


Easefilter Process Monitor SDK is a kernel-mode driver that filters process/thread creation and termination, it provides you an easy way to develop Windows application for the Windows process monitoring and protection. You can develop the application to implement the same features as the process monitor tool with EaseFilter Process Monitor and Registry Monitor SDK. Detail tooltip allows convenient access to formatted data that doesn't fit in the column.Process tooltip for easy viewing of process image information.Native log format preserves all data for loading in a different Process Monitor instance.Process tree tool shows relationship of all processes referenced in a trace.Advanced logging architecture scales to tens of millions of captured events and gigabytes of log data.Filters can be set for any data field, including fields not configured as columns.Configurable and moveable columns for any event property.Reliable capture of process details, including image path, command line, user and session ID.

Capture of thread stacks for each operation make it possible in many cases to identify the root cause of an operation.Non-destructive filters allow you to set filters without losing data.More data captured for operation input and output parameters.Process Monitor includes powerful monitoring and filtering capabilities, including:
