Time | Thread | Line | Function | Message |
15:22:26.461 | 2B24 | 176 | StartOWExploreLauncher | Loading (pid:7868)... |
15:22:26.461 | 2B24 | 190 | StartOWExploreLauncher | Explorer file name [C:\Program Files (x86)\Overwolf\0.155.0.10\win32\OWExplorer.dll] |
15:22:26.617 | 2B24 | 361 | ftw1 | Loading (pid: 11160) |
15:22:26.617 | 1AC0 | 90 | OverwolfWatchDock::WatchDogMainFunc | Start watch dog |
15:22:26.627 | 1AC0 | 167 | OverwolfWatchDock::CreateWatchDogHWND | find ow dock window |
15:22:26.632 | 2B24 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0X6D020000>6|2|1203372419 |
15:22:26.632 | 2B24 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0X6DAE0000>6|2|1203372847 |
15:22:26.792 | 2B24 | 172 | DXManager::Detect | Found in 0 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0X6E190|450960 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0X6E050|450640 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0X30880|198784 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0X17B60|97120 |
15:22:26.792 | 2B24 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X6D020000 <> 0X6DAE0000 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0XFF65FA30|-10094032 |
15:22:26.792 | 2B24 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X6D020000 <> 0X6DAE0000 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0XFF663350|-10079408 |
15:22:26.792 | 2B24 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X6D020000 <> 0X6DAE0000 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0XFF65C4B0|-10107728 |
15:22:26.792 | 2B24 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X6D020000 <> 0X6DAE0000 |
15:22:26.792 | 2B24 | 209 | Initialize::GetLocation | @ 0XFF57CA80|-11023744 |
15:22:26.963 | 2B24 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d8.dll) <0X570E0000>6|2|1203372388 |
15:22:27.405 | 2B24 | 209 | Initialize::GetLocation | @ 0X29070|168048 |
15:22:27.405 | 2B24 | 209 | Initialize::GetLocation | @ 0X29090|168080 |
15:22:27.405 | 2B24 | 209 | Initialize::GetLocation | @ 0X29BA0|170912 |
15:22:27.405 | 2B24 | 209 | Initialize::GetLocation | @ 0X29730|169776 |
15:22:27.405 | 2B24 | 209 | Initialize::GetLocation | @ 0X29B30|170800 |
15:22:27.457 | 2B24 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X6E290000>6|2|1203372419 |
15:22:27.743 | 2B24 | 129 | DXManager::Detect | OK |
15:22:27.828 | 2B24 | 186 | DXManager::Detect | Done |
15:22:27.833 | 2B24 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x2b6c , 0x4e24 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X56560|353632 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X56580|353664 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X752A0|479904 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0XE67C0|944064 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0XE63E0|943072 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X4BB60|310112 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0XE6470|943216 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X62540|402752 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X61FB0|401328 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X61E50|400976 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X130170|1245552 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X12FC50|1244240 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X621B0|401840 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X622E0|402144 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X63E20|409120 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X7EA40|518720 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X55990|350608 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X70860|460896 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X71120|463136 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X55990|350608 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X70700|460544 |
15:22:27.834 | 2B24 | 209 | Initialize::GetLocation | @ 0X70F60|462688 |
15:22:27.888 | 2B24 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0X566B0000>6|2|1203372033 |
15:22:27.900 | 2B24 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
15:22:27.900 | 2B24 | 209 | Initialize::GetLocation | @ 0X5590|21904 |
15:22:27.900 | 2B24 | 209 | Initialize::GetLocation | @ 0X7340|29504 |
15:22:27.900 | 2B24 | 209 | Initialize::GetLocation | @ 0X7480|29824 |
15:22:27.916 | 2B24 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0X56670000>6|2|1203372033 |
15:22:27.927 | 2B24 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
15:22:27.929 | 2B24 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
15:22:27.929 | 2B24 | 209 | Initialize::GetLocation | @ 0XAC00|44032 |
15:22:27.929 | 2B24 | 209 | Initialize::GetLocation | @ 0XD120|53536 |
15:22:27.929 | 2B24 | 209 | Initialize::GetLocation | @ 0XCF70|53104 |
15:22:28.42 | 2B24 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_79_8_11160 opened succesfuly |
15:22:28.43 | 2B24 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x2b6c , 0x4e24 |
15:22:28.43 | 2B24 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_79_8_11160 close 2147483647 bytes |
15:24:56.868 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3500] [t: 0 w_t_id: 0]- AnyDesk.exe (elevated True) 0x0 |
15:24:56.868 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3500|: AnyDesk.exe |
15:24:56.868 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3600] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0 |
15:24:56.868 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3600|: nvcontainer.exe |
15:24:56.868 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3652] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0 |
15:24:56.868 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3652|: MsMpEng.exe |
15:24:56.868 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9284] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
15:24:56.868 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9284|: Discord.exe |
15:24:56.868 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9300] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
15:24:56.868 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9300|: Discord.exe |
15:24:56.868 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11612] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
15:24:56.868 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11612|: Discord.exe |
15:24:56.869 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11836] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
15:24:56.869 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11836|: NVDisplay.Container.exe |
15:24:57.869 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3152] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
15:24:57.869 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3152|: Discord.exe |
15:50:50.306 | 1F74 | 147 | `anonymous-namespace'::BlockCSGOSecuredProcess | Blocked Detect CSGO Process ["C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe" -steam] |
15:50:50.306 | 1F74 | 174 | `anonymous-namespace'::IsBlackListed | block CSGO process [csgo.exe] |
15:53:30.341 | 1F74 | 147 | `anonymous-namespace'::BlockCSGOSecuredProcess | Blocked Detect CSGO Process ["C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe" -steam] |
15:53:30.341 | 1F74 | 174 | `anonymous-namespace'::IsBlackListed | block CSGO process [csgo.exe] |
15:55:36.759 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1068] [t: 0 w_t_id: 0]- Spotify.exe (elevated True) 0x0 |
15:55:36.760 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1068|: Spotify.exe |
15:55:36.760 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1820] [t: 0 w_t_id: 0]- Spotify.exe (elevated True) 0x0 |
15:55:36.760 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1820|: Spotify.exe |
15:55:36.760 | 1F74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13248] [t: 0 w_t_id: 0]- Spotify.exe (elevated True) 0x0 |
15:55:36.760 | 1F74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13248|: Spotify.exe |
15:58:10.692 | 2B24 | 67 | OverwolfWatchDock::Stop | Stopping |
15:58:10.694 | 1AC0 | 116 | OverwolfWatchDock::WatchDogMainFunc | Stoped watch dog thread... |
15:58:10.706 | 2B24 | 79 | OverwolfWatchDock::Stop | Stoped |
15:58:10.706 | 2B24 | 66 | ProcessesMonitor::Stop | stopping PM... |
15:58:10.706 | B38 | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |