fibratus icon

fibratus

3.0/5 2
Certified 100% FREE Apache License 2.0   

Capture all activities associated with the Windows kernel for further exploration so that you can improve overall security via this app #Explore kernel event  #Kernel event filter  #Trace kernel  #Kernel  #Process  #I/O  

Softpedia Review

changelog

Free Download

Review by:
4.5/5

Generally speaking, Event Tracking for Windows has the role of logging kernel data that system administrators can use to make a well informed decision on how to improve overall security. Fibratus is a tool designed especially for the collection of kernel-associated data and can capture all relevant activity, from process and thread creation and termination to file system I/O, network activity as well as DLL loading and unloading.

The idea behind the tool is to enable administrators to gather all system data responsible for the deep operational visibility into the Windows kernel along with the processes that run on top of it. All events captured can be dumped to capture files locally where administrators can further analyze the data.

The tool also packs a powerful filtering system that enables admins to take a closer look and find anything of interest blazing fast. The filters are supported in various places, including in the run command, replay command use when recovering the event flow or the capture command when dumping the event flow. While it may look intimidating at first, you should bear in mind that the tool comes with extensive documentation that explains the ins and outs of filters and other features.

Even though the command-line application is self-sufficient, the developer added filaments that can extend the functionality of the tool. Filaments are basically lightweight Python modules or scripts that act as extension points with endless possibilities. It is worth mentioning that these scripts always run on top of the kernel flux and therefore, can take into account all parameters, process state and other variables of the event.

Fibratus is a powerful program designed for system administrators who want to deep explore security events of the Windows kernel.

What's new in fibratus 2.0.0:

  • New features:
  • New VirtualAlloc and VirtualFree events. Read more
  • New MapViewFile and UnmapViewFile events and mapped-files state. Read more
Read the full changelog

fibratus 2.0.0

add to watchlist add to download basket send us an update REPORT
PRICE: Free
  runs on:
Windows 11
Windows 10 64 bit
  file size:
19.8 MB
  filename:
fibratus-2.0.0-amd64.msi
  1 screenshot:
fibratus - A CLI tool that lets you explore events in Windows kernel
  main category:
Programming
  developer:
  visit homepage

4k Video Downloader

Export your favorite YouTube videos and playlists with this intuitive, lightweight program, built to facilitate downloading clips from the popular website
4k Video Downloader

ShareX

Capture your screen, create GIFs, and record videos through this versatile solution that includes various other amenities: an OCR scanner, image uploader, URL shortener, and much more
ShareX

7-Zip

An intuitive application with a very good compression ratio that can help you not only create and extract archives, but also test them for errors
7-Zip

IrfanView

With support for a long list of plugins, this minimalistic utility helps you view images, as well as edit and convert them using a built-in batch mode
IrfanView

Context Menu Manager

Customize Windows’ original right-click context menu using this free, portable and open-source utility meant to enhance your workflow
Context Menu Manager

Microsoft Teams

Effortlessly chat, collaborate on projects, and transfer files within a business-like environment by employing this Microsoft-vetted application
Microsoft Teams

calibre

Effortlessly keep your e-book library thoroughly organized with the help of the numerous features offered by this efficient and capable manager
calibre

Bitdefender Antivirus Free

Feather-light and free antivirus solution from renowned developer that keeps the PC protected at all times from malware without requiring user configuration
Bitdefender Antivirus Free

Windows Sandbox Launcher

Set up the Windows Sandbox parameters to your specific requirements, with this dedicated launcher that features advanced parametrization
Windows Sandbox Launcher

Zoom Client

The official desktop client for Zoom, the popular video conferencing and collaboration tool used by millions of people worldwide
Zoom Client

38% discount
Bitdefender Antivirus Free
  • Bitdefender Antivirus Free
  • Windows Sandbox Launcher
  • Zoom Client
  • 4k Video Downloader
  • ShareX
  • 7-Zip
  • IrfanView
  • Context Menu Manager
  • Microsoft Teams
  • calibre
essentials


Click to load comments
This enables Disqus, Inc. to process some of your data. Disqus privacy policy