Etw-SyscallMonitor
Monitors ETW for security relevant syscalls maintaining the set called by each unique process
파일 탐색기
최종 버전 다운로드 (.zip)- EtwUserTrace.cs
- EtwUserTraceProvider.cs
- Microsoft-Windows-Kernel-Audit-API-Calls.cs
- Microsoft-Windows-Kernel-EventTracing.cs
- Microsoft-Windows-Kernel-File.cs
- Microsoft-Windows-Kernel-Network.cs
- Microsoft-Windows-Kernel-Process.cs
- Microsoft-Windows-Kernel-Registry.cs
- Microsoft-Windows-Security-Auditing.cs
- MIcrosoft-Windows-Threat-Intelligence.cs
- Microsoft-Windows-WFP.cs
- Microsoft-Windows-Win32k.cs
- PPLKillerDLL.dll
- AssemblyInfo.cs
- HashUtils.cs
- Log.cs
- MemoryExtensions.cs
- PathUtils.cs
- PeMetadata.cs
- PeReaderExtensions.cs
- ProcessUtils.cs
- SymbolUtils.cs
- TokenUtils.cs
- Win32.cs
- App.config
- app.manifest
- ETW-SyscallMonitor.csproj
- MainWindow.xaml
- MainWindow.xaml.cs
- MemoryMap.cs
- packages.config
- ProcessCreationTraitsMap.cs
- ProcessProfile.cs
- Program.cs
- .gitignore
- ETW-SycallMonitor.sln
- ETW_syscall_monitor.png
- README.md
// repository documentation
Was this content helpful?
(0 ratings)
