• Unfortunately, we have experienced significant hard drive damage that requires urgent maintenance and rebuilding. The forum will be a state of read only until we install our new drives and rebuild all the configurations needed. Please follow our Facebook page for updates, we will be back up shortly! (The forum could go offline at any given time due to the nature of the failed drives whilst awaiting the upgrades.) When you see an Incapsula error, you know we are in the process of migration.

[Release] PS Get Dump

Skilled Illusionist
Joined
Aug 20, 2007
Messages
374
Reaction score
80
# Description:
program to dump for anti-cheat hack list.

# Functions:
- Detect EntryPoint,
- Detect 32 dump size,
- Detect program titul.

# ScreenShot:
Bason4ik - [Release] PS Get Dump - RaGEZONE Forums


# Credits:
PSLorde

# Download Link:
 
Last edited:
Experienced Elementalist
Joined
Oct 12, 2007
Messages
219
Reaction score
5
10+ Because I'm doing it hands and used 2-3 programms
 
Mythic Archon
Joined
Oct 18, 2011
Messages
721
Reaction score
38
Sir can i request?

Proc DUmp of cmd.exe

i have here but the Dump all 00 . hehe


CMD


$4AD060DC = Entry

DUmp = 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00

i dont know why all zero. . hehe
 
Skilled Illusionist
Joined
Aug 20, 2007
Messages
374
Reaction score
80
Sir can i request?

Proc DUmp of cmd.exe

i have here but the Dump all 00 . hehe


CMD


$4AD060DC = Entry

DUmp = 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00

i dont know why all zero. . hehe

dont know why you have it....but for me cmd.exe:
Code:
EP: 
$4AD05046

Dump: 
6A 28 68 68 51 D0 4A E8 C8 C5 FF FF 33 FF 57 FF 15 1C 10 D0 4A 66 81 38 4D 5A 0F 85 F3 00 00 00

Titule:
H:\WINDOWS\system32\cmd.exe
p.s. my OS: WinXP Professional SP3
 
Last edited:
Experienced Elementalist
Joined
Oct 18, 2008
Messages
206
Reaction score
19
Sir can i request?

Proc DUmp of cmd.exe

i have here but the Dump all 00 . hehe


CMD


$4AD060DC = Entry

DUmp = 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00

i dont know why all zero. . hehe

for me the same cmd 32 bits is like yours full with 00 WTF maybe it because we use win7 :huh:
 
Newbie Spellweaver
Joined
Oct 22, 2011
Messages
23
Reaction score
13
as then dump a lead her to a form
example:
{0x59F001, {0xE8, 0x00, 0x00, 0x00, 0x00, 0x5D, 0x50, 0x51, 0xEB, 0x0F, 0xB9, 0xEB, 0x0F, 0xB8, 0xEB, 0x07, 0xB9, 0xEB, 0x0F, 0x90, 0xEB, 0x08, 0xFD, 0xEB, 0x0B, 0xF2, 0xEB, 0xF5, 0xEB, 0xF6, 0xF2, 0xEB}}, // HahaMu 1.16
?
 
Experienced Elementalist
Joined
Oct 11, 2008
Messages
225
Reaction score
423
HexDump Util (work fine in Windows 7/XP/Vista)

-

Credits: GeniuS [3TecTeaM]
 
NN - Nord & Noob
Loyal Member
Joined
Jul 15, 2004
Messages
1,207
Reaction score
689
um.. very simply programm and kind a usefull xD never come to my mind, but with small changes my HE - Hook Engine can do same..

at EntryPoint is bad to take Signature xDDDDDDDDDDDD
what if cheat packed with protector / packer? tha poop will detect all programms who is detected for example with themida xDDDD

Code:
EP: 
$4AD05046

Dump: 
6A 28 68 68 51 D0 4A E8 C8 C5 FF FF 33 FF 57 FF 15 1C 10 D0 4A 66 81 38 4D 5A 0F 85 F3 00 00 00

Titule:
H:\WINDOWS\system32\cmd.exe
and this is even worst, looks like offset is out of user mode
 
Experienced Elementalist
Joined
Apr 2, 2009
Messages
223
Reaction score
57
# Description:
program to dump for anti-cheat hack list.

# Functions:
- Detect EntryPoint,
- Detect 32 dump size,
- Detect program titul.

# ScreenShot:
Bason4ik - [Release] PS Get Dump - RaGEZONE Forums


# Credits:
PSLorde

# Download Link:

Re upload please.
 
Back
Top