Time | Thread | Line | Function | Message |
13:15:31.33 | 303C | 74 | GameListService::CreateProcessMap | loading game list... |
13:15:31.35 | 303C | 88 | GameListService::CreateProcessMap | 1539, 2 loaded |
13:15:31.36 | 303C | 369 | ftw1 | Loading (pid: 21932) |
13:15:31.38 | 303C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X5BB0000>6|2|1482491491 |
13:15:31.38 | 303C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X6C40000>6|2|1482491341 |
13:15:31.99 | 303C | 173 | DXManager::Detect | Found in 0 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0X33900|211200 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0X1520|5408 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0X23820|145440 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0X19D0|6608 |
13:15:31.99 | 303C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0XFF0742E0|-16301344 |
13:15:31.99 | 303C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0XFF071FB0|-16310352 |
13:15:31.99 | 303C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0XFF075870|-16295824 |
13:15:31.99 | 303C | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
13:15:31.99 | 303C | 209 | Initialize::GetLocation | @ 0XFEF7BDF0|-17318416 |
13:15:31.108 | 303C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XEB950000>6|2|1482491491 |
13:15:31.138 | 303C | 129 | DXManager::Detect | OK |
13:15:31.152 | 303C | 186 | DXManager::Detect | Done |
13:15:31.152 | 303C | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4030 , 0x55a0 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X3CC50|248912 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X2CFD0|184272 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X387C0|231360 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0XBC570|771440 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X482B0|295600 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0XC2B0|49840 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X48350|295760 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X2ACE0|175328 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X1F260|127584 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X1F0B0|127152 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X4AD70|306544 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X100050|1048656 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X2B030|176176 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X2AE30|175664 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X2CE30|183856 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X40A70|264816 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X176B0|95920 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X17700|96000 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X177F0|96240 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X176B0|95920 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X174D0|95440 |
13:15:31.152 | 303C | 209 | Initialize::GetLocation | @ 0X17560|95584 |
13:15:31.166 | 303C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XB8890000>6|2|1482489857 |
13:15:31.176 | 303C | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
13:15:31.176 | 303C | 209 | Initialize::GetLocation | @ 0X3DC0|15808 |
13:15:31.176 | 303C | 209 | Initialize::GetLocation | @ 0X7140|28992 |
13:15:31.176 | 303C | 209 | Initialize::GetLocation | @ 0X6F00|28416 |
13:15:31.177 | 303C | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XB76D0000>6|2|1482489857 |
13:15:31.186 | 303C | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
13:15:31.186 | 303C | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
13:15:31.186 | 303C | 209 | Initialize::GetLocation | @ 0XB510|46352 |
13:15:31.186 | 303C | 209 | Initialize::GetLocation | @ 0XE5B0|58800 |
13:15:31.186 | 303C | 209 | Initialize::GetLocation | @ 0XE360|58208 |
13:15:31.252 | 303C | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_22521932 opened succesfuly |
13:15:31.252 | 303C | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4030 , 0x55a0 |
13:15:31.252 | 303C | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_22521932 close 2147483647 bytes |
13:15:31.252 | 303C | 305 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.226.0.38\OWExplorer.dll] |
13:15:31.260 | 303C | 393 | ftw1 | OWExplorer injected |
13:15:31.260 | 3614 | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11488| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |188| (w: 0x0): Registry |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |25680| (w: 0x0): C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_917a88f607017da2\RtkAudUService64.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |140| (w: 0x0): |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |2976| (w: 0x0): MemCompression |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4256| (w: 0x0): \Device\HarddiskVolume3\Program Files\Aruba Networks\Virtual Internet Agent\arubanetsvc.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |23880| (w: 0x0): \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_3583fda5ef1eb1bb\Display.NvContainer\NVDisplay.Container.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4364| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |5752| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |12808| (w: 0x0): C:\Windows\System32\audiodg.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |9780| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |13144| (w: 0x0): C:\Windows\System32\smartscreen.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |19200| (w: 0x0): C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11040| (w: 0x0): \Device\HarddiskVolume3\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |15964| (w: 0x0): C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxEMN.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |18032| (w: 0x0): C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |16352| (w: 0x0): C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |18504| (w: 0x0): C:\Windows\System32\taskhostw.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |20852| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\GoogleUpdate.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |24848| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |7504| (w: 0x0): C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |15256| (w: 0x0): C:\Windows\System32\ctfmon.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11632| (w: 0x0): C:\Windows\System32\conhost.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |19428| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |5988| (w: 0x0): C:\Windows\System32\SecurityHealthSystray.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |20312| (w: 0x0): C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |5160| (w: 0x0): C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |12004| (w: 0x0): C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe |
13:17:32.249 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11404| (w: 0x0): C:\Windows\System32\NhNotifSys.exe |
13:17:48.373 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |18292| (w: 0x0): C:\Windows\System32\conhost.exe |
13:17:48.373 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |17240| (w: 0x0): C:\Windows\System32\conhost.exe |
13:17:48.373 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |12932| (w: 0x0): C:\Windows\System32\conhost.exe |
13:17:48.373 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |14116| (w: 0x0): C:\Windows\System32\conhost.exe |
13:24:15.129 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11448| (w: 0x0): C:\Windows\System32\smartscreen.exe |
14:10:45.687 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |14784| (w: 0x0): C:\Program Files\Microsoft OneDrive\23.127.0618.0001\Microsoft.SharePoint.exe |
14:31:20.259 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4568| (w: 0x0): C:\Windows\System32\smartscreen.exe |
14:31:31.349 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |22872| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
14:31:38.404 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |15204| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
14:31:38.404 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |22672| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
14:31:39.407 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |23248| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
14:50:16.561 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |22784| (w: 0x0): C:\Windows\System32\smartscreen.exe |
15:06:04.714 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |7064| (w: 0x0): C:\Windows\System32\smartscreen.exe |
15:17:03.44 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |2644| (w: 0x0): C:\Windows\System32\smartscreen.exe |
15:18:19.0 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |21204| (w: 0x0): C:\Program Files\Audacity\crashpad_handler.exe |
15:38:46.856 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |9720| (w: 0x0): C:\Windows\System32\smartscreen.exe |
15:45:22.692 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |6872| (w: 0x0): C:\Windows\System32\smartscreen.exe |
16:03:29.215 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |13860| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe |
16:03:33.261 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |15348| (w: 0x0): C:\Windows\System32\smartscreen.exe |
16:03:57.501 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |16192| (w: 0x0): C:\Users\lukas\AppData\Local\Programs\GIMP 2\lib\gimp\2.0\plug-ins\script-fu\script-fu.exe |
16:06:41.32 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |26600| (w: 0x0): C:\Windows\System32\DataExchangeHost.exe |
16:14:50.47 | 3988 | 613 | ProcessInjector::InjectExplorerToProcess | Injected to process 10496 [mt 26596] 0x170c04 |
16:15:01.444 | 3988 | 360 | ProcessInjector::DoElevetedInjection | Failed to inject process [13888 mt:17932 h:0x140be2] 0x57 |
16:15:21.662 | 3988 | 622 | ProcessInjector::InjectExplorerToProcess | Inject to process 13888 error (to many retires, TID detected: 1) |
16:15:22.411 | 3988 | 613 | ProcessInjector::InjectExplorerToProcess | Injected to process 5492 [mt 24580] 0x180b7c |
16:15:46.907 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |20436| (w: 0x0): C:\Windows\System32\smartscreen.exe |
16:16:09.86 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |9568| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.3261.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
16:17:28.829 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |14596| (w: 0x0): C:\Windows\System32\GameBarPresenceWriter.exe |
16:38:14.949 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |3676| (w: 0x0): C:\Windows\System32\smartscreen.exe |
16:40:53.410 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |22308| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe |
17:09:07.473 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |17508| (w: 0x0): C:\Windows\System32\smartscreen.exe |
17:16:51.699 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |27468| (w: 0x0): C:\Windows\System32\smartscreen.exe |
17:27:53.884 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |26476| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\GoogleUpdate.exe |
17:33:05.31 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |7620| (w: 0x0): C:\Windows\System32\smartscreen.exe |
18:10:29.175 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |10140| (w: 0x0): C:\Windows\System32\smartscreen.exe |
18:27:16.663 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |15592| (w: 0x0): C:\Windows\System32\smartscreen.exe |
18:27:40.913 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |7172| (w: 0x0): C:\Windows\System32\GameBarPresenceWriter.exe |
18:27:40.913 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |21792| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.3261.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
18:54:17.946 | 3988 | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |22312| (w: 0x0): C:\Windows\System32\smartscreen.exe |
18:54:21.400 | 3614 | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
18:54:22.588 | 303C | 66 | ProcessesMonitor::Stop | stopping PM... |
18:54:22.588 | 679C | 125 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
18:54:22.590 | 303C | 421 | ProcessInjector::Unhook | unhook running process |
18:54:28.602 | 303C | 66 | ProcessesMonitor::Stop | stopping PM... |
| | | | |