Forward ETW events for centralized collection and analysis.
-
Updated
May 27, 2024 - C#
8000
Forward ETW events for centralized collection and analysis.
Bypassing Event Tracing for Windows (ETW) with CSharp
A proof of concept ETW consumer that captures userland events in real time, displays them, and saves them into an .etl file
Add a description, image, and links to the etw-agent topic page so that developers can more easily learn about it.
To associate your repository with the etw-agent topic, visit your repo's landing page and select "manage topics."