etw topic
EVTX-ETW-Resources
Event Tracing For Windows (ETW) Resources
EtwConsumerNT
Simple project that demonstrates how an ETW consumer can be created just by using NTDLL
ApplicationInsights-dotnet-logging
.NET Logging adaptors
MakeInfinityHookGreatAgain
让Etwhook再次伟大! Make InfinityHook Great Again!
PSDiscoveryProtocol
Capture and parse CDP and LLDP packets on local or remote computers
PRUNE
Logs key Windows process performance metrics. #nsacyber
ETW2JSON
Tool and library to convert ETW logs to JSON files
ETWProcessMon2
ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.
ETWNetMonv3
ETWNetMonv3 is simple C# code for Monitoring TCP Network Connection via ETW & ETWProcessMon/2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection &...