TimeThreadLineFunctionMessage
03:26:13.96678E8361ftw1Loading (pid: 17576)
03:26:13.9664AA8146ProcessHardwareRecorder::CommandThreadstarting recorder thread
03:26:13.96878E848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X82960000>6|2|1247871722
03:26:13.96878E848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X85B40000>6|2|1247871722
03:26:14.6478E8172DXManager::DetectFound in 0
03:26:14.6578E8209Initialize::GetLocation@ 0X4F80|20352
03:26:14.6578E8209Initialize::GetLocation@ 0X69700|431872
03:26:14.6578E8209Initialize::GetLocation@ 0X206F0|132848
03:26:14.6578E8209Initialize::GetLocation@ 0X1DE0|7648
03:26:14.6578E8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X82960000 <> 0X85B40000
03:26:14.6578E8209Initialize::GetLocation@ 0XFCF48860|-51083168
03:26:14.6578E8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X82960000 <> 0X85B40000
03:26:14.6578E8209Initialize::GetLocation@ 0XFCF4DC30|-51061712
03:26:14.6578E8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X82960000 <> 0X85B40000
03:26:14.6578E8209Initialize::GetLocation@ 0XFCF4C5F0|-51067408
03:26:14.6578E8111Update::CaughtC:\WINDOWS\SYSTEM32\d3d11.dll|0X82960000 <> 0X85B40000
03:26:14.6578E8209Initialize::GetLocation@ 0XFCE2A7F0|-52254736
03:26:14.7678E848Update::DetectEnv (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X7D730000>6|2|1247871638
03:26:14.16978E8129DXManager::DetectOK
03:26:14.20678E8186DXManager::DetectDone
03:26:14.20678E8215VTableHolderD3d9::initd3d offsest [sht]: 0x4060 , 0x53c0
03:26:14.20678E8209Initialize::GetLocation@ 0X41B90|269200
03:26:14.20678E8209Initialize::GetLocation@ 0X33E20|212512
03:26:14.20678E8209Initialize::GetLocation@ 0X3D6C0|251584
03:26:14.20678E8209Initialize::GetLocation@ 0XB8E10|757264
03:26:14.20678E8209Initialize::GetLocation@ 0XB8960|756064
03:26:14.20678E8209Initialize::GetLocation@ 0XACF0|44272
03:26:14.20678E8209Initialize::GetLocation@ 0XB8A00|756224
03:26:14.20678E8209Initialize::GetLocation@ 0X1B6B0|112304
03:26:14.20678E8209Initialize::GetLocation@ 0X1E100|123136
03:26:14.20678E8209Initialize::GetLocation@ 0X26730|157488
03:26:14.20678E8209Initialize::GetLocation@ 0X1146B0|1132208
03:26:14.20678E8209Initialize::GetLocation@ 0X114170|1130864
03:26:14.20678E8209Initialize::GetLocation@ 0X1B5A0|112032
03:26:14.20678E8209Initialize::GetLocation@ 0X1B4B0|111792
03:26:14.20678E8209Initialize::GetLocation@ 0XD680|54912
03:26:14.20678E8209Initialize::GetLocation@ 0X493C0|299968
03:26:14.20678E8209Initialize::GetLocation@ 0XA860|43104
03:26:14.20678E8209Initialize::GetLocation@ 0XD0000|851968
03:26:14.20678E8209Initialize::GetLocation@ 0XD06D0|853712
03:26:14.20678E8209Initialize::GetLocation@ 0XA860|43104
03:26:14.20678E8209Initialize::GetLocation@ 0XD11C0|856512
03:26:14.20678E8209Initialize::GetLocation@ 0XD1820|858144
03:26:14.21978E848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput.dll) <0X20820000>6|2|1247870977
03:26:14.24378E883VTableHolderDInput::initm_pDIW->CreateDevice - succeded.
03:26:14.24378E8209Initialize::GetLocation@ 0X4040|16448
03:26:14.24378E8209Initialize::GetLocation@ 0X6410|25616
03:26:14.24378E8209Initialize::GetLocation@ 0X65C0|26048
03:26:14.24478E848Update::DetectEnv (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XD5B0000>6|2|1247870977
03:26:14.26378E893VTableHolderDInput8::initm_pDI8W->CreateDevice - succeded.
