Register for your free account! | Forgot your password?

You last visited: Today at 22:26

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[Release] S4Client Dump

Discussion on [Release] S4Client Dump within the S4 League Hacks, Bots, Cheats & Exploits forum part of the S4 League category.

Reply
 
Old   #1
 
elite*gold: 225
Join Date: Sep 2014
Posts: 334
Received Thanks: 460
Smile [Release] S4Client Dump

Since, at least in my case, you are mostly unable to generate a dump from the client because of firstly, XC (which can easily be bypassed for dumping purposes), and especially secondly, some clientside protection including messing with the PE header, I decided to make use of @'s really smart method utilizing minidumps.

You may read more at

I didn't want to set-up an undetected debugging environment either, so this was the most convenient solution available.

Provided package comes with three files:
  • S4Client.exe - minidump-extracted client module with partially fixed PE header
  • S4Client.idb - IDA Pro Database with additionally fixed IAT / parsed RTTI
  • objtree.txt - Parsed RTTI, aligned hierarchically





Btw.: IDA does not recognize the IAT as "the IAT", hence the import tab will not show any items.
Instead, you can access the imports by either going through address space 01F75000 - 01F75C0C
or press View->Subviews->Names and look them up there.
Though, I'm fairly sure this has something to do with the PE header not being fixed completely and
the import symbol table not being rebuilt.
If anybody knows a way to fully rebuild the import table including the IAT for IDA let me know.

EDIT: Import table is now fully fixed + RTTI info is parsed.
Cyrex' is offline  
Thanks
11 Users
Old 12/26/2016, 22:46   #2
 
xCred's Avatar
 
elite*gold: 0
Join Date: Oct 2015
Posts: 119
Received Thanks: 31
what does this do? If you don't mind me asking.
xCred is offline  
Old 12/26/2016, 22:48   #3
 
elite*gold: 225
Join Date: Sep 2014
Posts: 334
Received Thanks: 460
Quote:
Originally Posted by xCred View Post
what does this do? If you don't mind me asking.
You can use dumps for static analysis.
Cyrex' is offline  
Old 12/26/2016, 22:49   #4
 
xCred's Avatar
 
elite*gold: 0
Join Date: Oct 2015
Posts: 119
Received Thanks: 31
Quote:
Originally Posted by Cyrex' View Post
You can use dumps for static analysis.
Meaning?.. Sorry im new to understanding what "dumps" are
xCred is offline  
Old 12/26/2016, 22:57   #5
 
elite*gold: 225
Join Date: Sep 2014
Posts: 334
Received Thanks: 460
Quote:
Originally Posted by xCred View Post
Meaning?.. Sorry im new to understanding what "dumps" are
It allows you to do some reversing without it (module) actually having to be loaded in memory.

And now please don't ask what "reversing" means, lol.

If you want to learn more consider reading some articles about RCE:
Cyrex' is offline  
Old 12/26/2016, 22:59   #6
 
xCred's Avatar
 
elite*gold: 0
Join Date: Oct 2015
Posts: 119
Received Thanks: 31
Quote:
Originally Posted by Cyrex' View Post
It allows you to do some reversing without it actually having to be loaded in memory.

And now please don't ask what "reversing" means, lol.

If you want to learn more consider reading some articles about RCE:
Thank you
xCred is offline  
Old 12/26/2016, 23:11   #7

 
Stalker Of Night's Avatar
 
elite*gold: 25
Join Date: Jan 2014
Posts: 40
Received Thanks: 9
i didn't understand any **** wtf is this dump do ? does it make s4client open faster or what?
Stalker Of Night is offline  
Old 12/26/2016, 23:14   #8
 
elite*gold: 225
Join Date: Sep 2014
Posts: 334
Received Thanks: 460
Quote:
Originally Posted by memoprince1 View Post
i didn't understand any **** wtf is this dump do ? does it make s4client open faster or what?
If you did understand english well and did read the posts above yours, your question would already be answered.
Cyrex' is offline  
Old 12/26/2016, 23:29   #9

