Command line tracing tool for Windows, based on ETW.
☆695Oct 15, 2025Updated 9 months ago
Alternatives and similar repositories for wtrace
Users that are interested in wtrace are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Command-line tool for ETW tracing on files and real-time events☆148Feb 27, 2019Updated 7 years ago
- A command line tool that sends its input data to a running procmon instance.☆16Feb 24, 2017Updated 9 years ago
- KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.☆796Updated this week
- A PowerShell front-end for the Windows debugger engine.☆698Apr 3, 2024Updated 2 years ago
- reverse engineering extension plugin for windbg☆123Sep 30, 2019Updated 6 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- An instruction trace visualisation tool for dynamic program analysis☆370Dec 8, 2022Updated 3 years ago
- ☆30May 23, 2017Updated 9 years ago
- A branch-monitor-based solution for process monitoring.☆138Feb 9, 2020Updated 6 years ago
- User interface for recording and managing ETW traces☆1,663May 28, 2025Updated last year
- Ruxcon2016 POC Code☆141Nov 21, 2016Updated 9 years ago
- Monitor activity of any driver☆356Nov 2, 2020Updated 5 years ago
- Old mitigation-bounty code that was applicable to edge before it use webkit/chrome☆87Dec 19, 2016Updated 9 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆243Nov 19, 2025Updated 8 months ago
- Dump and analyze .Net applications memory ( a gui for WinDbg and ClrMd )☆710Jun 25, 2020Updated 6 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆750Jun 26, 2017Updated 9 years ago
- Write minidumps of .NET processes with full memory, only CLR heaps, or no memory at all☆222Mar 15, 2019Updated 7 years ago
- ETW Python Library☆301Aug 11, 2023Updated 3 years ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆1,068Sep 24, 2023Updated 2 years ago
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆40Jan 11, 2018Updated 8 years ago
- ☆852Jun 1, 2023Updated 3 years ago
- windows kernel vulnerability found by me☆87Aug 28, 2017Updated 8 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆23May 31, 2017Updated 9 years ago
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,328Nov 6, 2025Updated 9 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A command-line tool for live tracing .NET applications, based on EventPipes.☆187Jul 7, 2025Updated last year
- A template (and a sample) for writing tracers on Windows. Based on the Detours library.☆31Mar 14, 2024Updated 2 years ago
- ☆113Jul 16, 2016Updated 10 years ago
- ☆22Jul 7, 2017Updated 9 years ago
- Log ALPC activity☆86Sep 23, 2023Updated 2 years ago
- A dirty IDAPython script to dump windows system call number/name pairs as JSON☆36Feb 13, 2017Updated 9 years ago
- ☆62Apr 13, 2017Updated 9 years ago
- WinDBG Anti-RootKit Extension☆642Jul 29, 2020Updated 6 years ago
- My notes on software troubleshooting, covering debugging and tracing techniques and tools. Available at wtrace.net.☆349Aug 5, 2026Updated last week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Using WinDBG to tap into JavaScript and help with deobfuscation and browser exploit detection☆81Mar 22, 2017Updated 9 years ago
- Security sensor for realtime threat detection and protection☆2,517Updated this week
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆98Nov 26, 2016Updated 9 years ago
- Translates WinDbg "dt" structure dump to a C structure☆134Oct 16, 2016Updated 9 years ago
- Viewing NTFS alternate streams in files☆34Jul 19, 2017Updated 9 years ago
- Windows Object Explorer 64-bit☆1,966Aug 8, 2026Updated last week
- DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects☆144Jul 30, 2017Updated 9 years ago