Skip to content

LiveProcessMonitor v1.0

Choose a tag to compare

@MichalSoltysikSOC MichalSoltysikSOC released this 15 Feb 16:24
2b5cedc

Purpose: Live Process Monitor is a Windows GUI tool designed for baseline-driven endpoint process and network monitoring. It allows the user to create a snapshot baseline of running processes and their network activity, and then transition into continuous post-baseline monitoring to identify new processes, terminated processes, and changes in TCP and UDP network connections. Unlike tools that display only momentary live activity, Live Process Monitor does not discard post-baseline observations over time. All post-baseline process and network activity is continuously collected, retained, and presented as an auditing history, allowing the user to review the full sequence of changes without losing important context. The tool correlates process metadata, command lines, executable hashes, and live network endpoints in a single unified view to support incident response, malware analysis, and live endpoint triage.