Skip to content

easy module dumper with simple bundle: kernel + usermode

License

Notifications You must be signed in to change notification settings

atomlin-git/edumper

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

18 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

simple bundle kernel + usermode to easy dumping process modules
dependencies:

ksocket: https://github.com/wbenny/KSOCKET/
FindWDK: https://github.com/SergiusTheBest/FindWDK/

inspired by:

https://github.com/EquiFox/KsDumper
https://github.com/justvmexit/dumpr


todo:

hide the threads on driver
add the ability to get the process ID by name, output process modules and information about them
add more error handlers on driver
report errors from driver to usermode
rewrite ksocket to more modern decision

it is recommended to use with kdmapper (https://github.com/TheCruZ/kdmapper)
it is not recommended to use with an active anti-cheats (EAC, BE, etc...) (the dump will be successful, but it is possible to block/tag the account (BSOD is also possible, the success was checked only on RAGE:MP and BattleBit))

About

easy module dumper with simple bundle: kernel + usermode

Resources

License

Stars

Watchers

Forks