|43104
10:30:04.2513D24209Initialize::GetLocation@ 0XD0000|851968
10:30:04.2513D24209Initialize::GetLocation@ 0XD06D0|853712
10:30:04.2513D24209Initialize::GetLocation@ 0XA860|43104
10:30:04.2513D24209Initialize::GetLocation@ 0XD11C0|856512
10:30:04.2513D24209Initialize::GetLocation@ 0XD1820|858144
10:30:04.2673D2448Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X98D10000>6|2|1247870977
10:30:04.3083D2483VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
10:30:04.3083D24209Initialize::GetLocation@ 0X4040|16448
10:30:04.3083D24209Initialize::GetLocation@ 0X6410|25616
10:30:04.3083D24209Initialize::GetLocation@ 0X65C0|26048
10:30:04.3113D2448Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X95960000>6|2|1247870977
10:30:04.3223D2493VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
10:30:04.3233D24110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
10:30:04.3233D24209Initialize::GetLocation@ 0XA5D0|42448
10:30:04.3233D24209Initialize::GetLocation@ 0XD4D0|54480
10:30:04.3233D24209Initialize::GetLocation@ 0XD290|53904
10:30:04.3763D24225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_84_8_20952 opened succesfuly
10:30:04.3763D2472HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
10:30:04.3763D24256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_84_8_20952 close 2147483647 bytes
10:30:04.3763D24301InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.165.0.5\OWExplorer.dll]
10:30:04.4093D24389ftw1OWExplorer injected
10:30:04.409455470Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnectedconnected to process tracker server
10:30:04.6324B2851`anonymous-namespace'::CreateProviderInitialize provider: NET
10:30:04.6324B28117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
10:30:04.6324B2854`anonymous-namespace'::CreateProviderFail to initlized provider: NET
10:30:04.6324B2851`anonymous-namespace'::CreateProviderInitialize provider: GPU
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |wmpnetwk.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |LEDKeeper2.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |MSI.CentralServer.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |CC_Engine_x64.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |lghub_updater.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |spd.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
10:30:04.64050EC726ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
10:30:08.53450EC562ProcessInjector::DoElevetedInjectionFailed to inject process [17224] 0x57
10:30:08.53450EC464ProcessInjector::HandleElevatedProcessFail injection to process (will retry again in 5 ses) [17224] [t: 3496 w_t_id: 3496]- conhost.exe (elevated True) 0x57
10:30:09.47850EC562ProcessInjector::DoElevetedInjectionFailed to inject process [17224] 0x57
10:30:09.47850EC481ProcessInjector::HandleElevatedProcessFail injection to process [17224] [t: 3496 w_t_id: 3496]- conhost.exe (elevated True) 0x57
10:30:09.47850EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |17224|: conhost.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [3440] [t: 0 w_t_id: 0]- LEDKeeper2.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |3440|: LEDKeeper2.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [3700] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |3700|: MsMpEng.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [4028] [t: 0 w_t_id: 0]- wmpnetwk.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |4028|: wmpnetwk.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [5964] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |5964|: MicrosoftEdgeUpdate.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [8852] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |8852|: lghub.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [8920] [t: 0 w_t_id: 0]- MSI.CentralServer.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |8920|: MSI.CentralServer.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [12440] [t: 0 w_t_id: 0]- CC_Engine_x64.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |12440|: CC_Engine_x64.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [12868] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |12868|: lghub.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [13388] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |13388|: nvcontainer.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [15408] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |15408|: NVDisplay.Container.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [16052] [t: 0 w_t_id: 0]- spd.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |16052|: spd.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [19296] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |19296|: GoogleUpdate.exe
10:32:34.96350EC481ProcessInjector::HandleElevatedProcessFail injection to process [19856] [t: 0 w_t_id: 0]- lghub_updater.exe (elevated True) 0x5
10:32:34.96350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |19856|: lghub_updater.exe
10:32:38.97250EC481ProcessInjector::HandleElevatedProcessFail injection to process [11880] [t: 0 w_t_id: 0]- wdsync.exe (elevated True) 0x5
10:32:38.97250EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |11880|: wdsync.exe
10:32:38.97250EC481ProcessInjector::HandleElevatedProcessFail injection to process [14044] [t: 0 w_t_id: 0]- kdd (elevated True) 0x5
10:32:38.97250EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |14044|: kdd
10:32:41.99750EC726ProcessInjector::InjectProcessprocess |CCleaner64.exe| missing h
10:33:09.8350EC481ProcessInjector::HandleElevatedProcessFail injection to process [6656] [t: 0 w_t_id: 0]- wdsync.exe (elevated True) 0x5
10:33:09.8350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |6656|: wdsync.exe
10:33:09.8350EC481ProcessInjector::HandleElevatedProcessFail injection to process [12148] [t: 0 w_t_id: 0]- wdsync-inotify.exe (elevated True) 0x5
10:33:09.8350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |12148|: wdsync-inotify.exe
10:33:09.8350EC481ProcessInjector::HandleElevatedProcessFail injection to process [15812] [t: 0 w_t_id: 0]- wdsync.exe (elevated True) 0x5
10:33:09.8350EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |15812|: wdsync.exe
10:34:58.64550EC726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
10:39:42.7650EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
10:39:42.7650EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
10:39:59.11450EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
13:49:37.61950EC481ProcessInjector::HandleElevatedProcessFail injection to process [15400] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
13:49:37.61950EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |15400|: owobs-ffmpeg-mux.exe
14:08:25.90550EC481ProcessInjector::HandleElevatedProcessFail injection to process [1964] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
14:08:25.90550EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |1964|: owobs-ffmpeg-mux.exe
14:11:30.43550EC481ProcessInjector::HandleElevatedProcessFail injection to process [876] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
14:11:30.43550EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |876|: owobs-ffmpeg-mux.exe
14:13:37.60950EC726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:14:15.95250EC481ProcessInjector::HandleElevatedProcessFail injection to process [19508] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0
14:14:15.95250EC413ProcessInjector::HandlePendingProccesssFail to inject pending process |19508|: owobs-ffmpeg-mux.exe
14:34:58.99950EC726ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
14:45:08.74350EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:45:08.74350EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:45:08.74350EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:52:24.35250EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:56:46.30850EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
14:56:46.30950EC726ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
15:16:46.99455475Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnecteddisconnected to process tracker server
15:16:46.2493D2466ProcessesMonitor::Stopstopping PM...
15:16:46.2494B28119ProcessesMonitor::ProcessEnumerateThreadexit process listener