03:26:14.26378E8110VTableHolderDInput8::initm_pDI8A->CreateDevice - succeded.
03:26:14.26478E8209Initialize::GetLocation@ 0XA5D0|42448
03:26:14.26478E8209Initialize::GetLocation@ 0XD4D0|54480
03:26:14.26478E8209Initialize::GetLocation@ 0XD290|53904
03:26:14.32878E8225InterProcessElement::openInterProcess Overwolf_SHARED_MEMORY_2_2_83_1_17576 opened succesfuly
03:26:14.32878E872HookFunctionsTableInitializer::SetHookFunctionsDataD3D9 Sht offsets 0x4060 , 0x53c0
03:26:14.32878E8256InterProcessElement::closeInterProcess Overwolf_SHARED_MEMORY_2_2_83_1_17576 close 2147483647 bytes
03:26:14.32878E8297InjectOWExplorerExplorer file name [F:\Games-Uplay\Overwolf\0.162.0.13\OWExplorer.dll]
03:26:14.33078E8385ftw1OWExplorer injected
03:26:14.70680A051`anonymous-namespace'::CreateProviderInitialize provider: NET
03:26:14.70680A0117libprocess::NetworkTracer::Initializeinit res:0x5 [started:0 active:0 enbaled:0]
03:26:14.70680A054`anonymous-namespace'::CreateProviderFail to initlized provider: NET
03:26:14.70680A051`anonymous-namespace'::CreateProviderInitialize provider: GPU
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |atkexComSvc.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |mDNSResponder.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |nssm.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |RzSDKServer.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |lghub_updater.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |WireHelperSvc.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |McAfee.TrueKey.ServiceHelper.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |expressvpnd.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |AvastBrowserCrashHandler.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |AvastBrowserCrashHandler64.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |steamcmd.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |synergy-service-controller.exe| missing h
03:26:14.73455C0629ProcessInjector::InjectProcessprocess |crashpad_handler.exe| missing h
03:26:14.86755C0629ProcessInjector::InjectProcessprocess |NvBroadcast.Container.exe| missing h
03:26:14.93055C0629ProcessInjector::InjectProcessprocess |synergy-core.exe| missing h
03:26:15.94555C0629ProcessInjector::InjectProcessprocess |logi_crashpad_handler.exe| missing h
03:26:16.70855C0629ProcessInjector::InjectProcessprocess |OverwolfLauncher.exe| missing h
03:26:16.70855C0468ProcessInjector::DoElevetedInjectionFailed to inject process [28276] 0x57
03:26:16.70855C0424ProcessInjector::HandleElevatedProcessFail injection to process (will retry again in 5 ses) [28276] [t: 35880 w_t_id: 35880]- OverwolfLauncher.exe (elevated True) 0x57
03:26:16.72255C0468ProcessInjector::DoElevetedInjectionFailed to inject process [28276] 0x57
03:26:16.72255C0441ProcessInjector::HandleElevatedProcessFail injection to process [28276] [t: 35880 w_t_id: 35880]- OverwolfLauncher.exe (elevated True) 0x57
03:26:16.72255C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |28276|: OverwolfLauncher.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [1832] [t: 0 w_t_id: 0]- AvastBrowserCrashHandler64.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |1832|: AvastBrowserCrashHandler64.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [1888] [t: 0 w_t_id: 0]- synergy-service-controller.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |1888|: synergy-service-controller.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [2304] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |2304|: NVDisplay.Container.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5196] [t: 0 w_t_id: 0]- atkexComSvc.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5196|: atkexComSvc.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5280] [t: 0 w_t_id: 0]- mDNSResponder.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5280|: mDNSResponder.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5348] [t: 0 w_t_id: 0]- nssm.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5348|: nssm.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5364] [t: 0 w_t_id: 0]- RzSDKServer.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5364|: RzSDKServer.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5396] [t: 0 w_t_id: 0]- lghub_updater.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5396|: lghub_updater.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5404] [t: 0 w_t_id: 0]- WireHelperSvc.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5404|: WireHelperSvc.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5504] [t: 0 w_t_id: 0]- NvBroadcast.Container.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5504|: NvBroadcast.Container.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5512] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5512|: nvcontainer.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [5716] [t: 0 w_t_id: 0]- McAfee.TrueKey.ServiceHelper.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5716|: McAfee.TrueKey.ServiceHelper.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [6632] [t: 0 w_t_id: 0]- expressvpnd.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |6632|: expressvpnd.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [10584] [t: 0 w_t_id: 0]- AvastBrowserCrashHandler.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |10584|: AvastBrowserCrashHandler.exe
