Time | Thread | Line | Function | Message |
21:11:31.806 | 16F8 | 74 | GameListService::CreateProcessMap | loading game list... |
21:11:31.809 | 16F8 | 88 | GameListService::CreateProcessMap | 1539, 2 loaded |
21:11:31.810 | 16F8 | 369 | ftw1 | Loading (pid: 7928) |
21:11:31.811 | 16F8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d11.dll) <0X5BB0000>6|2|1482491491 |
21:11:31.811 | 16F8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dxgi.dll) <0X6C40000>6|2|1482491341 |
21:11:31.881 | 16F8 | 173 | DXManager::Detect | Found in 0 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0X33900|211200 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0X1520|5408 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0X23820|145440 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0X19D0|6608 |
21:11:31.881 | 16F8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0XFF0742E0|-16301344 |
21:11:31.881 | 16F8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0XFF071FB0|-16310352 |
21:11:31.881 | 16F8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0XFF075870|-16295824 |
21:11:31.881 | 16F8 | 111 | Update::Caught | C:\WINDOWS\SYSTEM32\d3d11.dll|0X5BB0000 <> 0X6C40000 |
21:11:31.881 | 16F8 | 209 | Initialize::GetLocation | @ 0XFEF7BDF0|-17318416 |
21:11:31.898 | 16F8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\d3d9.dll) <0XEB950000>6|2|1482491491 |
21:11:31.925 | 16F8 | 129 | DXManager::Detect | OK |
21:11:31.941 | 16F8 | 186 | DXManager::Detect | Done |
21:11:31.941 | 16F8 | 215 | VTableHolderD3d9::init | d3d offsest [sht]: 0x4030 , 0x55a0 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X3CC50|248912 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X2CFD0|184272 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X387C0|231360 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0XBC570|771440 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X482B0|295600 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0XC2B0|49840 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X48350|295760 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X2ACE0|175328 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X1F260|127584 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X1F0B0|127152 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X4AD70|306544 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X100050|1048656 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X2B030|176176 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X2AE30|175664 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X2CE30|183856 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X40A70|264816 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X176B0|95920 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X17700|96000 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X177F0|96240 |
21:11:31.941 | 16F8 | 209 | Initialize::GetLocation | @ 0X176B0|95920 |
21:11:31.942 | 16F8 | 209 | Initialize::GetLocation | @ 0X174D0|95440 |
21:11:31.942 | 16F8 | 209 | Initialize::GetLocation | @ 0X17560|95584 |
21:11:31.954 | 16F8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput.dll) <0XD1070000>6|2|1482489857 |
21:11:31.998 | 16F8 | 83 | VTableHolderDInput::init | m_pDIW->CreateDevice - succeded. |
21:11:31.998 | 16F8 | 209 | Initialize::GetLocation | @ 0X3DC0|15808 |
21:11:31.998 | 16F8 | 209 | Initialize::GetLocation | @ 0X7140|28992 |
21:11:31.998 | 16F8 | 209 | Initialize::GetLocation | @ 0X6F00|28416 |
21:11:31.999 | 16F8 | 48 | Update::Detect | Env (C:\WINDOWS\SYSTEM32\dinput8.dll) <0XCD120000>6|2|1482489857 |
21:11:32.8 | 16F8 | 93 | VTableHolderDInput8::init | m_pDI8W->CreateDevice - succeded. |
21:11:32.8 | 16F8 | 110 | VTableHolderDInput8::init | m_pDI8A->CreateDevice - succeded. |
21:11:32.8 | 16F8 | 209 | Initialize::GetLocation | @ 0XB510|46352 |
21:11:32.8 | 16F8 | 209 | Initialize::GetLocation | @ 0XE5B0|58800 |
21:11:32.8 | 16F8 | 209 | Initialize::GetLocation | @ 0XE360|58208 |
21:11:32.65 | 16F8 | 225 | InterProcessElement::open | InterProcess Overwolf_SHARED_MEMORY_2_2_2257928 opened succesfuly |
21:11:32.65 | 16F8 | 72 | HookFunctionsTableInitializer::SetHookFunctionsData | D3D9 Sht offsets 0x4030 , 0x55a0 |
21:11:32.65 | 16F8 | 255 | InterProcessElement::close | InterProcess Overwolf_SHARED_MEMORY_2_2_2257928 close 2147483647 bytes |
21:11:32.65 | 16F8 | 305 | InjectOWExplorer | Explorer file name [C:\Program Files (x86)\Overwolf\0.226.0.38\OWExplorer.dll] |
21:11:32.209 | 16F8 | 393 | ftw1 | OWExplorer injected |
21:11:32.209 | 4A2C | 71 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnConnected | connected to process tracker server |
21:12:27.724 | 1EDC | 360 | ProcessInjector::DoElevetedInjection | Failed to inject process [6848 mt:25764 h:0x6041e] 0x57 |
21:12:47.918 | 1EDC | 622 | ProcessInjector::InjectExplorerToProcess | Inject to process 6848 error (to many retires, TID detected: 1) |
21:13:00.884 | 1EDC | 613 | ProcessInjector::InjectExplorerToProcess | Injected to process 12072 [mt 19060] 0x5007cc |
21:13:16.742 | 1EDC | 613 | ProcessInjector::InjectExplorerToProcess | Injected to process 14060 [mt 5028] 0x1340756 |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11488| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |188| (w: 0x0): Registry |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |140| (w: 0x0): |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |2976| (w: 0x0): MemCompression |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4256| (w: 0x0): \Device\HarddiskVolume3\Program Files\Aruba Networks\Virtual Internet Agent\arubanetsvc.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |7560| (w: 0x0): C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |23880| (w: 0x0): \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_3583fda5ef1eb1bb\Display.NvContainer\NVDisplay.Container.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |15864| (w: 0x0): C:\Windows\System32\conhost.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4364| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |5752| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |12808| (w: 0x0): C:\Windows\System32\audiodg.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |6656| (w: 0x0): C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |9780| (w: 0x0): \Device\HarddiskVolume3\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |11040| (w: 0x0): \Device\HarddiskVolume3\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |17200| (w: 0x0): C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxEMN.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |5008| (w: 0x0): C:\Windows\System32\taskhostw.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4252| (w: 0x0): C:\Windows\System32\NhNotifSys.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |7336| (w: 0x0): C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4204| (w: 0x0): C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |17684| (w: 0x0): C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |14728| (w: 0x0): C:\Windows\System32\ctfmon.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |17740| (w: 0x0): C:\Windows\System32\conhost.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |24644| (w: 0x0): C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |3736| (w: 0x0): C:\Windows\System32\SecurityHealthSystray.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |2684| (w: 0x0): C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |20260| (w: 0x0): C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_917a88f607017da2\RtkAudUService64.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |19984| (w: 0x0): C:\Windows\System32\conhost.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |10600| (w: 0x0): C:\Windows\System32\conhost.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |20488| (w: 0x0): C:\Windows\System32\conhost.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |16660| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.3261.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |18008| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe |
21:13:33.172 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |14272| (w: 0x0): C:\Windows\System32\smartscreen.exe |
21:15:34.239 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |23592| (w: 0x0): C:\Windows\System32\GameBarPresenceWriter.exe |
21:53:04.0 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |26048| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.3261.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe |
21:54:06.527 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |10932| (w: 0x0): C:\Windows\System32\smartscreen.exe |
22:38:07.535 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |12316| (w: 0x0): C:\Windows\System32\smartscreen.exe |
22:51:22.818 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |24524| (w: 0x0): C:\Windows\System32\smartscreen.exe |
23:04:28.36 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |9472| (w: 0x0): C:\Windows\System32\smartscreen.exe |
23:04:33.72 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |9380| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
23:04:45.219 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |20264| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
23:04:46.233 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |22008| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
23:04:46.233 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |23656| (w: 0x0): C:\Program Files (x86)\Steam\steamapps\common\Galaxy Life\x64\Galaxy Life.exe |
23:41:53.507 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |14324| (w: 0x0): C:\Windows\System32\smartscreen.exe |
00:02:01.432 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |6844| (w: 0x0): C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe |
00:09:45.803 | 1EDC | 281 | ProcessInjector::HandlePendingProccesss | process detection skipped |4752| (w: 0x0): C:\Windows\System32\smartscreen.exe |
00:34:00.918 | 4A2C | 76 | Common::ProcessExplorer::ProcessTrackerIPCAgent::OnDisconnected | disconnected to process tracker server |
00:34:01.60 | 16F8 | 66 | ProcessesMonitor::Stop | stopping PM... |
00:34:01.60 | 4A7C | 125 | ProcessesMonitor::ProcessEnumerateThread | exit process listener |
00:34:01.62 | 16F8 | 421 | ProcessInjector::Unhook | unhook running process |