TimeThreadLineFunctionMessage
13:38:31.19035E8361ftw1Loading (pid: 3416)
13:38:31.19235E848Update::DetectEnv (C:\Windows\SYSTEM32\d3d11.dll) <0X58560000>6|2|1203373203
13:38:31.19235E848Update::DetectEnv (C:\Windows\SYSTEM32\dxgi.dll) <0X59FB0000>6|2|1203373081
13:38:31.1984524146ProcessHardwareRecorder::CommandThreadstarting recorder thread
13:38:31.37035E8172DXManager::DetectFound in 0
13:38:31.37035E8209Initialize::GetLocation@ 0X4660|18016
13:38:31.37035E8209Initialize::GetLocation@ 0X661F0|418288
13:38:31.37035E8209Initialize::GetLocation@ 0X19DB0|105904
13:38:31.37035E8209Initialize::GetLocation@ 0X1350|4944
13:38:31.37035E8111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X58560000 <> 0X59FB0000
13:38:31.37035E8209Initialize::GetLocation@ 0XFE6D3020|-26398688
13:38:31.37035E8111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X58560000 <> 0X59FB0000
13:38:31.37035E8209Initialize::GetLocation@ 0XFE6D8060|-26378144
13:38:31.37035E8111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X58560000 <> 0X59FB0000
13:38:31.37035E8209Initialize::GetLocation@ 0XFE6CE620|-26417632
13:38:31.37035E8111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0X58560000 <> 0X59FB0000
13:38:31.37035E8209Initialize::GetLocation@ 0XFE5BAA80|-27547008
13:38:31.43635E848Update::DetectEnv (C:\Windows\SYSTEM32\d3d9.dll) <0X2DE50000>6|2|1203373142
13:38:31.52835E8129DXManager::DetectOK
13:38:31.60635E8186DXManager::DetectDone
13:38:31.60735E8215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
13:38:31.60835E8209Initialize::GetLocation@ 0X3AC00|240640
13:38:31.60835E8209Initialize::GetLocation@ 0X2C5B0|181680
13:38:31.60835E8209Initialize::GetLocation@ 0X36D00|224512
13:38:31.60835E8209Initialize::GetLocation@ 0XAE210|713232
13:38:31.60835E8209Initialize::GetLocation@ 0XADD60|712032
13:38:31.60835E8209Initialize::GetLocation@ 0X5880|22656
13:38:31.60835E8209Initialize::GetLocation@ 0XADE00|712192
13:38:31.60835E8209Initialize::GetLocation@ 0X20FF0|135152
13:38:31.60835E8209Initialize::GetLocation@ 0X1CA60|117344
13:38:31.60835E8209Initialize::GetLocation@ 0X1C8E0|116960
13:38:31.60835E8209Initialize::GetLocation@ 0X1086D0|1083088
13:38:31.60835E8209Initialize::GetLocation@ 0X108180|1081728
13:38:31.60835E8209Initialize::GetLocation@ 0X248B0|149680
13:38:31.60835E8209Initialize::GetLocation@ 0X247A0|149408
13:38:31.60835E8209Initialize::GetLocation@ 0X2C440|181312
13:38:31.60835E8209Initialize::GetLocation@ 0X3F3F0|259056
13:38:31.60835E8209Initialize::GetLocation@ 0XF3E0|62432
13:38:31.60835E8209Initialize::GetLocation@ 0XF4E0|62688
13:38:31.60835E8209Initialize::GetLocation@ 0XF5D0|62928
13:38:31.60835E8209Initialize::GetLocation@ 0XF3E0|62432
13:38:31.60835E8209Initialize::GetLocation@ 0XF280|62080
13:38:31.60835E8209Initialize::GetLocation@ 0XF430|62512
13:38:31.63935E848Update::DetectEnv (C:\Windows\SYSTEM32\dinput.dll) <0X339E0000>6|2|1203372033
13:38:31.65435E883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
13:38:31.65435E8209Initialize::GetLocation@ 0X3CC0|15552
13:38:31.65435E8209Initialize::GetLocation@ 0X5FD0|24528
13:38:31.65435E8209Initialize::GetLocation@ 0X6180|24960
13:38:31.65635E848Update::DetectEnv (C:\Windows\SYSTEM32\dinput8.dll) <0X21BA0000>6|2|1203372033
13:38:31.66735E893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
13:38:31.66735E8110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
13:38:31.66835E8209Initialize::GetLocation@ 0X10000|65536
13:38:31.66835E8209Initialize::GetLocation@ 0X12C80|76928
13:38:31.66835E8209Initialize::GetLocation@ 0X12A60|76384
13:38:31.72035E8225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_83_1_3416 opened succesfuly
13:38:31.72035E872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
13:38:31.72035E8256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_83_1_3416 close 2147483647 bytes
13:38:31.72035E8297InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.162.0.8\OWExplorer.dll]
13:38:31.89235E8385ftw1OWExplorer injected
13:38:32.46753AC51`anonymous-namespace'::CreateProviderInitialize provider: NET
13:38:32.46853AC117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
13:38:32.46853AC54`anonymous-namespace'::CreateProviderFail to initlized provider: NET
13:38:32.46853AC51`anonymous-namespace'::CreateProviderInitialize provider: GPU
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |vpnagent.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |com.docker.service| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |gameinputsvc.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |nassvc.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |httpd.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |mysqld.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |httpd.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |GoogleCrashHandler.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |GoogleCrashHandler64.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |gameinputsvc.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |tv_w32.exe| missing h
13:38:32.4855EBC629ProcessInjector::InjectProcessprocess |tv_x64.exe| missing h
13:40:03.435EBC629ProcessInjector::InjectProcessprocess |VSIXAutoUpdate.exe| missing h
13:40:03.435EBC629ProcessInjector::InjectProcessprocess |CCleaner64.exe| missing h
13:41:03.495EBC441ProcessInjector::HandleElevatedProcessFail injection to process [2968] [t: 0 w_t_id: 0]- vpnagent.exe (elevated True) 0x0
13:41:03.495EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |2968|: vpnagent.exe
13:41:03.495EBC441ProcessInjector::HandleElevatedProcessFail injection to process [3652] [t: 0 w_t_id: 0]- com.docker.service (elevated True) 0x0
13:41:03.495EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |3652|: com.docker.service
13:41:03.495EBC441ProcessInjector::HandleElevatedProcessFail injection to process [3720] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x0
13:41:03.495EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |3720|: gameinputsvc.exe
13:41:03.495EBC441ProcessInjector::HandleElevatedProcessFail injection to process [3984] [t: 0 w_t_id: 0]- nassvc.exe (elevated True) 0x0
13:41:03.495EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |3984|: nassvc.exe
13:41:03.495EBC441ProcessInjector::HandleElevatedProcessFail injection to process [4024] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0
13:41:03.495EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |4024|: MsMpEng.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [4044] [t: 0 w_t_id: 0]- httpd.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |4044|: httpd.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [4464] [t: 0 w_t_id: 0]- mysqld.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |4464|: mysqld.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [5204] [t: 0 w_t_id: 0]- DropboxUpdate.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5204|: DropboxUpdate.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [6484] [t: 0 w_t_id: 0]- GoogleCrashHandler64.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |6484|: GoogleCrashHandler64.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [7992] [t: 0 w_t_id: 0]- httpd.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |7992|: httpd.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [8444] [t: 0 w_t_id: 0]- tv_w32.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |8444|: tv_w32.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [11244] [t: 0 w_t_id: 0]- GoogleCrashHandler.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11244|: GoogleCrashHandler.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [11644] [t: 0 w_t_id: 0]- MicrosoftEdgeUpdate.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11644|: MicrosoftEdgeUpdate.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14088] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14088|: Teams.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [15320] [t: 0 w_t_id: 0]- gameinputsvc.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |15320|: gameinputsvc.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [17744] [t: 0 w_t_id: 0]- tv_x64.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |17744|: tv_x64.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [20272] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |20272|: Teams.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [20800] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |20800|: Teams.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [22024] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |22024|: Teams.exe
13:41:03.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23172] [t: 0 w_t_id: 0]- GoogleUpdate.exe (elevated True) 0x0
13:41:03.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23172|: GoogleUpdate.exe
13:41:07.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [13696] [t: 0 w_t_id: 0]- docker-mutagen.exe (elevated True) 0x0
13:41:07.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |13696|: docker-mutagen.exe
13:41:07.505EBC441ProcessInjector::HandleElevatedProcessFail injection to process [19552] [t: 0 w_t_id: 0]- com.docker.backend.exe (elevated True) 0x0
13:41:07.505EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |19552|: com.docker.backend.exe
13:41:19.585EBC441ProcessInjector::HandleElevatedProcessFail injection to process [10556] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:41:19.585EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |10556|: Teams.exe
13:41:31.635EBC441ProcessInjector::HandleElevatedProcessFail injection to process [5556] [t: 0 w_t_id: 0]- vpnkit-bridge.exe (elevated True) 0x0
13:41:31.635EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5556|: vpnkit-bridge.exe
13:41:37.665EBC441ProcessInjector::HandleElevatedProcessFail injection to process [676] [t: 0 w_t_id: 0]- vpnkit.exe (elevated True) 0x0
13:41:37.665EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |676|: vpnkit.exe
13:41:39.645EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23216] [t: 0 w_t_id: 0]- com.docker.proxy.exe (elevated True) 0x0
13:41:39.645EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23216|: com.docker.proxy.exe
13:43:12.1645EBC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:43:13.3075EBC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
13:44:16.1665EBC441ProcessInjector::HandleElevatedProcessFail injection to process [4352] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:44:16.1665EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |4352|: Teams.exe
13:47:03.1775EBC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
13:49:51.1925EBC629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
13:54:17.2225EBC441ProcessInjector::HandleElevatedProcessFail injection to process [12460] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:54:17.2225EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |12460|: Teams.exe
13:58:18.2715EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23040] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
13:58:18.2715EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23040|: Teams.exe
14:03:29.875EBC441ProcessInjector::HandleElevatedProcessFail injection to process [13080] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:29.875EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |13080|: Code.exe
14:03:29.875EBC441ProcessInjector::HandleElevatedProcessFail injection to process [22900] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:29.875EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |22900|: Code.exe
14:03:31.865EBC441ProcessInjector::HandleElevatedProcessFail injection to process [15888] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:31.865EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |15888|: Code.exe
14:03:32.885EBC441ProcessInjector::HandleElevatedProcessFail injection to process [13488] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:32.885EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |13488|: Code.exe
14:03:32.885EBC441ProcessInjector::HandleElevatedProcessFail injection to process [21152] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:32.895EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |21152|: Code.exe
14:03:33.905EBC441ProcessInjector::HandleElevatedProcessFail injection to process [17528] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:33.905EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |17528|: Code.exe
14:03:42.895EBC441ProcessInjector::HandleElevatedProcessFail injection to process [6884] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:42.895EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |6884|: Code.exe
14:03:42.895EBC441ProcessInjector::HandleElevatedProcessFail injection to process [16856] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:42.895EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |16856|: Code.exe
14:03:42.895EBC441ProcessInjector::HandleElevatedProcessFail injection to process [19988] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:42.895EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |19988|: Code.exe
14:03:42.895EBC441ProcessInjector::HandleElevatedProcessFail injection to process [22632] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
14:03:42.895EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |22632|: Code.exe
14:03:43.865EBC441ProcessInjector::HandleElevatedProcessFail injection to process [11944] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:03:43.865EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11944|: rg.exe
14:03:43.865EBC441ProcessInjector::HandleElevatedProcessFail injection to process [12668] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:03:43.865EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |12668|: rg.exe
14:03:43.865EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14960] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:03:43.865EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14960|: rg.exe
14:03:43.865EBC441ProcessInjector::HandleElevatedProcessFail injection to process [15844] [t: 0 w_t_id: 0]- rg.exe (elevated True) 0x5
14:03:43.865EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |15844|: rg.exe
14:14:39.7815EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14256] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
14:14:39.7815EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14256|: Teams.exe
14:18:03.2965EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
14:19:49.6235EBC441ProcessInjector::HandleElevatedProcessFail injection to process [1140] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
14:19:49.6235EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |1140|: node.exe
14:19:49.6235EBC441ProcessInjector::HandleElevatedProcessFail injection to process [5112] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
14:19:49.6235EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |5112|: node.exe
14:20:21.6835EBC441ProcessInjector::HandleElevatedProcessFail injection to process [9144] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:20:21.6835EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |9144|: Teams.exe
14:39:48.4235EBC441ProcessInjector::HandleElevatedProcessFail injection to process [16788] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:39:48.4245EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |16788|: Teams.exe
14:50:29.5495EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23456] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
14:50:29.5495EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23456|: Teams.exe
14:54:38.6535EBC441ProcessInjector::HandleElevatedProcessFail injection to process [18672] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
14:54:38.6535EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |18672|: Teams.exe
14:57:10.6665EBC441ProcessInjector::HandleElevatedProcessFail injection to process [12332] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
14:57:10.6665EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |12332|: Teams.exe
15:02:11.6865EBC441ProcessInjector::HandleElevatedProcessFail injection to process [17176] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:02:11.6865EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |17176|: Teams.exe
15:04:05.7005EBC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
15:07:00.7495EBC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
15:07:00.7495EBC629ProcessInjector::InjectProcessprocess |MpCmdRun.exe| missing h
15:08:20.7485EBC441ProcessInjector::HandleElevatedProcessFail injection to process [6956] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:08:20.7485EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |6956|: Teams.exe
15:13:22.7785EBC441ProcessInjector::HandleElevatedProcessFail injection to process [12448] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:13:22.7785EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |12448|: Teams.exe
15:18:02.8345EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
15:19:54.8465EBC441ProcessInjector::HandleElevatedProcessFail injection to process [4836] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:19:54.8475EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |4836|: Teams.exe
15:22:10.8565EBC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
15:24:57.8655EBC441ProcessInjector::HandleElevatedProcessFail injection to process [7120] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:24:57.8655EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |7120|: Teams.exe
15:27:57.8815EBC441ProcessInjector::HandleElevatedProcessFail injection to process [24160] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:27:57.8815EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |24160|: Teams.exe
15:33:59.55EBC441ProcessInjector::HandleElevatedProcessFail injection to process [24340] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:33:59.55EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |24340|: Teams.exe
15:40:00.1195EBC441ProcessInjector::HandleElevatedProcessFail injection to process [22908] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:40:00.1195EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |22908|: Teams.exe
15:46:00.2235EBC441ProcessInjector::HandleElevatedProcessFail injection to process [16160] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:46:00.2235EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |16160|: Teams.exe
15:49:51.2405EBC629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
15:50:40.2595EBC441ProcessInjector::HandleElevatedProcessFail injection to process [19612] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
15:50:40.2595EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |19612|: Teams.exe
15:55:20.3295EBC441ProcessInjector::HandleElevatedProcessFail injection to process [7608] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
15:55:20.3295EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |7608|: Teams.exe
16:00:38.3785EBC441ProcessInjector::HandleElevatedProcessFail injection to process [20652] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:00:38.3785EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |20652|: Teams.exe
16:09:27.4525EBC441ProcessInjector::HandleElevatedProcessFail injection to process [16156] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:09:27.4525EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |16156|: Teams.exe
16:15:28.5345EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14568] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:15:28.5345EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14568|: Teams.exe
16:18:02.5445EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
16:19:03.5575EBC441ProcessInjector::HandleElevatedProcessFail injection to process [16964] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:19:03.5575EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |16964|: Teams.exe
16:29:50.6395EBC441ProcessInjector::HandleElevatedProcessFail injection to process [20792] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:29:50.6395EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |20792|: Teams.exe
16:40:35.8195EBC441ProcessInjector::HandleElevatedProcessFail injection to process [11000] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:40:35.8195EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11000|: Teams.exe
16:45:07.8735EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14800] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:45:07.8735EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14800|: Teams.exe
16:49:13.8925EBC441ProcessInjector::HandleElevatedProcessFail injection to process [8816] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:49:13.8925EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |8816|: Teams.exe
16:55:43.9045EBC441ProcessInjector::HandleElevatedProcessFail injection to process [24172] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:55:43.9045EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |24172|: Teams.exe
16:59:57.9075EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14044] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:59:57.9075EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14044|: Teams.exe
17:03:36.9265EBC441ProcessInjector::HandleElevatedProcessFail injection to process [15924] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:03:36.9265EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |15924|: Teams.exe
17:09:36.9655EBC441ProcessInjector::HandleElevatedProcessFail injection to process [18168] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:09:36.9655EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |18168|: Teams.exe
17:18:02.9465EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
17:25:55.9995EBC441ProcessInjector::HandleElevatedProcessFail injection to process [21696] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:25:55.9995EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |21696|: Teams.exe
17:29:56.115EBC441ProcessInjector::HandleElevatedProcessFail injection to process [19272] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:29:56.115EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |19272|: Teams.exe
17:34:37.65EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14632] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:34:37.65EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14632|: Teams.exe
17:43:11.9515EBC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
17:44:36.9705EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23568] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
17:44:36.9705EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23568|: Teams.exe
18:00:59.2545EBC441ProcessInjector::HandleElevatedProcessFail injection to process [16352] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:00:59.2555EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |16352|: Teams.exe
18:05:00.2835EBC441ProcessInjector::HandleElevatedProcessFail injection to process [1820] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:05:00.2835EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |1820|: Teams.exe
18:10:09.3465EBC441ProcessInjector::HandleElevatedProcessFail injection to process [19824] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:10:09.3465EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |19824|: Teams.exe
18:10:47.3465EBC629ProcessInjector::InjectProcessprocess |MicrosoftEdgeUpdate.exe| missing h
18:16:10.4185EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14060] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:16:10.4185EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14060|: Teams.exe
18:18:03.4485EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
18:22:10.5085EBC441ProcessInjector::HandleElevatedProcessFail injection to process [6960] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:22:10.5085EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |6960|: Teams.exe
18:28:11.5295EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23132] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:28:11.5295EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23132|: Teams.exe
18:33:07.7775EBC441ProcessInjector::HandleElevatedProcessFail injection to process [8628] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x0
18:33:07.7775EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |8628|: node.exe
18:33:07.7775EBC441ProcessInjector::HandleElevatedProcessFail injection to process [22480] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x0
18:33:07.7775EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |22480|: node.exe
18:34:12.8295EBC441ProcessInjector::HandleElevatedProcessFail injection to process [11516] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
18:34:12.8295EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11516|: Teams.exe
18:38:53.1545EBC441ProcessInjector::HandleElevatedProcessFail injection to process [14776] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:38:53.1545EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |14776|: Teams.exe
18:49:34.5185EBC441ProcessInjector::HandleElevatedProcessFail injection to process [17208] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:49:34.5185EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |17208|: Teams.exe
18:49:51.5205EBC629ProcessInjector::InjectProcessprocess |GoogleUpdate.exe| missing h
19:00:49.6095EBC441ProcessInjector::HandleElevatedProcessFail injection to process [11328] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:00:49.6095EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |11328|: Teams.exe
19:03:12.6405EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
19:03:12.6405EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
19:06:56.6445EBC441ProcessInjector::HandleElevatedProcessFail injection to process [1720] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:06:56.6445EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |1720|: Teams.exe
19:10:56.6465EBC441ProcessInjector::HandleElevatedProcessFail injection to process [19532] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:10:56.6465EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |19532|: Teams.exe
19:18:02.6735EBC629ProcessInjector::InjectProcessprocess |DropboxUpdate.exe| missing h
19:22:11.7175EBC629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
19:32:18.4315EBC441ProcessInjector::HandleElevatedProcessFail injection to process [23008] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f
19:32:18.4315EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |23008|: Code.exe
19:32:59.5245EBC441ProcessInjector::HandleElevatedProcessFail injection to process [18836] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
19:32:59.5245EBC380ProcessInjector::HandlePendingProccesssFail to inject pending process |18836|: Teams.exe