ad -
active -
directory -
ntds.dit -
ntds -
dump -
- Use Volume Shadow Copies via the VSSAdmin command
- Leverage the NTDSUtil diagnostic tool available as part of Active Directory
- Use the PowerSploit penetration testing PowerShell
- Leverage snapshots if your Domain Controllers are running as virtual machines
secretsdump.py (Impacket)