DamonMohammadbagher / ETWProcessMon2

ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.
292Updated 8 months ago

Related projects

Alternatives and complementary repositories for ETWProcessMon2