hello ,everyone, i have a requirement in project.
i want to monitor event log, if have a new event, i will recive message, that include event parameters.
seem as etw, i search the Notify api, as:
HANDLE Handle = OpenEventLogA(NULL, "Security");
HANDLE hWriteEvent = CreateEventA(NULL, TRUE, FALSE, "mymy");
NotifyChangeEventLog(Handle, hWriteEvent);
WaitForSingleObject(hWriteEvent,-1);
but this is a notify event, no callback, no event parameter, i known traverse by
ReadEventLog, but i do not use it, because the performance is too low.
have a functions, like CALLBACK Notify(void* eventlog), if have a new event log happen, the function can be called