Kernel Event Tracing
I watched a video and I'm trying to do what he mention. I'm trying to get a log of all the applications birth and death of processes. (the video is old back in single core cpu days, meaning WinXP, Vista wasn't even thought about cept internaly, maybe) I tried making an custom log in event viewer but nothing being loged. I did open programs and ended them but nothing. So how do I do this? Running the lasest OS relase by Microsoft. Thanks in advance -Joshua
May 5th, 2010 6:25pm

Hello Joshua, You may want to look at Process Monitor for this: http://technet.microsoft.com/en-us/sysinternals/bb795533.aspx Thanks, Darrell Gorter This posting is provided "AS IS" with no warranties, and confers no rights
Free Windows Admin Tool Kit Click here and download it now
May 6th, 2010 2:07am

xperf from the Windows Performance Toolkit is also worth checking out, with respect to a tool that can offer this function. You can get the Windows Performance Toolkit 4.6 from the Windows 7 RTM SDK . Run the web installer and choose to install Win32 Development Tools. Find wpt_x86.msi or wpt_x64.msi (for the appropriate OS architecture you're running), and run the installer. (.msi is in x:\program files\Microsoft SDKs\Windows\v7.x\Bin)
May 6th, 2010 3:21am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics