Command line tracing tool for Windows, based on ETW.
☆695Oct 15, 2025Updated 9 months ago
Alternatives and similar repositories for wtrace
Users that are interested in wtrace are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Command-line tool for ETW tracing on files and real-time events☆148Feb 27, 2019Updated 7 years ago
- A command line tool that sends its input data to a running procmon instance.☆16Feb 24, 2017Updated 9 years ago
- KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.☆791Apr 14, 2026Updated 3 months ago
- A PowerShell front-end for the Windows debugger engine.☆697Apr 3, 2024Updated 2 years ago
- reverse engineering extension plugin for windbg☆123Sep 30, 2019Updated 6 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An instruction trace visualisation tool for dynamic program analysis☆370Dec 8, 2022Updated 3 years ago
- A branch-monitor-based solution for process monitoring.☆138Feb 9, 2020Updated 6 years ago
- ☆30May 23, 2017Updated 9 years ago
- User interface for recording and managing ETW traces☆1,665May 28, 2025Updated last year
- Ruxcon2016 POC Code☆141Nov 21, 2016Updated 9 years ago
- Monitor activity of any driver☆355Nov 2, 2020Updated 5 years ago
- Old mitigation-bounty code that was applicable to edge before it use webkit/chrome☆87Dec 19, 2016Updated 9 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆243Nov 19, 2025Updated 8 months ago
- Dump and analyze .Net applications memory ( a gui for WinDbg and ClrMd )☆709Jun 25, 2020Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆749Jun 26, 2017Updated 9 years ago
- Write minidumps of .NET processes with full memory, only CLR heaps, or no memory at all☆222Mar 15, 2019Updated 7 years ago
- ETW Python Library☆300Aug 11, 2023Updated 2 years ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆1,065Sep 24, 2023Updated 2 years ago
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆39Jan 11, 2018Updated 8 years ago
- ☆855Jun 1, 2023Updated 3 years ago
- windows kernel vulnerability found by me☆88Aug 28, 2017Updated 8 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆23May 31, 2017Updated 9 years ago
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,305Nov 6, 2025Updated 8 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A command-line tool for live tracing .NET applications, based on EventPipes.☆187Jul 7, 2025Updated last year
- A template (and a sample) for writing tracers on Windows. Based on the Detours library.☆31Mar 14, 2024Updated 2 years ago
- ☆113Jul 16, 2016Updated 10 years ago
- ☆22Jul 7, 2017Updated 9 years ago
- Log ALPC activity☆85Sep 23, 2023Updated 2 years ago
- A dirty IDAPython script to dump windows system call number/name pairs as JSON☆36Feb 13, 2017Updated 9 years ago
- ☆62Apr 13, 2017Updated 9 years ago
- WinDBG Anti-RootKit Extension☆643Jul 29, 2020Updated 5 years ago
- My notes on software troubleshooting, covering debugging and tracing techniques and tools. Available at wtrace.net.☆348Jul 17, 2026Updated last week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Using WinDBG to tap into JavaScript and help with deobfuscation and browser exploit detection☆81Mar 22, 2017Updated 9 years ago
- Adversary tradecraft detection, protection, and hunting☆2,504Updated this week
- Kernel Address Space Layout Randomization (KASLR) Recovery Software☆98Nov 26, 2016Updated 9 years ago
- Translates WinDbg "dt" structure dump to a C structure☆134Oct 16, 2016Updated 9 years ago
- Viewing NTFS alternate streams in files☆33Jul 19, 2017Updated 9 years ago
- Windows Object Explorer 64-bit☆1,957Jul 14, 2026Updated last week
- DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects☆145Jul 30, 2017Updated 8 years ago