Python library to parse and read Microsoft minidump file format. Can create minidumps on Windows machines using the windows API (implemented with ctypes).
Python >= 3.6
minidump.py --all <mindidump file>
See help for possible options.
You should be using the buffered reader object, help will come later :)
The createminidump.py
script in the utils folder uses the Windows API to create minidump files. This script can also dump processes running on a different user context by enabling SeDebugPrivilege
.
Of course it only works if you are running it as administrator or a use that has SeDebugPrivilege
.
python3 setup.py install