When reversing applications it’s useful to see what’s happening under the hood. Up until now I’ve either had to bring out OllyDbg and dive into assembly or rely on a high level tool like Systernals Process Monitor. I’m fond of strace on Linux, but when I searched for “strace for Windows” resulted in tools that were not very reliable. That was couple of years ago.
Today I stumbled on these two API monitors that do exactly what I need on Windows: