MicrosoftAntimalwareEngineTraceEventParser
Keywords
ProviderGuid
ProviderName
MicrosoftAntimalwareEngineTraceEventParser(TraceEventSource)
EnumerateTemplates(Func<String, String, EventFilterResponse>, Action<TraceEvent>)
GetProviderName()
BehaviorMonitoringBmBootRecordChange
BehaviorMonitoringBmDetection
BehaviorMonitoringBmDocumentOpen
BehaviorMonitoringBmDriverLoad
BehaviorMonitoringBmEtw
BehaviorMonitoringBmFileChange
BehaviorMonitoringBmFileChangeEx
BehaviorMonitoringBmFileCreate
BehaviorMonitoringBmFileCreateEx
BehaviorMonitoringBmFileDelete
BehaviorMonitoringBmFileHardLink
BehaviorMonitoringBmFileRename
BehaviorMonitoringBmFolderCreate
BehaviorMonitoringBmFolderEnum
BehaviorMonitoringBmFolderRename
BehaviorMonitoringBmModuleLoad
BehaviorMonitoringBmNetworkAccept
BehaviorMonitoringBmNetworkConnect
BehaviorMonitoringBmNetworkData
BehaviorMonitoringBmNetworkDetection
BehaviorMonitoringBmNetworkListen
BehaviorMonitoringBmOpenProcess
BehaviorMonitoringBmProcessCreate
BehaviorMonitoringBmProcessStart
BehaviorMonitoringBmProcessTainting
BehaviorMonitoringBmProcessTerminate
BehaviorMonitoringBmRegistryBlockCreate
BehaviorMonitoringBmRegistryBlockDelete
BehaviorMonitoringBmRegistryBlockRename
BehaviorMonitoringBmRegistryBlockReplace
BehaviorMonitoringBmRegistryBlockRestore
BehaviorMonitoringBmRegistryBlockSet
BehaviorMonitoringBmRegistryKeyCreate
BehaviorMonitoringBmRegistryKeyDelete
BehaviorMonitoringBmRegistryKeyRename
BehaviorMonitoringBmRegistryReplace
BehaviorMonitoringBmRegistryRestore
BehaviorMonitoringBmRegistryValueDelete
BehaviorMonitoringBmRegistryValueSet
BehaviorMonitoringBmRemoteThreadCreate
BehaviorMonitoringBmScavengerTask
BehaviorMonitoringProcessMonitorFlags
CacheAdd
CacheLookup
CacheMOACAdd
CacheMOACLookup
CacheMOACRevoke
ExpensiveOperationTaskExpensiveOperationBegin
ExpensiveOperationTaskExpensiveOperationEnd
Message
Message59
Message68
Message69
MessageUfsScanStart
MessageUfsScanStart32
MessageUfsScanStop
MessageUfsScanStop33
MetaStoreTaskMetaStoreAction
MetaStoreTaskMetaStoreMaintenance
PersistedStoreTaskPersistedStoreAction
PersistedStoreTaskPersistedStoreAnalyzeFile
PersistedStoreTaskPersistedStoreMaintenance
ScanrequestStart
ScanrequestStop
Skippedfile
StreamscanrequestStart
StreamscanrequestStop
Versions
net10.0-windows7.0
namespace Microsoft.Diagnostics.Tracing.Parsers
{
[GeneratedCode("traceparsergen", "2.0")]
public sealed class MicrosoftAntimalwareEngineTraceEventParser : TraceEventParser
{
public event Action<BehaviorMonitoringBmFileHardLinkArgsTraceData> BehaviorMonitoringBmFileHardLink;
}
}
.NET | 5.06.07.08.09.010.0 |
---|---|
.NET Core | 2.02.12.23.03.1 |
.NET Framework | 4.6.14.6.24.74.7.14.7.24.84.8.1 |
.NET Standard | 2.02.1 |
Information specific to net10.0 | |
Platforms | This API is only available when you target a specific platform: |
Windows | 7.0 |
Information specific to net10.0-windows7.0 | |
Assembly | Microsoft.Diagnostics.Tracing.TraceEvent , Version=3.1.19.0, PublicKeyToken=b03f5f7f11d50a3a |
Referencing | Your project needs a package reference to |
Package | Microsoft.Diagnostics.Tracing.TraceEvent (3.1.19) netstandard2.0 |
Platform Restrictions | The event adder is supported on all platforms. The event remover is supported on all platforms. |
- Built-in API
- Package-provided API