RegGuard is a powerful tool for monitoring and logging changes to critical Windows registry keys in real-time.
Key Features:
- Real-time Monitoring: Detects modifications in startup programs, policies, and system configurations.
- Detailed Logging: Logs changes with timestamps in a dedicated "logs" directory.
- Admin Privileges: Operates with elevated permissions for comprehensive monitoring.
Technology Stack:
- Python
- winreg module
- win32event, win32api, win32con libraries
- Multithreading with threading