ProcMon-for-Linux by Microsoft is an open-source port of the legendary Windows Sysinternals Process Monitor, adapted for Linux environments. It captures and displays real-time syscall activities—alongside process/thread details—in an interactive terminal interface. With filtering capabilities, full thread stack capture, logging to SQLite, and event replay, it offers powerful visibility into system behavior. Currently distributed as a preview release (up to v2.0 on Linux), it supports Ubuntu 18.04 kernels 4.18–5.3 with plans to expand compatibility across more distributions.

Features

  • Real-time syscall and process tracing
  • Non-destructive filters to focus on relevant events
  • Full thread stack capture for each syscall
  • Log and replay events via SQLite trace files
  • Headless mode with log export (e.g. procmon -c file.db)
  • Interactive TUI for analysis and event filtering

Project Samples

Project Activity

See All Activity >

Categories

System

License

MIT License

Follow ProcMon for Linux

ProcMon for Linux Web Site

Other Useful Business Software
MongoDB Atlas runs apps anywhere Icon
MongoDB Atlas runs apps anywhere

Deploy in 115+ regions with the modern database for every enterprise.

MongoDB Atlas gives you the freedom to build and run modern applications anywhere—across AWS, Azure, and Google Cloud. With global availability in over 115 regions, Atlas lets you deploy close to your users, meet compliance needs, and scale with confidence across any geography.
Learn More
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of ProcMon for Linux!

Additional Project Details

Operating Systems

Linux

Programming Language

C

Related Categories

C System Software

Registered

2025-07-03