03:28:45.54655C0441ProcessInjector::HandleElevatedProcessFail injection to process [20360] [t: 0 w_t_id: 0]- steamcmd.exe (elevated True) 0x0
03:28:45.54655C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |20360|: steamcmd.exe
03:28:46.55955C0441ProcessInjector::HandleElevatedProcessFail injection to process [1556] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |1556|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [1568] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |1568|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [1672] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |1672|: NVIDIA Share.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [3812] [t: 0 w_t_id: 0]- node.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |3812|: node.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [5044] [t: 0 w_t_id: 0]- sdmicmute.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |5044|: sdmicmute.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [7032] [t: 0 w_t_id: 0]- voicemodplugin.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |7032|: voicemodplugin.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [8052] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |8052|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [9636] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |9636|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [16252] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |16252|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [18864] [t: 0 w_t_id: 0]- logi_crashpad_handler.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |18864|: logi_crashpad_handler.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [19220] [t: 0 w_t_id: 0]- com.zergo0.teamspeak3integration.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |19220|: com.zergo0.teamspeak3integration.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [22540] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |22540|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [23176] [t: 0 w_t_id: 0]- hwinfo.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |23176|: hwinfo.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [23220] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |23220|: lghub.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [24060] [t: 0 w_t_id: 0]- com.barraider.stockticker.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |24060|: com.barraider.stockticker.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [24272] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |24272|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [25608] [t: 0 w_t_id: 0]- com.nicollasr.streamdeckvsc.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |25608|: com.nicollasr.streamdeckvsc.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [26292] [t: 0 w_t_id: 0]- CCXProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |26292|: CCXProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [30032] [t: 0 w_t_id: 0]- com.barraider.windowsmover.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |30032|: com.barraider.windowsmover.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [30680] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |30680|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [32076] [t: 0 w_t_id: 0]- lghub.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |32076|: lghub.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [32592] [t: 0 w_t_id: 0]- QtWebEngineProcess.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |32592|: QtWebEngineProcess.exe
03:28:46.56055C0441ProcessInjector::HandleElevatedProcessFail injection to process [39916] [t: 0 w_t_id: 0]- NVIDIA Share.exe (elevated True) 0x0
03:28:46.56055C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |39916|: NVIDIA Share.exe
03:28:47.57255C0441ProcessInjector::HandleElevatedProcessFail injection to process [36604] [t: 0 w_t_id: 0]- StatsDB Overlay.exe (elevated True) 0x0
03:28:47.57255C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |36604|: StatsDB Overlay.exe
03:28:47.57255C0441ProcessInjector::HandleElevatedProcessFail injection to process [39828] [t: 0 w_t_id: 0]- keeform_host.exe (elevated True) 0x0
03:28:47.57255C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |39828|: keeform_host.exe
03:31:10.75055C0629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
03:31:11.75155C0629ProcessInjector::InjectProcessprocess |OverwolfUpdater.exe| missing h
03:32:17.16955C0441ProcessInjector::HandleElevatedProcessFail injection to process [36060] [t: 0 w_t_id: 0]- StatsDB Overlay.exe (elevated True) 0x578
03:32:17.16955C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |36060|: StatsDB Overlay.exe
03:37:45.32155C0629ProcessInjector::InjectProcessprocess |AvastBrowserUpdate.exe| missing h
03:38:24.57755C0629ProcessInjector::InjectProcessprocess |AvastBrowserUpdate.exe| missing h
03:41:29.96755C0441ProcessInjector::HandleElevatedProcessFail injection to process [26984] [t: 0 w_t_id: 0]- StatsDB Overlay.exe (elevated True) 0x578
03:41:29.96755C0380ProcessInjector::HandlePendingProccesssFail to inject pending process |26984|: StatsDB Overlay.exe
03:43:06.73978E866ProcessesMonitor::Stopstopping PM...
03:43:06.73980A0119ProcessesMonitor::ProcessEnumerateThreadexit process listener
03:43:06.74078E8526ProcessInjector::Unhookunhook running process
03:43:12.75878E866ProcessesMonitor::Stopstopping PM...