


EventGhost is a python project that's intended to let you control your home theatre PC with your standard remote control. It sees everything that happens on the machine. I wrote some extensions that cause it to send everything to an Introscope EPA in the form of a "Desktop" transaction. I use the Corrid to correlate background processes and foreground (windows) events.
One of the more interesting things I was able to see were these tiny processes that fired in the background periodically. They only last a few hundred milliseconds so you'd never know they were running.





