Time | Thread | Line | Function | Message |
18:27:05.251 | 2518 | 363 | ftw1 | Loading (pid: 11988) |
18:27:05.251 | 9DC | 146 | ProcessHardwareRecorder::CommandThread | starting recorder thread |
18:27:05.253 | 2518 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0XA5F30000>6|2|1245708289 |
18:27:05.253 | 2518 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0XA81D0000>6|2|1245708289 |
18:27:05.357 | 2518 | 169 | DXManager::Detect | Found in 0 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0X5240|21056 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0X788C0|493760 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0XECA0|60576 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0X1470|5232 |
18:27:05.358 | 2518 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0XFDE88850|-35092400 |
18:27:05.358 | 2518 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0XFDE8DE80|-35070336 |
18:27:05.358 | 2518 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0XFDE8C5E0|-35076640 |
18:27:05.358 | 2518 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0XA5F30000 <> 0XA81D0000 |
18:27:05.358 | 2518 | 209 | Initialize::GetLocation | @ 0XFDD6A7F0|-36263952 |
18:27:05.384 | 2518 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0X8E340000>6|2|1245708289 |
18:27:05.485 | 2518 | 128 | DXManager::Detect | OK |
18:27:05.532 | 2518 | 185 | DXManager::Detect | Done |
18:27:05.532 | 2518 | 214 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4060 , 0x53c0 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X3FC00|261120 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X33840|211008 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X3BFA0|245664 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XB70D0|749776 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XB6C20|748576 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XAF40|44864 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XB6CC0|748736 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X20C40|134208 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X16A10|92688 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X2D530|185648 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X113340|1127232 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X112E00|1125888 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X20B30|133936 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X20A40|133696 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XD8D0|55504 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0X466A0|288416 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XAAB0|43696 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XCE2C0|844480 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XCE990|846224 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XAAB0|43696 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XCF480|849024 |
18:27:05.533 | 2518 | 209 | Initialize::GetLocation | @ 0XCFAE0|850656 |
18:27:05.548 | 2518 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0X8D030000>6|2|1245708289 |
18:27:05.573 | 2518 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
18:27:05.574 | 2518 | 209 | Initialize::GetLocation | @ 0X4040|16448 |
18:27:05.574 | 2518 | 209 | Initialize::GetLocation | @ 0X6410|25616 |
18:27:05.574 | 2518 | 209 | Initialize::GetLocation | @ 0X65C0|26048 |
18:27:05.575 | 2518 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0X77930000>6|2|1245708289 |
18:27:05.588 | 2518 | 91 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
18:27:05.589 | 2518 | 108 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
18:27:05.589 | 2518 | 209 | Initialize::GetLocation | @ 0XA600|42496 |
18:27:05.589 | 2518 | 209 | Initialize::GetLocation | @ 0XD500|54528 |
18:27:05.589 | 2518 | 209 | Initialize::GetLocation | @ 0XD2C0|53952 |
18:27:05.655 | 2518 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_73_6_11988 opened succesfuly |
18:27:05.655 | 2518 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4060 , 0x53c0 |
18:27:05.655 | 2518 | 256 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_73_6_11988 close 2147483647 bytes |
18:27:05.655 | 2518 | 299 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.136.0.10\OWExplorer.dll] |
18:27:05.703 | 2518 | 387 | ftw1 | OWExplorer injected |
18:27:06.586 | 340C | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: NET |
18:27:06.586 | 340C | 117 | libprocess::NetworkTracer::Initialize | init res:0x5 [started:0 active:0 enbaled:0] |
18:27:06.586 | 340C | 54 | `anonymous-namespace'::CreateProvider | Fail to initlized provider: NET |
18:27:06.586 | 340C | 51 | `anonymous-namespace'::CreateProvider | Initialize provider: GPU |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [420] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |420|: bash |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [524] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |524|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [1668] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |1668|: bash |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [2884] [t: 0 w_t_id: 0]- ssh-agent.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |2884|: ssh-agent.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3304] [t: 0 w_t_id: 0]- nvcontainer.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3304|: nvcontainer.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3464] [t: 0 w_t_id: 0]- NvTelemetryContainer.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3464|: NvTelemetryContainer.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3604] [t: 0 w_t_id: 0]- ssh-agent (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3604|: ssh-agent |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3632] [t: 0 w_t_id: 0]- NVDisplay.Container.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3632|: NVDisplay.Container.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [3888] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |3888|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [4672] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |4672|: bash |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6056] [t: 0 w_t_id: 0]- MsMpEng.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6056|: MsMpEng.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6576] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6576|: bash |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6612] [t: 0 w_t_id: 0]- ssh-agent (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6612|: ssh-agent |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6732] [t: 0 w_t_id: 0]- plugin_host.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6732|: plugin_host.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6760] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6760|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [6888] [t: 0 w_t_id: 0]- ssh-agent (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |6888|: ssh-agent |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8956] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8956|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10544] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10544|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10784] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10784|: init |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12588] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12588|: bash |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13640] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13640|: init |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13732] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13732|: bash |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [13844] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |13844|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14128] [t: 0 w_t_id: 0]- java (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14128|: java |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14236] [t: 0 w_t_id: 0]- java (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14236|: java |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14644] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14644|: firefox.exe |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14972] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14972|: init |
18:29:36.991 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [15624] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
18:29:36.991 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |15624|: init |
18:51:02.347 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10860] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
18:51:02.347 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10860|: firefox.exe |
01:02:26.393 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [7164] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
01:02:26.393 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |7164|: firefox.exe |
01:04:04.263 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [5796] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
01:04:04.263 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |5796|: bash |
01:04:04.263 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [10188] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
01:04:04.263 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |10188|: init |
01:04:12.281 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [12584] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
01:04:12.281 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |12584|: bash |
01:05:38.989 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17800] [t: 0 w_t_id: 0]- java (elevated True) 0x1f |
01:05:38.989 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17800|: java |
01:07:18.878 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17120] [t: 0 w_t_id: 0]- init (elevated True) 0x1f |
01:07:18.878 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17120|: init |
01:07:18.878 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [18284] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
01:07:18.878 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |18284|: bash |
01:07:27.974 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [9092] [t: 0 w_t_id: 0]- bash (elevated True) 0x1f |
01:07:27.974 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |9092|: bash |
01:10:02.369 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [14252] [t: 0 w_t_id: 0]- java (elevated True) 0x1f |
01:10:02.369 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |14252|: java |
01:52:27.279 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [8240] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
01:52:27.279 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |8240|: firefox.exe |
01:54:50.447 | 1C50 | 349 | ProcessInjector::HandleElevatedProcess | Fail injection to process [17772] [t: 0 w_t_id: 0]- firefox.exe (elevated True) 0x1f |
01:54:50.447 | 1C50 | 288 | ProcessInjector::HandlePendingProccesss | Fail to inject pending process |17772|: firefox.exe |