Total Registry - enhanced Registry editor/viewer
☆1,591Jan 2, 2026Updated 2 months ago
Alternatives and similar repositories for TotalRegistry
Users that are interested in TotalRegistry are comparing it to the libraries listed below
Sorting:
- Windows System Explorer☆878Nov 29, 2025Updated 3 months ago
- Process Monitor X v2☆648Jan 22, 2024Updated 2 years ago
- Explore Kernel Objects on Windows☆243Apr 4, 2025Updated 11 months ago
- All reasonably stable tools☆1,395Jan 3, 2026Updated 2 months ago
- Windows Object Explorer 64-bit☆1,888Updated this week
- Enhanced version of the classic Spy++ tool☆223Updated this week
- ☆58Updated this week
- A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware. Brought to you by Winsid…☆13,699Updated this week
- Sysmon-Like research tool for ETW☆386Nov 15, 2022Updated 3 years ago
- Enumerate and disable common sources of telemetry used by AV/EDR.☆819Mar 11, 2021Updated 4 years ago
- PDBRipper is a utility for extract an information from PDB-files.☆880Updated this week
- Windows Filtering Platform Explorer☆330Aug 28, 2025Updated 6 months ago
- PE Viewer☆210Jan 24, 2026Updated last month
- Simple (relatively) things allowing you to dig a bit deeper than usual.☆3,483Feb 16, 2026Updated 2 weeks ago
- An index of Windows binaries, including download links for executables such as exe, dll and sys files☆765Updated this week
- An advanced tool for working with access tokens and Windows security policy.☆634Dec 20, 2025Updated 2 months ago
- Local Group Policy Editor plus more, for all Windows editions☆1,775Dec 27, 2025Updated 2 months ago
- State-of-the-art native debugging tools☆3,654Feb 24, 2026Updated last week
- PoCs and tools for investigation of Windows process execution techniques☆953Feb 2, 2026Updated last month
- Transacted Hollowing - a PE injection technique, hybrid between ProcessHollowing and ProcessDoppelgänging☆580Mar 8, 2024Updated last year
- A Pin Tool for tracing API calls etc☆1,620Feb 8, 2026Updated 3 weeks ago
- View ETW Provider manifest☆574Nov 1, 2024Updated last year
- Debug Print viewer (user and kernel)☆72Feb 7, 2024Updated 2 years ago
- Native API header files for the System Informer project.☆1,347May 25, 2025Updated 9 months ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,331Oct 31, 2025Updated 4 months ago
- ☆69Mar 3, 2022Updated 4 years ago
- Sample extensions, scripts, and API uses for WinDbg.☆812Dec 27, 2025Updated 2 months ago
- Portable Executable Explorer version 2☆459Apr 9, 2024Updated last year
- Code Injection, Inject malicious payload via pagetables pml4.☆243Jul 7, 2021Updated 4 years ago
- A tool that shows detailed information about named pipes in Windows☆735Nov 15, 2024Updated last year
- RPC Monitor tool based on Event Tracing for Windows☆384Aug 19, 2024Updated last year
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆1,043Sep 24, 2023Updated 2 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆486May 18, 2021Updated 4 years ago
- Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks,…☆2,313Oct 31, 2025Updated 4 months ago
- MemProcFS☆4,021Feb 24, 2026Updated last week
- Windows Internals Book 7th edition Tools☆2,684Apr 11, 2024Updated last year
- Tool to bypass LSA Protection (aka Protected Process Light)☆989Dec 4, 2022Updated 3 years ago
- UAC bypass by abusing RPC and debug objects.☆627Oct 19, 2023Updated 2 years ago
- Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-mem…☆3,562Oct 31, 2025Updated 4 months ago