Combat Arms Module Dumper v2.1

Posts 1–15 of 16 · Page 1 of 2
Combat Arms Module Dumper v2.1
Combat Arms Module Dumper v2.1

Combat Arms Module Dumper is a tool designed to make dumping of modules (such as Engine.exe and CShell.dll) quick and easy, coded entirely in C#. It works on 64-bit OSes unlike other alternatives such as Kernel Detective that require a driver to operate. I've tested it on Combat Arms NA however I'm guessing it'd work on EU (and other countries) as well.



Features:
- Fully user-mode, no drivers used.
- No DLL injection required.
- Works when the game is in fullscreen and when HackShield has hidden the game.
- IAT/Imports reconstruction.
- Removes bad sections from Themida protection.

Instructions:
- Start Combat Arms or Combat Arms Module Dumper, does not matter which order (still works when game is in fullscreen)
- Hit Refresh if you started the tool first (should be over 100 modules or so)
- Select the module to dump and click Dump

Changes in v2.1:

- Fixed bug where PE dumps produced were not debuggable due to gaps in the section headers and misaligned header fields. @J
- Minor tweak to module list to prevent redrawing while list is populating.

Notes:
- You may notice Task Manager opening, please do not close it while the tool is "Waiting for Combat Arms" because it needs it to work.
- The dumper still works when the game is in fullscreen mode where most tools can't access the game.
- This version produces proper EXEs or DLLs, it doesn't do memory dumps anymore.
- If you get a message saying "Unable to communicate with/start Task Manager, the program will now close." try starting the dumper again while Task Manager is already open.

I've only fully tested on Windows 8.1 x64 and a little on XP x86 but hopefully it works on everything else.

Virus Scans:
https://www.virustotal.com/en/file/8...70e38/analysis
http://virusscan.jotti.org/en/scanre...2f5fa23e1be283

Please ignore the false positives, it's not a trojan.
Combat Arms Module Dumper v2.1 - by master131_mpgh.net.rar557 KB · 1,349 downloads 29/60 malicious
EDIT: .exe's work fine, but you need to fix it for .dll's as well D: @master131
Quote Originally Posted by J View Post
EDIT: .exe's work fine, but you need to fix it for .dll's as well D: @master131
I tested it with CShell.dll and it worked fine. Which file are you referring to specifically?
Quote Originally Posted by master131 View Post
I tested it with CShell.dll and it worked fine. Which file are you referring to specifically?
CShell.dll actually. xD
Quote Originally Posted by J View Post


CShell.dll actually. xD
Yeah, no idea. I tried it because I knew someone would complain if it didn't work and it worked fine. OllyDbg didn't complain so I'm not sure what's going on, on your end.
Dont work win7 x64 :/
it doesn't stark on my computer :/
can someone explain me what we do with this module dumper ?
Quote Originally Posted by pisouleo View Post
can someone explain me what we do with this module dumper ?
1. Start CA
2. Start Module Dumper
3. Dump Engine.exe
4. Dump CShell.dll
5. Open in ollydbg
6. Make hacks
This program are working fine
Is it detected?>
Posts 1–15 of 16 · Page 1 of 2

Post a Reply

Similar Threads

Tags for this Thread

None

Need help?