New feature: Fake Packet Mode, activate with
This feature is surprisingly effective against many DPI systems, where GoodbyeDPI used not to work: Rostelecom-Ural, TTK, cellular Tele2, Turk Telekom.
This mode sends fake HTTP GET request www.w3.org and TLS ClientHello also to www.w3.org if real HTTP or HTTPS request is detected. The fake packets are sent with either low TTL value and/or with incorrect TCP checksum, to trigger DPI but to prevent delivering the packet to real destination.
Incorrect checksum does not work with some routers, which for some reason validate the checksum or recompute it in full upon NAT.
Both methods won’t work in a virtual machine with userspace NAT networking. Use any kind of proper networking, bridge, macvlan/ipvlan, for example.