Fibratus is a tool which is able to capture the most of the Windows kernel activity - process/thread creation and termination,…