paranoidninja / PI-Tracker

A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback hook and 'ProcessInstrumentationCallback' class to track all syscalls being performed via the userland.
12Updated 5 months ago

Alternatives and similar repositories for PI-Tracker:

Users that are interested in PI-Tracker are comparing it to the libraries listed below