Time | Thread | Line | Function | Message |
14:45:45.350 | 3E38 | 361 | ftw1 | Loading (pid: 12316) |
14:45:45.350 | 3898 | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
14:45:45.351 | 3E38 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d11.dll) <0X34220000>6|2|1247870977 |
14:45:45.351 | 3E38 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dxgi.dll) <0X3A1F0000>6|2|1247871464 |
14:45:45.410 | 3E38 | 172 | DXManager::Detect | Found in 0 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0X4F80|20352 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0X69530|431408 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0X20410|132112 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0X1DE0|7648 |
14:45:45.410 | 3E38 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34220000 <> 0X3A1F0000 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0XFA158850|-99252144 |
14:45:45.410 | 3E38 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34220000 <> 0X3A1F0000 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0XFA15DE80|-99230080 |
14:45:45.410 | 3E38 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34220000 <> 0X3A1F0000 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0XFA15C5E0|-99236384 |
14:45:45.410 | 3E38 | 111 | Update::Caught | C:\Windows\SYSTEM32\d3d11.dll|0X34220000 <> 0X3A1F0000 |
14:45:45.410 | 3E38 | 209 | Initialize::GetLocation | @ 0XFA03A7F0|-100423696 |
14:45:45.419 | 3E38 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\d3d9.dll) <0X25C10000>6|2|1247871464 |
14:45:45.450 | 3E38 | 129 | DXManager::Detect | OK |
14:45:45.467 | 3E38 | 186 | DXManager::Detect | Done |
14:45:45.467 | 3E38 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X41000|266240 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X332C0|209600 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X3CB30|248624 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XB72C0|750272 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XB6E10|749072 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XA190|41360 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XB6EB0|749232 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X1AB50|109392 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X1D5A0|120224 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X25BD0|154576 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X113530|1127728 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X112FF0|1126384 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X1AA40|109120 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X1A950|108880 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XCB20|52000 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X47D50|294224 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X9D00|40192 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XCE4B0|844976 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XCEB80|846720 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0X9D00|40192 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XCF670|849520 |
14:45:45.468 | 3E38 | 209 | Initialize::GetLocation | @ 0XCFCD0|851152 |
14:45:45.483 | 3E38 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput.dll) <0XE8720000>6|2|1247870977 |
14:45:45.668 | 3E38 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
14:45:45.668 | 3E38 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
14:45:45.668 | 3E38 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
14:45:45.668 | 3E38 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
14:45:45.674 | 3E38 | 48 | Update::Detect | Env (C:\Windows\SYSTEM32\dinput8.dll) <0XDDC90000>6|2|1247870977 |
14:45:45.690 | 3E38 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
14:45:45.690 | 3E38 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
14:45:45.690 | 3E38 | 209 | Initialize::GetLocation | @ 0XA5D0|42448 |
14:45:45.690 | 3E38 | 209 | Initialize::GetLocation | @ 0XD4D0|54480 |
14:45:45.690 | 3E38 | 209 | Initialize::GetLocation | @ 0XD290|53904 |
14:45:45.753 | 3E38 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_80_3_12316 opened succesfuly |
14:45:45.753 | 3E38 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
14:45:45.753 | 3E38 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_80_3_12316 close 2147483647 bytes |
14:45:45.753 | 3E38 | 297 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.156.1.1\OWExplorer.dll] |
14:45:45.811 | 3E38 | 385 | ftw1 | OWExplorer injected |
14:45:46.451 | 5034 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
14:45:46.451 | 5034 | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
14:45:46.451 | 5034 | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
14:45:46.451 | 5034 | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [300] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |300|: fzsftp.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2024] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2024|: firefox.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2652] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2652|: NVDisplay.Container.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4720] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4720|: firefox.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4972] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4972|: nvcontainer.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5360] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5360|: MsMpEng.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9328] [t: 0 w_t_id: 0]- init (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9328|: init |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9820] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9820|: firefox.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10488] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10488|: firefox.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11044] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11044|: node.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14896] [t: 0 w_t_id: 0]- init (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14896|: init |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15400] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15400|: firefox.exe |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15576] [t: 0 w_t_id: 0]- ssh (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15576|: ssh |
14:48:16.990 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16824] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.990 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16824|: firefox.exe |
14:48:16.991 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17884] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.991 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17884|: firefox.exe |
14:48:16.991 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18692] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x0 |
14:48:16.991 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18692|: fzsftp.exe |
14:48:16.991 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18832] [t: 0 w_t_id: 0]- bash (elevated True) 0x0 |
14:48:16.991 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18832|: bash |
14:48:16.991 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19372] [t: 0 w_t_id: 0]- bash (elevated True) 0x0 |
14:48:16.991 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19372|: bash |
14:48:16.991 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19960] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:16.991 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19960|: firefox.exe |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1628] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1628|: firefox.exe |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8300] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8300|: firefox.exe |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9100] [t: 0 w_t_id: 0]- bash (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9100|: bash |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10688] [t: 0 w_t_id: 0]- ssh (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10688|: ssh |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17544] [t: 0 w_t_id: 0]- ssh (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17544|: ssh |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17972] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17972|: fzsftp.exe |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [22704] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |22704|: firefox.exe |
14:48:17.992 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23200] [t: 0 w_t_id: 0]- init (elevated True) 0x0 |
14:48:17.992 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23200|: init |
14:56:48.405 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5308] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
14:56:48.405 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5308|: firefox.exe |
15:07:16.894 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15032] [t: 0 w_t_id: 0]- openvpn.exe (elevated True) 0x1f |
15:07:16.894 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15032|: openvpn.exe |
15:07:51.259 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3684] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x1f |
15:07:51.259 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3684|: fzsftp.exe |
15:08:19.508 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1560] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
15:08:19.508 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1560|: init |
15:08:19.508 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10216] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
15:08:19.508 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10216|: bash |
15:08:20.522 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [932] [t: 0 w_t_id: 0]- ssh (elevated True) 0x1f |
15:08:20.522 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |932|: ssh |
15:39:53.26 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15912] [t: 0 w_t_id: 0]- java.exe (elevated True) 0x578 |
15:39:53.26 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15912|: java.exe |
16:02:06.859 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10516] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
16:02:06.859 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10516|: bash |
16:02:06.859 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10840] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
16:02:06.859 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10840|: init |
16:12:19.347 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [21524] [t: 0 w_t_id: 0]- ssh (elevated True) 0x1f |
16:12:19.347 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |21524|: ssh |
16:12:57.691 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11504] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
16:12:57.691 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11504|: firefox.exe |
16:12:58.694 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16804] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
16:12:58.694 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16804|: firefox.exe |
16:19:23.18 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [22592] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
16:19:23.18 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |22592|: firefox.exe |
16:21:51.279 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2564] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
16:21:51.279 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2564|: firefox.exe |
16:51:18.913 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7492] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
16:51:18.913 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7492|: firefox.exe |
16:58:24.849 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23232] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
16:58:24.849 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23232|: firefox.exe |
17:06:51.418 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6684] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
17:06:51.418 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6684|: firefox.exe |
18:00:24.100 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13732] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:00:24.100 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13732|: firefox.exe |
18:03:25.387 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17512] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:03:25.387 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17512|: firefox.exe |
18:04:58.333 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12524] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:04:58.333 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12524|: firefox.exe |
18:09:19.664 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2612] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:09:19.664 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2612|: firefox.exe |
18:31:10.791 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [11032] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:31:10.791 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |11032|: firefox.exe |
18:35:24.157 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9496] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:35:24.157 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9496|: firefox.exe |
18:42:30.565 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [19884] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:42:30.565 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |19884|: firefox.exe |
20:47:16.673 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14796] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x5 |
20:47:16.673 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14796|: firefox.exe |
21:09:31.851 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3792] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x0 |
21:09:31.851 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3792|: WhatsApp.exe |
21:09:31.851 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16852] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x0 |
21:09:31.851 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16852|: WhatsApp.exe |
21:09:33.867 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4792] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x0 |
21:09:33.867 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4792|: WhatsApp.exe |
21:11:53.727 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [22632] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:11:53.727 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |22632|: firefox.exe |
21:16:51.821 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13960] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
21:16:51.821 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13960|: firefox.exe |
22:09:49.494 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [20420] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
22:09:49.494 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |20420|: firefox.exe |
22:10:18.770 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5436] [t: 0 w_t_id: 0]- plugin-container.exe (elevated True) 0x0 |
22:10:18.770 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5436|: plugin-container.exe |
22:11:51.564 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [22936] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
22:11:51.564 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |22936|: firefox.exe |
22:17:27.805 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16924] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
22:17:27.805 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16924|: firefox.exe |
22:30:37.885 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10388] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
22:30:37.885 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10388|: firefox.exe |
22:36:52.29 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [924] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
22:36:52.29 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |924|: firefox.exe |
22:41:53.666 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17132] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x0 |
22:41:53.666 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17132|: fzsftp.exe |
22:42:44.125 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15288] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x0 |
22:42:44.125 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15288|: firefox.exe |
23:14:07.257 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12824] [t: 0 w_t_id: 0]- ssh (elevated True) 0x1f |
23:14:07.257 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12824|: ssh |
23:18:20.615 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [23476] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x1f |
23:18:20.615 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |23476|: fzsftp.exe |
23:21:57.211 | 1CBC | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12628] [t: 0 w_t_id: 0]- fzsftp.exe (elevated True) 0x1f |
23:21:57.211 | 1CBC | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12628|: fzsftp.exe |
23:26:25.997 | 3E38 | 66 | ProcessesMonitor::Stop | stopping PM... |
23:26:25.997 | 5034 | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
23:26:32.3 | 3E38 | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |