ProcMon-for-Linux by Microsoft is an open-source port of the legendary Windows Sysinternals Process Monitor, adapted for Linux environments. It captures and displays real-time syscall activities—alongside process/thread details—in an interactive terminal interface. With filtering capabilities, full thread stack capture, logging to SQLite, and event replay, it offers powerful visibility into system behavior. Currently distributed as a preview release (up to v2.0 on Linux), it supports Ubuntu 18.04 kernels 4.18–5.3 with plans to expand compatibility across more distributions.

Features

  • Real-time syscall and process tracing
  • Non-destructive filters to focus on relevant events
  • Full thread stack capture for each syscall
  • Log and replay events via SQLite trace files
  • Headless mode with log export (e.g. procmon -c file.db)
  • Interactive TUI for analysis and event filtering

Project Samples

Project Activity

See All Activity >

Categories

System

License

MIT License

Follow ProcMon for Linux

ProcMon for Linux Web Site

Other Useful Business Software
8 Monitoring Tools in One APM. Install in 5 Minutes. Icon
8 Monitoring Tools in One APM. Install in 5 Minutes.

Errors, performance, logs, uptime, hosts, anomalies, dashboards, and check-ins. One interface.

AppSignal works out of the box for Ruby, Elixir, Node.js, Python, and more. 30-day free trial, no credit card required.
Start Free
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of ProcMon for Linux!

Additional Project Details

Operating Systems

Linux

Programming Language

C

Related Categories

C System Software

Registered

2025-07-03