DamonMohammadbagher / ETWNetMonv3

ETWNetMonv3 is simple C# code for Monitoring TCP Network Connection via ETW & ETWProcessMon/2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.
39Updated last year

Alternatives and similar repositories for ETWNetMonv3:

Users that are interested in ETWNetMonv3 are comparing it to the libraries listed below