Time | Thread | Line | Function | Message |
14:07:10.295 | 1550 | 361 | ftw1 | Loading (pid: 13780) |
14:07:10.295 | 4948 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
14:07:10.296 | 1550 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0X34B00000>6|2|1164117043 |
14:07:10.296 | 1550 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0X367D0000>6|2|1164117043 |
14:07:10.368 | 1550 | 172 | DXManager::Detect | Found in 0 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0X4910|18704 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0X632A0|406176 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0X1EF30|126768 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0X1D70|7536 |
14:07:10.368 | 1550 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34B00000 <> 0X367D0000 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0XFE45AB00|-28988672 |
14:07:10.368 | 1550 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34B00000 <> 0X367D0000 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0XFE461400|-28961792 |
14:07:10.368 | 1550 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34B00000 <> 0X367D0000 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0XFE456DE0|-29004320 |
14:07:10.368 | 1550 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34B00000 <> 0X367D0000 |
14:07:10.368 | 1550 | 209 | Initialize::GetLocation | @ 0XFE33E9B0|-30152272 |
14:07:10.384 | 1550 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X316D0000>6|2|1164117043 |
14:07:10.455 | 1550 | 129 | DXManager::Detect | OK |
14:07:10.485 | 1550 | 186 | DXManager::Detect | Done |
14:07:10.485 | 1550 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X3A0A0|237728 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X2DE30|187952 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X35CA0|220320 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0XAA4C0|697536 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0XAA010|696336 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X62B0|25264 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0XAA0B0|696496 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X25E00|155136 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X1E290|123536 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X1E110|123152 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0XEBA90|965264 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0XEB540|963904 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X25F30|155440 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X25CF0|154864 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X2DCE0|187616 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X3D010|249872 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X10CD0|68816 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X10DD0|69072 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X10EC0|69312 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X10CD0|68816 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X10B70|68464 |
14:07:10.485 | 1550 | 209 | Initialize::GetLocation | @ 0X10D20|68896 |
14:07:10.499 | 1550 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0X1F660000>6|2|1164115969 |
14:07:10.509 | 1550 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
14:07:10.509 | 1550 | 209 | Initialize::GetLocation | @ 0X3D10|15632 |
14:07:10.509 | 1550 | 209 | Initialize::GetLocation | @ 0X6130|24880 |
14:07:10.509 | 1550 | 209 | Initialize::GetLocation | @ 0X62E0|25312 |
14:07:10.510 | 1550 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X2D3F0000>6|2|1164115969 |
14:07:10.516 | 1550 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
14:07:10.516 | 1550 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
14:07:10.517 | 1550 | 209 | Initialize::GetLocation | @ 0X100B0|65712 |
14:07:10.517 | 1550 | 209 | Initialize::GetLocation | @ 0X12DE0|77280 |
14:07:10.517 | 1550 | 209 | Initialize::GetLocation | @ 0X12BB0|76720 |
14:07:10.568 | 1550 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_79_8_13780 opened succesfuly |
14:07:10.568 | 1550 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
14:07:10.568 | 1550 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_79_8_13780 close 2147483647 bytes |
14:07:10.568 | 1550 | 297 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.153.0.13\OWExplorer.dll] |
14:07:10.570 | 1550 | 385 | ftw1 | OWExplorer injected |
14:07:10.796 | 48A0 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
14:07:10.796 | 48A0 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
14:07:10.796 | 48A0 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
14:07:10.796 | 48A0 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [916] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |916|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2440] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2440|: NVDisplay.Container.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3248] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3248|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3460] [t: 0 w_t_id: 0]- CCXProcess.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3460|: CCXProcess.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4812] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4812|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5488] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5488|: nvcontainer.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6220] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6220|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8588] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8588|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8920] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8920|: node.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10660] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10660|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11856] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11856|: NVIDIA Share.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12556] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12556|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17788] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17788|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18136] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18136|: Code.exe |
14:09:41.565 | 44F4 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18168] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x1f |
14:09:41.565 | 44F4 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18168|: NVIDIA Share.exe |
14:48:25.57 | 1550 | 66 | ProcessesMonitor::Stop | stopping PM... |
14:48:25.57 | 48A0 | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
14:48:31.59 | 1550 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |