Time | Thread | Line | Function | Message |
12:08:35.662 | F14 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
12:08:35.662 | 250 | 363 | ftw1 | Loading (pid: 9984) |
12:08:35.663 | 250 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0X9F280000>6|2|1164115969 |
12:08:35.663 | 250 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0XA0D30000>6|2|1164116739 |
12:08:35.708 | 250 | 169 | DXManager::Detect | Found in 0 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0X4910|18704 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0X632C0|406208 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0X1EEC0|126656 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0X1D70|7536 |
12:08:35.708 | 250 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X9F280000 <> 0XA0D30000 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0XFE67AB00|-26760448 |
12:08:35.708 | 250 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X9F280000 <> 0XA0D30000 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0XFE681400|-26733568 |
12:08:35.708 | 250 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X9F280000 <> 0XA0D30000 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0XFE676DE0|-26776096 |
12:08:35.708 | 250 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X9F280000 <> 0XA0D30000 |
12:08:35.708 | 250 | 209 | Initialize::GetLocation | @ 0XFE55E9B0|-27924048 |
12:08:35.717 | 250 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X86EC0000>6|2|1164115969 |
12:08:35.765 | 250 | 128 | DXManager::Detect | OK |
12:08:35.785 | 250 | 185 | DXManager::Detect | Done |
12:08:35.785 | 250 | 214 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X3A040|237632 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X2DDD0|187856 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X35C40|220224 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0XAA4D0|697552 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0XAA020|696352 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X62B0|25264 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0XAA0C0|696512 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X25DA0|155040 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X1E230|123440 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X1E0B0|123056 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0XEBAA0|965280 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0XEB550|963920 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X25ED0|155344 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X25C90|154768 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X2DC80|187520 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X3CFB0|249776 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X10CD0|68816 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X10DD0|69072 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X10EC0|69312 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X10CD0|68816 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X10B70|68464 |
12:08:35.785 | 250 | 209 | Initialize::GetLocation | @ 0X10D20|68896 |
12:08:35.803 | 250 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0X92010000>6|2|1164115969 |
12:08:35.814 | 250 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
12:08:35.814 | 250 | 209 | Initialize::GetLocation | @ 0X3D10|15632 |
12:08:35.814 | 250 | 209 | Initialize::GetLocation | @ 0X6130|24880 |
12:08:35.814 | 250 | 209 | Initialize::GetLocation | @ 0X62E0|25312 |
12:08:35.817 | 250 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X87A80000>6|2|1164115969 |
12:08:35.821 | 250 | 91 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
12:08:35.821 | 250 | 108 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
12:08:35.821 | 250 | 209 | Initialize::GetLocation | @ 0X100B0|65712 |
12:08:35.821 | 250 | 209 | Initialize::GetLocation | @ 0X12DE0|77280 |
12:08:35.821 | 250 | 209 | Initialize::GetLocation | @ 0X12BB0|76720 |
12:08:35.876 | 250 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_73_6_9984 opened succesfuly |
12:08:35.876 | 250 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
12:08:35.876 | 250 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_73_6_9984 close 2147483647 bytes |
12:08:35.876 | 250 | 299 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.135.0.24\OWExplorer.dll] |
12:08:35.902 | 250 | 387 | ftw1 | OWExplorer injected |
12:08:36.1 | 23F4 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
12:08:36.1 | 23F4 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
12:08:36.1 | 23F4 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
12:08:36.1 | 23F4 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
12:11:06.923 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1580] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
12:11:06.923 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1580|: NVDisplay.Container.exe |
12:11:06.923 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3500] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0 |
12:11:06.923 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3500|: nvcontainer.exe |
12:11:06.923 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3540] [t: 0 w_t_id: 0]- NvTelemetryContainer.exe (elevated True) 0x0 |
12:11:06.923 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3540|: NvTelemetryContainer.exe |
12:11:06.923 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3744] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0 |
12:11:06.923 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3744|: MsMpEng.exe |
12:11:21.923 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13008] [t: 0 w_t_id: 0]- plugin_host.exe (elevated True) 0x0 |
12:11:21.923 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13008|: plugin_host.exe |
14:27:47.286 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4208] [t: 0 w_t_id: 0]- bash.exe (elevated True) 0x0 |
14:27:47.286 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4208|: bash.exe |
14:27:47.286 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5292] [t: 0 w_t_id: 0]- git-bash.exe (elevated True) 0x0 |
14:27:47.286 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5292|: git-bash.exe |
14:33:43.317 | 1734 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5716] [t: 0 w_t_id: 0]- owobs-ffmpeg-mux.exe (elevated True) 0x0 |
14:33:43.317 | 1734 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5716|: owobs-ffmpeg-mux.exe |
| | | | |