Quantcast
Channel: Comment Feed for Channel 9 - Defrag Tools: #29 - WinDbg - ETW Logging
Viewing all articles
Browse latest Browse all 35

Re: Defrag Tools: #29 - WinDbg - ETW Logging

$
0
0

@loverboy: WPRUI works on Win7 too (not supported, but it works).
@loverboy: kernel.etl is the kernel mode buffers, user.etl (not made here) would be the user mode buffers. The result.etl is the merge of these two, plus, it add the required information to resolve symbols. (The raw buffers just have pointers. The merge adds the module info so that offset can be mapped back to a funcion name via a symbol)

posted by windev


Viewing all articles
Browse latest Browse all 35

Latest Images

Trending Articles



Latest Images