29 results for “topic:procmon”
Spartacus DLL/COM Hijacking Toolkit
iMonitor(冰镜 - 终端行为分析系统)
The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能, 而不用关心底层驱动的开发、维护和兼容性问题,让其可以专注于业务开发
open source process monitor
Parser to process monitor file formats
Advanced process execution monitoring utility for linux (procmon like)
Monitoring Registry and File Changes in Windows
Monitor windows kernel event, based on etw, development in rust. A replacement of procmon. more events and useful filter. Typically can check handle leak for a few weeks.
Registry activity records & DXG Kernel/Session Manager/Power/DWM/USBHUB/PnPDevice/BCDEdit/NIC/StorNVMe values research.
Materials for Diagnostics Expert online course
A command line tool that sends its input data to a running procmon instance.
Procmonel is Procmon like monitoring system implemented using Microsoft WDK
a rust-based process monitor and manager using ratatui and tachyonfx for shaders. currently supporting UNIX-like systems
Process Monitor for Debian Linux Distros. Monitor CPU Utilization
Associates netflow data with system processes and logs to syslog
A PML Analyzer.
Repo for the project GuardCode.
See Your Trace Statements in Process Monitor!
A LSTM (Long Short Term Memory) model + dataset. Utilises the procmon logging system to analyze malware/virus process activity in the form of binary classification [malicious/benign]. Created for my University final project.
The procmon script is used to monitorize commands that were ran or will run on the system, in order to make privilege escalation and lateral movement on a Linux target.
这是一个实用的工具集合,包含日志配置、文件夹监控、文件格式化、哈希计算、图像处理、视频下载、系统监控等多样化工具。
provides a convenient and efficient solution for capturing and analyzing system activity logs using Procmon and converting them to the pandas compatible Parquet file format (2% of the original pml file size)
Inject a spy DLL into any Windows process and watch (or block) its API calls live — files, registry, network, clipboard, screenshots and more.
No description provided.
a fake malware script written in Python to observe beaconing activity, encoded strings and payloads, and other malware activity and analyze how the program obfuscates itself
Python script to index SysInternals procmon CSV exports into elasticsearch
Automatically find sideload opportunities and generate DLLs
iMonitor Ice Mirror Endpoint Behavior Analysis System he world most powerful System Activity Monitor Engine
📜 Record and analyze Windows Registry activities using WPR and Procmon for a deeper understanding of system behavior and application interactions.