Time | Thread | Line | Function | Message |
18:37:13.241 | 448C | 176 | StartOWExploreLauncher | Loading (pid:7916)... |
18:37:13.241 | 448C | 190 | StartOWExploreLauncher | Explorer file name [C:\Program Files (x86)\Overwolf\0.158.1.1\win32\OWExplorer.dll] |
18:37:13.287 | 448C | 361 | ftw1 | Loading (pid: 13820) |
18:37:13.287 | 4174 | 90 | OverwolfWatchDock::WatchDogMainFunc | Start watch dog |
18:37:13.287 | 4174 | 167 | OverwolfWatchDock::CreateWatchDogHWND | find ow dock window |
18:37:13.288 | 448C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X67630000>6|2|1247871522 |
18:37:13.288 | 448C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X673F0000>6|2|1247871522 |
18:37:13.345 | 448C | 172 | DXManager::Detect | Found in 0 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X6E190|450960 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X6E050|450640 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X2D910|186640 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X665A0|419232 |
18:37:13.346 | 448C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X67630000 <> 0X673F0000 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X362D60|3550560 |
18:37:13.346 | 448C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X67630000 <> 0X673F0000 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X366080|3563648 |
18:37:13.346 | 448C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X67630000 <> 0X673F0000 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X35F160|3535200 |
18:37:13.346 | 448C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X67630000 <> 0X673F0000 |
18:37:13.346 | 448C | 209 | Initialize::GetLocation | @ 0X2756F0|2578160 |
18:37:13.354 | 448C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d8.dll) <0X5E570000>6|2|1247870977 |
18:37:13.520 | 448C | 209 | Initialize::GetLocation | @ 0X29670|169584 |
18:37:13.520 | 448C | 209 | Initialize::GetLocation | @ 0X29690|169616 |
18:37:13.520 | 448C | 209 | Initialize::GetLocation | @ 0X2A1B0|172464 |
18:37:13.520 | 448C | 209 | Initialize::GetLocation | @ 0X29D30|171312 |
18:37:13.520 | 448C | 209 | Initialize::GetLocation | @ 0X2A140|172352 |
18:37:13.524 | 448C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X68F50000>6|2|1247871522 |
18:37:13.569 | 448C | 129 | DXManager::Detect | OK |
18:37:13.598 | 448C | 186 | DXManager::Detect | Done |
18:37:13.598 | 448C | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x2b6c , 0x4e24 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X75B80|482176 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X626E0|403168 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X71F30|466736 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0XE39C0|932288 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0XE35E0|931296 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X4D0A0|315552 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0XE3670|931440 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X5EAB0|387760 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X5E5B0|386480 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X5E450|386128 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X130C10|1248272 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X130710|1246992 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X5E7B0|386992 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X5E8E0|387296 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X627C0|403392 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X7D880|514176 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X4A280|303744 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X6E760|452448 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X6EEF0|454384 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X4A280|303744 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X6E590|451984 |
18:37:13.598 | 448C | 209 | Initialize::GetLocation | @ 0X6EDB0|454064 |
18:37:13.607 | 448C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X5E770000>6|2|1247870977 |
18:37:13.615 | 448C | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
18:37:13.615 | 448C | 209 | Initialize::GetLocation | @ 0X55E0|21984 |
18:37:13.615 | 448C | 209 | Initialize::GetLocation | @ 0X7390|29584 |
18:37:13.615 | 448C | 209 | Initialize::GetLocation | @ 0X74D0|29904 |
18:37:13.615 | 448C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X658E0000>6|2|1247870977 |
18:37:13.622 | 448C | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
18:37:13.622 | 448C | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
18:37:13.622 | 448C | 209 | Initialize::GetLocation | @ 0XB040|45120 |
18:37:13.622 | 448C | 209 | Initialize::GetLocation | @ 0XD550|54608 |
18:37:13.622 | 448C | 209 | Initialize::GetLocation | @ 0XD3A0|54176 |
18:37:13.673 | 448C | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_81_2_13820 opened succesfuly |
18:37:13.673 | 448C | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x2b6c , 0x4e24 |
18:37:13.673 | 448C | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_81_2_13820 close 2147483647 bytes |
18:39:44.280 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3584] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
18:39:44.280 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3584|: Discord.exe |
18:39:44.280 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9748] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
18:39:44.280 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9748|: Discord.exe |
18:39:44.280 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10304] [t: 0 w_t_id: 0]- jusched.exe (elevated True) 0x0 |
18:39:44.280 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10304|: jusched.exe |
18:39:44.280 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10512] [t: 0 w_t_id: 0]- asus_framework.exe (elevated True) 0x0 |
18:39:44.280 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10512|: asus_framework.exe |
18:39:44.280 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [16448] [t: 0 w_t_id: 0]- Discord.exe (elevated True) 0x0 |
18:39:44.280 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |16448|: Discord.exe |
18:45:30.236 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3384] [t: 0 w_t_id: 0]- AdobeIPCBroker.exe (elevated True) 0x0 |
18:45:30.236 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3384|: AdobeIPCBroker.exe |
18:45:47.307 | A74 | 394 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18040] [t: 0 w_t_id: 0]- CEPHtmlEngine.exe (elevated True) 0x0 |
18:45:47.307 | A74 | 333 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18040|: CEPHtmlEngine.exe |
20:07:09.662 | 448C | 67 | OverwolfWatchDock::Stop | Stopping |
20:07:09.663 | 4174 | 116 | OverwolfWatchDock::WatchDogMainFunc | Stoped watch dog thread... |
20:07:09.677 | 448C | 79 | OverwolfWatchDock::Stop | Stoped |
20:07:09.677 | 448C | 66 | ProcessesMonitor::Stop | stopping PM... |
20:07:09.677 | 18FC | 119 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
20:07:15.690 | 448C | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |