TimeThreadLineFunctionMessage
18:05:49.188131C146ProcessHardwareRecorder::CommandThreadstarting recorder thread
18:05:49.188114C361ftw1Loading (pid: 16332)
18:05:49.189114C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X536F0000>6|2|1247870977
18:05:49.189114C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X55EE0000>6|2|1247870977
18:05:49.281114C172DXManager::DetectFound in 0
18:05:49.282114C209Initialize::GetLocation@ 0X4F80|20352
18:05:49.282114C209Initialize::GetLocation@ 0X69160|430432
18:05:49.282114C209Initialize::GetLocation@ 0X20410|132112
18:05:49.282114C209Initialize::GetLocation@ 0X1DE0|7648
18:05:49.282114C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X536F0000 <> 0X55EE0000
18:05:49.282114C209Initialize::GetLocation@ 0XFD938850|-40662960
18:05:49.282114C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X536F0000 <> 0X55EE0000
18:05:49.282114C209Initialize::GetLocation@ 0XFD93DE80|-40640896
18:05:49.282114C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X536F0000 <> 0X55EE0000
18:05:49.282114C209Initialize::GetLocation@ 0XFD93C5E0|-40647200
18:05:49.282114C111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X536F0000 <> 0X55EE0000
18:05:49.282114C209Initialize::GetLocation@ 0XFD81A7F0|-41834512
18:05:49.299114C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X4AB90000>6|2|1247870977
18:05:49.395114C129DXManager::DetectOK
18:05:49.434114C186DXManager::DetectDone
18:05:49.434114C215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
18:05:49.435114C209Initialize::GetLocation@ 0X3FC10|261136
18:05:49.435114C209Initialize::GetLocation@ 0X33840|211008
18:05:49.435114C209Initialize::GetLocation@ 0X3BFA0|245664
18:05:49.435114C209Initialize::GetLocation@ 0XB70E0|749792
18:05:49.435114C209Initialize::GetLocation@ 0XB6C30|748592
18:05:49.435114C209Initialize::GetLocation@ 0XAF40|44864
18:05:49.435114C209Initialize::GetLocation@ 0XB6CD0|748752
18:05:49.435114C209Initialize::GetLocation@ 0X20C40|134208
18:05:49.435114C209Initialize::GetLocation@ 0X16A10|92688
18:05:49.435114C209Initialize::GetLocation@ 0X2D530|185648
18:05:49.435114C209Initialize::GetLocation@ 0X113350|1127248
18:05:49.435114C209Initialize::GetLocation@ 0X112E10|1125904
18:05:49.435114C209Initialize::GetLocation@ 0X20B30|133936
18:05:49.435114C209Initialize::GetLocation@ 0X20A40|133696
18:05:49.435114C209Initialize::GetLocation@ 0XD8D0|55504
18:05:49.435114C209Initialize::GetLocation@ 0X466B0|288432
18:05:49.435114C209Initialize::GetLocation@ 0XAAB0|43696
18:05:49.435114C209Initialize::GetLocation@ 0XCE2D0|844496
18:05:49.435114C209Initialize::GetLocation@ 0XCE9A0|846240
18:05:49.435114C209Initialize::GetLocation@ 0XAAB0|43696
18:05:49.435114C209Initialize::GetLocation@ 0XCF490|849040
18:05:49.435114C209Initialize::GetLocation@ 0XCFAF0|850672
18:05:49.456114C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X395F0000>6|2|1247870977
18:05:49.471114C83VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
18:05:49.471114C209Initialize::GetLocation@ 0X4040|16448
18:05:49.471114C209Initialize::GetLocation@ 0X6410|25616
18:05:49.471114C209Initialize::GetLocation@ 0X65C0|26048
18:05:49.474114C48Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XE54B0000>6|2|1247870977
18:05:49.488114C93VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
18:05:49.488114C110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
18:05:49.488114C209Initialize::GetLocation@ 0XA5D0|42448
18:05:49.488114C209Initialize::GetLocation@ 0XD4D0|54480
18:05:49.488114C209Initialize::GetLocation@ 0XD290|53904
18:05:49.543114C225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_78_13_16332 opened succesfuly
18:05:49.543114C72HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
18:05:49.543114C256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_78_13_16332 close 2147483647 bytes
18:05:49.543114C297InjectOWExplorerExplorer file name [D:\Program Files (x86)\Overwolf\0.149.0.20\OWExplorer.dll]
18:05:49.607114C385ftw1OWExplorer injected
18:05:49.881CB451`anonymous-namespace'::CreateProviderInitialize provider: NET
18:05:49.881CB4117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
18:05:49.881CB454`anonymous-namespace'::CreateProviderFail to initlized provider: NET
18:05:49.881CB451`anonymous-namespace'::CreateProviderInitialize provider: GPU
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [2356] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |2356|: NVDisplay.Container.exe
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [4160] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |4160|: nvcontainer.exe
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [4236] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |4236|: MsMpEng.exe
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [14172] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |14172|: NVIDIA Share.exe
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [14808] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |14808|: NVIDIA Share.exe
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [15568] [t: 0 w_t_id: 0]- googledrivesync.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |15568|: googledrivesync.exe
18:08:20.2912BC352ProcessInjector::HandleElevatedProcessFail injection to process [16416] [t: 0 w_t_id: 0]- UnrealCEFSubProcess.exe (elevated True) 0x0
18:08:20.2912BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |16416|: UnrealCEFSubProcess.exe
18:08:21.2922BC352ProcessInjector::HandleElevatedProcessFail injection to process [16488] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x0
18:08:21.2922BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |16488|: lghub.exe
18:08:21.2922BC352ProcessInjector::HandleElevatedProcessFail injection to process [17132] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x0
18:08:21.2922BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |17132|: lghub.exe
19:17:18.8182BC352ProcessInjector::HandleElevatedProcessFail injection to process [4636] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x5
19:17:18.8192BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |4636|: WhatsApp.exe
19:17:18.8192BC352ProcessInjector::HandleElevatedProcessFail injection to process [15132] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x5
19:17:18.8192BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |15132|: WhatsApp.exe
19:17:20.8302BC352ProcessInjector::HandleElevatedProcessFail injection to process [2520] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
19:17:20.8302BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |2520|: Code.exe
19:17:20.8302BC352ProcessInjector::HandleElevatedProcessFail injection to process [6696] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
19:17:20.8302BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |6696|: Code.exe
19:17:21.8342BC352ProcessInjector::HandleElevatedProcessFail injection to process [10888] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x5
19:17:21.8342BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |10888|: WhatsApp.exe
19:17:23.8452BC352ProcessInjector::HandleElevatedProcessFail injection to process [14244] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
19:17:23.8452BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |14244|: Code.exe
19:17:23.8452BC352ProcessInjector::HandleElevatedProcessFail injection to process [20528] [t: 0 w_t_id: 0]- Code.exe (elevated True) 0x5
19:17:23.8452BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |20528|: Code.exe
21:32:06.9292BC352ProcessInjector::HandleElevatedProcessFail injection to process [8400] [t: 0 w_t_id: 0]- WhatsApp.exe (elevated True) 0x0
21:32:06.9292BC291ProcessInjector::HandlePendingProccesssFail to inject pending process |8400|: WhatsApp.exe
22:59:38.428114C66ProcessesMonitor::Stopstopping PM...
22:59:38.428CB4119ProcessesMonitor::ProcessEnumerateThreadexit process listener
22:59:44.438114C66ProcessesMonitor::Stopstopping PM...