-
-
Notifications
You must be signed in to change notification settings - Fork 11
Not working on latest version #37
Comments
Exactly not working in my case error 0 first and then in second screen of Treating yeti error hooking check foreground window function. Best |
doesnt work at all for last version. |
Yeti Loader doesn't work with Lock Down Browser 2.0.6.06 version please update the patch. |
If you could update it before 03/06, i would really appreciate it because that's when i will need it for my exams. |
It looks like respondus indeed 'tried harder' on this update. 2.0.6.06 was released on 14th of May. |
I got the "error hooking checkforeground window function" when I tried to use it. Then it quits. |
yep, it doesn't seem to work for the 2.06.06 version. I tried to do a downgrade but there are forced autoupdates. |
is having the same issues with mine too any updates for a new one? |
@melotic sir, would you mind to have an update? |
Latest executable (.06) has been obfuscated. |
@stokdam how to solve it? Would you mind to help us? |
Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have much time to update this project as much since I now have a full-time job, but I'll get this rolling again in the fall semester. |
@melotic we really appreciate that you give us an opportunity to get over difficulties in exam. You have lots of fans not only in US, but also all over the world. Students not at US are still at exam period. So, there are lots of students who cannot bypass LBD in their final exam. I really respect and admire your enthusiasm in this project. I would appreciate it if you can have a last update for 2.0.6.06. If you don't have time, no worry. we will try our best to get over online exam. I think your talent will make you perform exceptioanlly well in your work. Wish you all good! Yours, |
How did you unpack it? I don't think it's a matter of packing. Every function has been cut in pieces and all the piece connected with jmp. There is a huge amount of junk code, and I've seen many call instructions replaced with push The disassebler gets very confused and is not able to recognize function bodies. |
With a nice script that using unicorn to emulate the binary and eliminate
dead code and restore calls. This is all unneeded anyway, the cookie
handshake is easily replicable with a chrome extension and the vm detection
is easily bypassed.
…On Fri, Jun 19, 2020 at 9:16 AM stokdam ***@***.***> wrote:
Yes, 2.0.6.06 has been packed, but I've easily unpacked it. I don't have
much time to update this project as much since I now have a full-time job,
but I'll get this rolling again in the fall semester.
How did you unpack it? I don't think it's a matter of packing. Every
function has been cut in pieces and all the piece connected with jmp. There
is a huge amount of junk code, and I've seen many call instruction replaced
with
push
retn
The disassebler gets very confused and is not able to recognize function
bodies.
—
You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
<#37 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AGGSWISZ6SO2BSDJZQSILELRXNQIZANCNFSM4NNAKBYA>
.
|
They added a new VM check in respondus monitor |
@melotic |
no worry, bro. I have a test in two days. Although author easily unpacked, I think he is so busy. As long as he has time, he will upload. You can wait patiently and prepare for the worst result.(maybe he won't update for version.06) until fall semester. |
Hello I am trying out ThreateningYeti on my Windows desktop with the latest version of Responsus Lockdown Browser (2.0.6.06).
It does not seem to be working, pressing alt-tab doesn't let me change app and my secondary monitor is also completely covered by a blank window, will you be fixing this any time soon? Is it working for anybody running the latest version of the browser?
The text was updated successfully, but these errors were encountered: