Skip to content
This repository has been archived by the owner on Jun 22, 2020. It is now read-only.

Not working on latest version #37

Open
free-ppl opened this issue May 28, 2020 · 18 comments
Open

Not working on latest version #37

free-ppl opened this issue May 28, 2020 · 18 comments

Comments

@free-ppl
Copy link

Hello I am trying out ThreateningYeti on my Windows desktop with the latest version of Responsus Lockdown Browser (2.0.6.06).
It does not seem to be working, pressing alt-tab doesn't let me change app and my secondary monitor is also completely covered by a blank window, will you be fixing this any time soon? Is it working for anybody running the latest version of the browser?

@escipion44
Copy link

Exactly not working in my case error 0 first and then in second screen of Treating yeti error hooking check foreground window function. Best

@aliveli4597
Copy link

doesnt work at all for last version.

@doopse
Copy link

doopse commented May 29, 2020

Yeti Loader doesn't work with Lock Down Browser 2.0.6.06 version please update the patch.

@ov0295
Copy link

ov0295 commented May 29, 2020

If you could update it before 03/06, i would really appreciate it because that's when i will need it for my exams.

@aliveli4597
Copy link

It looks like respondus indeed 'tried harder' on this update. 2.0.6.06 was released on 14th of May.

@aliveli4597
Copy link

aliveli4597 commented May 30, 2020

I got the "error hooking checkforeground window function" when I tried to use it. Then it quits.

@mxelm
Copy link

mxelm commented May 31, 2020

yep, it doesn't seem to work for the 2.06.06 version. I tried to do a downgrade but there are forced autoupdates.

@ShadowSoulja
Copy link

is having the same issues with mine too any updates for a new one?

@stupidoge
Copy link

@melotic sir, would you mind to have an update?

@stokdam
Copy link

stokdam commented Jun 19, 2020

Latest executable (.06) has been obfuscated.

@stupidoge
Copy link

@stokdam how to solve it? Would you mind to help us?

@melotic
Copy link
Owner

melotic commented Jun 19, 2020

Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester.

@stupidoge
Copy link

Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester.

@melotic we really appreciate that you give us an opportunity to get over difficulties in exam. You have lots of fans not only in US, but also all over the world. Students not at US are still at exam period. So, there are lots of students who cannot bypass LBD in their final exam. I really respect and admire your enthusiasm in this project.

I would appreciate it if you can have a last update for 2.0.6.06. If you don't have time, no worry. we will try our best to get over online exam.

I think your talent will make you perform exceptioanlly well in your work. Wish you all good!

Yours,
Kai

@stokdam
Copy link

stokdam commented Jun 19, 2020

Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester.

How did you unpack it? I don't think it's a matter of packing. Every function has been cut in pieces and all the piece connected with jmp. There is a huge amount of junk code, and I've seen many call instructions replaced with

push
retn

The disassebler gets very confused and is not able to recognize function bodies.

@melotic
Copy link
Owner

melotic commented Jun 19, 2020 via email

@stokdam
Copy link

stokdam commented Jun 19, 2020

With a nice script that using unicorn to emulate the binary and eliminate dead code and restore calls. This is all unneeded anyway, the cookie handshake is easily replicable with a chrome extension and the vm detection is easily bypassed.

On Fri, Jun 19, 2020 at 9:16 AM stokdam @.***> wrote: Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester. How did you unpack it? I don't think it's a matter of packing. Every function has been cut in pieces and all the piece connected with jmp. There is a huge amount of junk code, and I've seen many call instruction replaced with push retn The disassebler gets very confused and is not able to recognize function bodies. — You are receiving this because you were mentioned. Reply to this email directly, view it on GitHub <#37 (comment)>, or unsubscribe https://github.com/notifications/unsubscribe-auth/AGGSWISZ6SO2BSDJZQSILELRXNQIZANCNFSM4NNAKBYA .

They added a new VM check in respondus monitor

@yitiaogou-zkk
Copy link

Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester.

@melotic
Sir, you said you easily unpacked 2.0.6.06. Would you mind to update for version 2.0.6.06 one more time?
I urgently need yeti and your help! Without your yeti's help, I will fail my exam and cannot go to my graduate school.😭😭😭😭
I really hope all your work are well done becuase of your talent.

@stupidoge
Copy link

Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester.

@melotic
Sir, you said you easily unpacked 2.0.6.06. Would you mind to update for version 2.0.6.06 one more time?
I urgently need yeti and your help! Without your yeti's help, I will fail my exam and cannot go to my graduate school.😭😭😭😭
I really hope all your work are well done becuase of your talent.

no worry, bro. I have a test in two days. Although author easily unpacked, I think he is so busy. As long as he has time, he will upload. You can wait patiently and prepare for the worst result.(maybe he won't update for version.06) until fall semester.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests