A Poc attempt at hunting suspicious thread creation events using ETW only.
windows engineering event tracing gadget software etw rop malware-analysis malware-research red-team blueteam malware-detection redteam red-teaming detection-engineering jop unbacked
-
Updated
May 25, 2026 - C++