This project is being created and maintained to help me learn and understand Windows persistence techniques. Each time I add new detection rules, I learn something new, so consider proc_tail as my personal lab.
More details will be published on first release