 
Stalker Of Night's Avatar
 
elite*gold: 25
Join Date: Jan 2014
Posts: 40
Received Thanks: 9
i read everything still can't understand explain good or u stupid **** will be useless

tell me one function that dis thing do ...
Stalker Of Night is offline  
Old 12/26/2016, 23:53   #10
 
elite*gold: 0
The Black Market: 229/0/0
Join Date: Mar 2014
Posts: 2,790
Received Thanks: 6,656
Quote:
Originally Posted by memoprince1 View Post
i read everything still can't understand explain good or u stupid **** will be useless

tell me one function that dis thing do ...
Its like... a container with a lot of Information about the game. Its usefull for guys, where making Cheat's / Hacks for this game.
anonymous-29742 is offline  
Thanks
2 Users
Old 12/26/2016, 23:55   #11

 
Stalker Of Night's Avatar
 
elite*gold: 25
Join Date: Jan 2014
Posts: 40
Received Thanks: 9
Quote:
Originally Posted by Oshumar View Post
Its like... a container with a lot of Information about the game. Its usefull for guys, where making Cheat's / Hacks for this game.
best explain <3


ty oshumr

next time learn how to explain cyrex..
Stalker Of Night is offline  
Old 12/27/2016, 00:15   #12
 
tuaprimadd's Avatar
 
elite*gold: 0
Join Date: Jun 2014
Posts: 178
Received Thanks: 77
Quote:
Originally Posted by memoprince1 View Post
best explain <3


ty oshumr

next time learn how to explain cyrex..
He explained it pretty well. It's your fault for being a ******** and not understanding ****.

Nice release. Might take a look at it later.
tuaprimadd is offline  
Thanks
10 Users
Old 01/26/2017, 19:31   #13
 
elite*gold: 0
Join Date: Feb 2015
Posts: 297
Received Thanks: 108
Virus
jannidamien001 is offline  
Old 01/28/2017, 21:51   #14
 
elite*gold: 0
Join Date: May 2012
Posts: 1,342
Received Thanks: 1,498
Quote:
Originally Posted by jannidamien001 View Post
Virus
>already enjoys the game with itc
calls it as virus when bored
LULULULUL
SilverEmerald is offline  
Reply

Tags
dump, fixed_iat, reversing, s4client, s4league


Similar Threads Similar Threads
[Release] Taiwan S4Client Launcher
06/08/2015 - S4 League Hacks, Bots, Cheats & Exploits - 63 Replies
Do you want a bit better launcher, with a better GUI? Then go here : http://www.elitepvpers.com/forum/s4-league-hacks-b ots-cheats-exploits/3430201-release-taiwan-s4clien t-launcher-4.html#post30175847 I just made an ugly S4Client Launcher for Taiwan http://i.imgur.com/6F2gyb0.png Public Class Form1 Private Sub Button1_Click(ByVal sender As System.Object, ByVal e As System.EventArgs) Handles Button1.Click
[Release]S4Client Strings
07/24/2011 - S4 League Hacks, Bots, Cheats & Exploits - 23 Replies
Hallöchen ;3 Da ich gerade mit PE über das gepatchte S4 geschneit hab, will ich euch einfach mal die neue Stringlist geben... vielleicht ist ja was brauchbares dabei ;) Kleiner Ausschnitt: jdji jljejvjejl jejujljajvj_jejcjnjajhjc jnjojijtjijdjnjojcj_jtjcjejljejs jhjtjajejdj_jrjejpj_jljljijk jejujljajv jejrjojcjsj_jnjwjojdj_jhjcjujojt
[Release] S4Client CT
09/16/2010 - S4 League Hacks, Bots, Cheats & Exploits - 12 Replies
S4 Client CT Hier ist eine CT mit Multispeed, CamWall und Position A Cheat Table with Multispeed, CamWall Hack and Position Hack Screen: CamWall Hack: http://img828.imageshack.us/img828/5196/s42010091 3224259.jpg Position Hack:



All times are GMT +1. The time now is 22:28.


Powered by vBulletin®
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2025 elitepvpers All Rights Reserved.