PROCDUMP

PROCDUMPProcDump

Description

Legitimate tool - command-line tool used to monitor a running process and dump memory depending on customcriteria. The attackers use this tool to dump the LSASS process to gatherWINDOWScredentials hashes

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

LOLbin
Procdump.exe
Software
pwdump
LOLbin
Dump64.exe
LOLbin
Sqldumper.exe
Software
gsecdump
LOLbin
Createdump.exe
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.