TimeThreadLineFunctionMessage
11:36:28.755495C361ftw1Loading (pid: 15252)
11:36:28.757495C48Update::DetectEnv (C:\Windows\SYSTEM32\d3d11.dll) <0XCA490000>6|2|1203372419
11:36:28.757495C48Update::DetectEnv (C:\Windows\SYSTEM32\dxgi.dll) <0XCBB30000>6|2|1203373081
11:36:28.7864C3C146ProcessHardwareRecorder::CommandThreadstarting recorder thread
11:36:28.925495C172DXManager::DetectFound in 0
11:36:28.927495C209Initialize::GetLocation@ 0X4660|18016
11:36:28.927495C209Initialize::GetLocation@ 0X661F0|418288
11:36:28.927495C209Initialize::GetLocation@ 0X19DB0|105904
11:36:28.927495C209Initialize::GetLocation@ 0X1350|4944
11:36:28.928495C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0XCA490000 <> 0XCBB30000
11:36:28.928495C209Initialize::GetLocation@ 0XFEA82E80|-22532480
11:36:28.928495C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0XCA490000 <> 0XCBB30000
11:36:28.928495C209Initialize::GetLocation@ 0XFEA87F80|-22511744
11:36:28.928495C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0XCA490000 <> 0XCBB30000
11:36:28.928495C209Initialize::GetLocation@ 0XFEA7E620|-22551008
11:36:28.928495C111Update::CaughtC:\Windows\SYSTEM32\d3d11.dll|0XCA490000 <> 0XCBB30000
11:36:28.928495C209Initialize::GetLocation@ 0XFE96AD10|-23679728
11:36:29.120495C48Update::DetectEnv (C:\Windows\SYSTEM32\d3d9.dll) <0XB5C20000>6|2|1203372419
11:36:29.286495C129DXManager::DetectOK
11:36:29.430495C186DXManager::DetectDone
11:36:29.431495C215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
11:36:29.431495C209Initialize::GetLocation@ 0X3AC00|240640
11:36:29.431495C209Initialize::GetLocation@ 0X2C5B0|181680
11:36:29.431495C209Initialize::GetLocation@ 0X36D00|224512
11:36:29.431495C209Initialize::GetLocation@ 0XAE020|712736
11:36:29.431495C209Initialize::GetLocation@ 0XADB70|711536
11:36:29.431495C209Initialize::GetLocation@ 0X5880|22656
11:36:29.431495C209Initialize::GetLocation@ 0XADC10|711696
11:36:29.431495C209Initialize::GetLocation@ 0X20FF0|135152
11:36:29.431495C209Initialize::GetLocation@ 0X1CA60|117344
11:36:29.431495C209Initialize::GetLocation@ 0X1C8E0|116960
11:36:29.431495C209Initialize::GetLocation@ 0X1084E0|1082592
11:36:29.431495C209Initialize::GetLocation@ 0X107F90|1081232
11:36:29.431495C209Initialize::GetLocation@ 0X248B0|149680
11:36:29.431495C209Initialize::GetLocation@ 0X247A0|149408
11:36:29.431495C209Initialize::GetLocation@ 0X2C440|181312
11:36:29.431495C209Initialize::GetLocation@ 0X3F210|258576
11:36:29.431495C209Initialize::GetLocation@ 0XF3E0|62432
11:36:29.431495C209Initialize::GetLocation@ 0XF4E0|62688
11:36:29.431495C209Initialize::GetLocation@ 0XF5D0|62928
11:36:29.431495C209Initialize::GetLocation@ 0XF3E0|62432
11:36:29.431495C209Initialize::GetLocation@ 0XF280|62080
11:36:29.431495C209Initialize::GetLocation@ 0XF430|62512
11:36:29.537495C48Update::DetectEnv (C:\Windows\SYSTEM32\dinput.dll) <0X57860000>6|2|1203372033
11:36:29.548495C83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
11:36:29.549495C209Initialize::GetLocation@ 0X3CC0|15552
11:36:29.549495C209Initialize::GetLocation@ 0X5FD0|24528
11:36:29.549495C209Initialize::GetLocation@ 0X6180|24960
11:36:29.606495C48Update::DetectEnv (C:\Windows\SYSTEM32\dinput8.dll) <0X57810000>6|2|1203372033
11:36:29.615495C93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
11:36:29.615495C110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
11:36:29.615495C209Initialize::GetLocation@ 0X10000|65536
11:36:29.615495C209Initialize::GetLocation@ 0X12C80|76928
11:36:29.615495C209Initialize::GetLocation@ 0X12A60|76384
11:36:29.668495C225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_80_3_15252 opened succesfuly
11:36:29.668495C72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
11:36:29.668495C256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_80_3_15252 close 2147483647 bytes
11:36:29.668495C297InjectOWExplorerExplorer file name [C:\Program Files (x86)\Overwolf\0.156.1.1\OWExplorer.dll]
11:36:29.776495C385ftw1OWExplorer injected
11:36:30.7924D4451`anonymous-namespace'::CreateProviderInitialize provider: NET
11:36:30.7924D44117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
11:36:30.7924D4454`anonymous-namespace'::CreateProviderFail to initlized provider: NET
11:36:30.7924D4451`anonymous-namespace'::CreateProviderInitialize provider: GPU
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [4008] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |4008|: MsMpEng.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [9828] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9828|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [10660] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |10660|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [10784] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |10784|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [11784] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |11784|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [11848] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |11848|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [12032] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |12032|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [13264] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |13264|: Code.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [14504] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |14504|: node.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [14684] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |14684|: node.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [16624] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |16624|: Teams.exe
11:39:01.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [17680] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
11:39:01.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |17680|: Teams.exe
11:39:02.3574D48394ProcessInjector::HandleElevatedProcessFail injection to process [20152] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
11:39:02.3574D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |20152|: Teams.exe
11:39:06.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [20700] [t: 0 w_t_id: 0]- com.docker.backend.exe (elevated True) 0x5
11:39:06.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |20700|: com.docker.backend.exe
11:39:06.3584D48394ProcessInjector::HandleElevatedProcessFail injection to process [20732] [t: 0 w_t_id: 0]- docker-mutagen.exe (elevated True) 0x5
11:39:06.3584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |20732|: docker-mutagen.exe
11:39:21.3554D48394ProcessInjector::HandleElevatedProcessFail injection to process [18712] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:39:21.3554D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18712|: node.exe
11:39:21.3554D48394ProcessInjector::HandleElevatedProcessFail injection to process [22208] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:39:21.3554D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22208|: node.exe
11:39:23.3574D48394ProcessInjector::HandleElevatedProcessFail injection to process [2920] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:39:23.3574D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |2920|: node.exe
11:39:23.3574D48394ProcessInjector::HandleElevatedProcessFail injection to process [19688] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:39:23.3574D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |19688|: node.exe
11:39:33.3704D48394ProcessInjector::HandleElevatedProcessFail injection to process [22328] [t: 0 w_t_id: 0]- vpnkit-bridge.exe (elevated True) 0x5
11:39:33.3704D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22328|: vpnkit-bridge.exe
11:39:45.3704D48394ProcessInjector::HandleElevatedProcessFail injection to process [3116] [t: 0 w_t_id: 0]- vpnkit.exe (elevated True) 0x5
11:39:45.3704D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |3116|: vpnkit.exe
11:40:05.3714D48394ProcessInjector::HandleElevatedProcessFail injection to process [15996] [t: 0 w_t_id: 0]- com.docker.proxy.exe (elevated True) 0x5
11:40:05.3714D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |15996|: com.docker.proxy.exe
11:40:27.3824D48394ProcessInjector::HandleElevatedProcessFail injection to process [19604] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
11:40:27.3824D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |19604|: node.exe
11:43:38.4424D48394ProcessInjector::HandleElevatedProcessFail injection to process [18572] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
11:43:38.4424D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18572|: Teams.exe
11:46:13.4584D48394ProcessInjector::HandleElevatedProcessFail injection to process [10488] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:46:13.4584D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |10488|: Code.exe
11:59:29.384D48394ProcessInjector::HandleElevatedProcessFail injection to process [19156] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:59:29.384D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |19156|: Code.exe
11:59:29.384D48394ProcessInjector::HandleElevatedProcessFail injection to process [21744] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:59:29.384D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21744|: Code.exe
11:59:30.454D48394ProcessInjector::HandleElevatedProcessFail injection to process [5408] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
11:59:30.454D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |5408|: Code.exe
12:05:49.4514D48394ProcessInjector::HandleElevatedProcessFail injection to process [10756] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x1f
12:05:49.4514D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |10756|: Code.exe
12:05:49.4514D48394ProcessInjector::HandleElevatedProcessFail injection to process [18956] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x1f
12:05:49.4514D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18956|: node.exe
12:05:50.4574D48394ProcessInjector::HandleElevatedProcessFail injection to process [6856] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x1f
12:05:50.4574D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |6856|: node.exe
12:15:49.8374D48394ProcessInjector::HandleElevatedProcessFail injection to process [684] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
12:15:49.8374D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |684|: Teams.exe
12:25:28.9764D48394ProcessInjector::HandleElevatedProcessFail injection to process [6768] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
12:25:28.9764D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |6768|: Teams.exe
12:37:09.1014D48394ProcessInjector::HandleElevatedProcessFail injection to process [9140] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
12:37:09.1014D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9140|: Teams.exe
12:47:15.2464D48394ProcessInjector::HandleElevatedProcessFail injection to process [4948] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
12:47:15.2464D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |4948|: Teams.exe
12:57:17.3574D48394ProcessInjector::HandleElevatedProcessFail injection to process [3692] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
12:57:17.3574D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |3692|: Teams.exe
13:05:28.4254D48394ProcessInjector::HandleElevatedProcessFail injection to process [13128] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
13:05:28.4254D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |13128|: Teams.exe
13:13:30.4924D48394ProcessInjector::HandleElevatedProcessFail injection to process [13480] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
13:13:30.4924D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |13480|: Teams.exe
13:21:32.6024D48394ProcessInjector::HandleElevatedProcessFail injection to process [13284] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
13:21:32.6024D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |13284|: Teams.exe
13:29:35.6874D48394ProcessInjector::HandleElevatedProcessFail injection to process [6784] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
13:29:35.6874D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |6784|: Teams.exe
13:37:38.7444D48394ProcessInjector::HandleElevatedProcessFail injection to process [21428] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
13:37:38.7444D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21428|: Teams.exe
13:45:41.264D48394ProcessInjector::HandleElevatedProcessFail injection to process [21776] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
13:45:41.264D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21776|: Teams.exe
14:17:54.6704D48394ProcessInjector::HandleElevatedProcessFail injection to process [9912] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:17:54.6704D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9912|: Teams.exe
14:21:56.6824D48394ProcessInjector::HandleElevatedProcessFail injection to process [4024] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:21:56.6824D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |4024|: Teams.exe
14:31:59.7594D48394ProcessInjector::HandleElevatedProcessFail injection to process [17588] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:31:59.7594D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |17588|: Teams.exe
14:42:01.8594D48394ProcessInjector::HandleElevatedProcessFail injection to process [17972] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:42:01.8594D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |17972|: Teams.exe
14:48:02.9974D48394ProcessInjector::HandleElevatedProcessFail injection to process [7732] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
14:48:02.9974D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |7732|: Teams.exe
14:52:05.454D48394ProcessInjector::HandleElevatedProcessFail injection to process [22948] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
14:52:05.454D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22948|: Teams.exe
15:00:06.1124D48394ProcessInjector::HandleElevatedProcessFail injection to process [18012] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:00:06.1124D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18012|: Teams.exe
15:12:13.1934D48394ProcessInjector::HandleElevatedProcessFail injection to process [12704] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:12:13.1944D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |12704|: Teams.exe
15:18:15.2404D48394ProcessInjector::HandleElevatedProcessFail injection to process [22584] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:18:15.2404D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22584|: Teams.exe
15:22:17.3144D48394ProcessInjector::HandleElevatedProcessFail injection to process [19108] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:22:17.3144D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |19108|: Teams.exe
15:26:17.3484D48394ProcessInjector::HandleElevatedProcessFail injection to process [23504] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:26:17.3484D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |23504|: Teams.exe
15:32:19.3854D48394ProcessInjector::HandleElevatedProcessFail injection to process [8384] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:32:19.3854D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |8384|: Teams.exe
15:42:20.4764D48394ProcessInjector::HandleElevatedProcessFail injection to process [23104] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:42:20.4764D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |23104|: Teams.exe
15:50:23.5564D48394ProcessInjector::HandleElevatedProcessFail injection to process [15832] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
15:50:23.5564D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |15832|: Teams.exe
15:56:23.8044D48394ProcessInjector::HandleElevatedProcessFail injection to process [9412] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
15:56:23.8044D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9412|: Teams.exe
16:02:24.1864D48394ProcessInjector::HandleElevatedProcessFail injection to process [24540] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:02:24.1864D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |24540|: Teams.exe
16:02:57.1884D48394ProcessInjector::HandleElevatedProcessFail injection to process [22672] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:02:57.1884D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22672|: node.exe
16:02:57.1884D48394ProcessInjector::HandleElevatedProcessFail injection to process [24200] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:02:57.1884D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |24200|: node.exe
16:02:58.1914D48394ProcessInjector::HandleElevatedProcessFail injection to process [11488] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:02:58.1914D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |11488|: node.exe
16:02:58.1914D48394ProcessInjector::HandleElevatedProcessFail injection to process [21104] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:02:58.1914D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21104|: node.exe
16:02:59.1864D48394ProcessInjector::HandleElevatedProcessFail injection to process [4208] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:02:59.1864D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |4208|: node.exe
16:02:59.1864D48394ProcessInjector::HandleElevatedProcessFail injection to process [23680] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:02:59.1864D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |23680|: node.exe
16:03:05.1854D48394ProcessInjector::HandleElevatedProcessFail injection to process [23336] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x5
16:03:05.1854D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |23336|: node.exe
16:08:32.2994D48394ProcessInjector::HandleElevatedProcessFail injection to process [7640] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:08:32.2994D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |7640|: Teams.exe
16:14:33.4494D48394ProcessInjector::HandleElevatedProcessFail injection to process [9064] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
16:14:33.4494D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9064|: Teams.exe
16:40:49.4394D48394ProcessInjector::HandleElevatedProcessFail injection to process [11256] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:40:49.4404D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |11256|: Teams.exe
16:44:50.4784D48394ProcessInjector::HandleElevatedProcessFail injection to process [24040] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:44:50.4784D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |24040|: Teams.exe
16:50:52.5404D48394ProcessInjector::HandleElevatedProcessFail injection to process [4312] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:50:52.5404D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |4312|: Teams.exe
16:54:53.5644D48394ProcessInjector::HandleElevatedProcessFail injection to process [9044] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
16:54:53.5644D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9044|: Teams.exe
17:02:59.5444D48394ProcessInjector::HandleElevatedProcessFail injection to process [18952] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
17:02:59.5444D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18952|: Teams.exe
17:06:58.9594D48394ProcessInjector::HandleElevatedProcessFail injection to process [12096] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
17:06:58.9594D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |12096|: Teams.exe
17:15:04.94D48394ProcessInjector::HandleElevatedProcessFail injection to process [7148] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
17:15:04.94D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |7148|: Teams.exe
17:23:09.914D48394ProcessInjector::HandleElevatedProcessFail injection to process [21972] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
17:23:09.924D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21972|: Teams.exe
17:27:09.1184D48394ProcessInjector::HandleElevatedProcessFail injection to process [22320] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
17:27:09.1194D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22320|: Teams.exe
17:31:10.1484D48394ProcessInjector::HandleElevatedProcessFail injection to process [21016] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
17:31:10.1484D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21016|: Teams.exe
17:37:11.3074D48394ProcessInjector::HandleElevatedProcessFail injection to process [7556] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:37:11.3074D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |7556|: Teams.exe
17:43:15.5714D48394ProcessInjector::HandleElevatedProcessFail injection to process [25560] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
17:43:15.5714D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |25560|: Teams.exe
17:47:16.7054D48394ProcessInjector::HandleElevatedProcessFail injection to process [19760] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
17:47:16.7054D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |19760|: Teams.exe
17:55:18.1224D48394ProcessInjector::HandleElevatedProcessFail injection to process [23888] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
17:55:18.1224D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |23888|: Teams.exe
18:01:21.4994D48394ProcessInjector::HandleElevatedProcessFail injection to process [12108] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:01:21.4994D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |12108|: Teams.exe
18:07:24.7184D48394ProcessInjector::HandleElevatedProcessFail injection to process [24408] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
18:07:24.7184D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |24408|: Teams.exe
18:13:30.8254D48394ProcessInjector::HandleElevatedProcessFail injection to process [19924] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
18:13:30.8254D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |19924|: Teams.exe
18:19:34.914D48394ProcessInjector::HandleElevatedProcessFail injection to process [9488] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
18:19:34.924D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |9488|: Teams.exe
18:25:35.3044D48394ProcessInjector::HandleElevatedProcessFail injection to process [548] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
18:25:35.3044D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |548|: Teams.exe
18:31:39.4624D48394ProcessInjector::HandleElevatedProcessFail injection to process [17468] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
18:31:39.4624D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |17468|: Teams.exe
18:37:39.5334D48394ProcessInjector::HandleElevatedProcessFail injection to process [16244] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
18:37:39.5334D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |16244|: Teams.exe
19:15:54.114D48394ProcessInjector::HandleElevatedProcessFail injection to process [16260] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
19:15:54.114D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |16260|: Teams.exe
19:31:59.2224D48394ProcessInjector::HandleElevatedProcessFail injection to process [25140] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x1f
19:31:59.2224D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |25140|: Teams.exe
19:37:52.4664D48394ProcessInjector::HandleElevatedProcessFail injection to process [6996] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
19:37:52.4664D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |6996|: Code.exe
19:42:04.4794D48394ProcessInjector::HandleElevatedProcessFail injection to process [22728] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:42:04.4794D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |22728|: Teams.exe
19:52:09.6154D48394ProcessInjector::HandleElevatedProcessFail injection to process [18556] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
19:52:09.6164D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18556|: Teams.exe
20:02:12.7524D48394ProcessInjector::HandleElevatedProcessFail injection to process [6244] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
20:02:12.7524D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |6244|: Teams.exe
20:12:19.924D48394ProcessInjector::HandleElevatedProcessFail injection to process [5748] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
20:12:19.924D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |5748|: Teams.exe
20:17:12.2474D48394ProcessInjector::HandleElevatedProcessFail injection to process [21720] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x1f
20:17:12.2474D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |21720|: node.exe
20:17:12.2474D48394ProcessInjector::HandleElevatedProcessFail injection to process [25368] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x1f
20:17:12.2474D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |25368|: node.exe
20:22:24.4884D48394ProcessInjector::HandleElevatedProcessFail injection to process [10368] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x0
20:22:24.4884D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |10368|: Teams.exe
20:26:53.7664D48394ProcessInjector::HandleElevatedProcessFail injection to process [18864] [t: 0 w_t_id: 0]- Microsoft.ServiceHub.Controller.exe (elevated True) 0x1f
20:26:53.7664D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |18864|: Microsoft.ServiceHub.Controller.exe
20:56:47.7124D48394ProcessInjector::HandleElevatedProcessFail injection to process [16080] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
20:56:47.7134D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |16080|: Teams.exe
21:02:47.9324D48394ProcessInjector::HandleElevatedProcessFail injection to process [25220] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
21:02:47.9324D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |25220|: Teams.exe
21:18:56.1824D48394ProcessInjector::HandleElevatedProcessFail injection to process [1808] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
21:18:56.1824D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |1808|: Teams.exe
21:26:58.3774D48394ProcessInjector::HandleElevatedProcessFail injection to process [24712] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
21:26:58.3774D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |24712|: Teams.exe
21:37:03.5624D48394ProcessInjector::HandleElevatedProcessFail injection to process [3100] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
21:37:03.5624D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |3100|: Teams.exe
21:47:07.6734D48394ProcessInjector::HandleElevatedProcessFail injection to process [17604] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
21:47:07.6734D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |17604|: Teams.exe
21:57:11.8944D48394ProcessInjector::HandleElevatedProcessFail injection to process [4616] [t: 0 w_t_id: 0]- Teams.exe (elevated True) 0x5
21:57:11.8954D48333ProcessInjector::HandlePendingProccesssFail to inject pending process |4616|: Teams.exe
22:02:10.588495C66ProcessesMonitor::Stopstopping PM...
22:02:10.5884D44119ProcessesMonitor::ProcessEnumerateThreadexit process listener