-
Notifications
You must be signed in to change notification settings - Fork 50
Home
ktwo/ShaneK2 edited this page Jan 28, 2017
·
13 revisions
-
Download / run setup from publish.zip ⇒ https://github.com/ShaneK2/inVtero.net/blob/master/quickdumps/publish.zip
-
MSDIA registered "regsvr32 msdia140.dll" (can skip on dev boxes usually already registered)
-
Access a python shell with;
quickdumps python
Then just copy and paste something like analyze.py, scan.py or list.py.
It also matches the logical and physical process lists to ensure that there does not exist a hidden process. Please extend it but in the future will be higher order analytics, pointer/structure type information and integrity checks.