Hi. Welcome back to the course. This love. We're going to create and collect full memory dumping windows, using the windows crest of utility.
We need to have a memory. Don't file before learning some tools for memory analysis
for this love you Really not much injury in a recent version of Windows here we have our Windows 10 operating sister.
You will also need a Willbros. Hurt a little of the tools
Where if it is a little machine machine, a savory lab or a machine off your own Looking into Windows machine,
go to the concert burning
He hear clicking advanced system settings.
When the system property window appears in the band, stop clicking the aesthetics border there. The startup allegory section
Let complete Emery dm from the right. Never get information. Drop down menu
on, then clicking. Okay.
Usually it would ask you to restart the computer. You Norma, start right now as we're gonna do that later.
No, we're gonna do is we're gonna open the web browser on Don't know that. No, My fault. 64 That exit
By going to the website
life, don't cease in. Turn off that come
first for the full name? No. My fault.
We're gonna load the known my folks system for Haas urine and 64 Beetle operating system.
Saving your computer.
We've got to save it in their local this day
Now open related compromised window by clicking on the start Icon on the bottom, Left hand corner type cnd
right. Click on it around us. An administrator
Check the directory. Folding your common prompt directory were not my fault. It's located my typing city under back thing,
I think here I'm going in a different disc.
I'm gonna write that the local 60
That is the folder where the police located.
No, My fault is a toga you can use to crash hand on cost karna memory leaks on your window systems. It's useful for learning how to identify undead enough device driver on hardware problems on you can also use it to generate blue screen. Don't fires on misbehaving sisters.
by typing the following,
We're gonna cross the computer
on the sister will create a large scandal. Don't file names memory dot the MP
After crushing after starting the computer, we need to locate the door file.
Look it The fire breast ular are under windows key on your key war on the same time
in the field on the Empress. Okay,
you will see them. The file name memory that D N P.
Now we know how to create memory dumps. In the next video, we're going to learn how to analyze this type of Merida fries. Don't forget to check the references on supplementary material for more information.