Jump to content

Dutchman101

MTA Team
  • Posts

    2,302
  • Joined

  • Days Won

    116

Everything posted by Dutchman101

  1. Don't lie, you spoofed your serial from the one starting with 8C1D1908421 .. to the one that got detected as spoof: D2887B92B511FA290EC6062AB7472134
  2. It's caused by ShadowProcessator.exe which they updated at Shadow.tech (Blade) cloud gaming, causing a false positive that's out of our control for now. Make sure that file isn't running and you'll be good to play
  3. It's on the roadmap to be redesigned, to address issues like that (caused by abuse from hosting companies/resellers). Due to manpower constraints it's not yet clear when this will happen, any backend changes can be quite an undertaking.
  4. For every aspect of things a cheat/lua injector can result in, there is specifically tailored ways to prevent it. Scripters with a good sense of security-by-design can do so much more than follow basic "Script security" guidelines that apply mostly to triggers and such. In case of player money, there should be a solid foundation (before anything else) that consists of not using GTA money as the truth/unit, but handle anything to do with money by yourself using your account system that operates through SQL database. At any time a player does anything that can lead to money increasing, being given or deposited, it has to happen through a trigger handling the event (context in which the player experiences a money change). Secure your triggers (also read https://wiki.mtasa.com/wiki/Script_security) and you're done. It's important to understand that as part of it, you are redefining money: i repeat, do not use GTA money. Use a field in your SQL database that defines the unit money, and it's an entire different virtual entity than GTA money. Obviously, also avoid using elementdata to store or update player money. Of course, even when you incorporate my suggestions on how to handle money different in an integral way, extra checking like explained by @IIYAMA is a good stick behind the door, in case someone manages to find and exploit a script security flaw in your triggers. @FlorinSzasz
  5. Пример вирусного файла в вашем случае: C:\ProgramData\Windows Tasks Service > winserv.exe infection details: https://malpedia.caad.fkie.fraunhofer.de/details/win.rms https://www.virustotal.com/gui/file/99fd9e75e6241eff30e01c5b59df9e901fb24d12bee89c069cc6158f78b3cc98/detection
  6. That crash is due to corrupt (collision) models loaded in a map, which can be the server's fault, or your GTA's fault if you have something modded in IDE/IPL, or a gta3.img vehicle (corrupt model) which is part of the maps that a server loads. And it could be a side effect of a small mistake in said update, that was already fixed, as it results in loading some GTA mods if you got mods, so that any corrupt ones can suddenly begin causing issues. To rule out this plays a role, do this: 1) update the game to this version: https://nightly.multitheftauto.com/?mtasa-1.6-latest or if you have Windows 7/8.1: https://nightly.multitheftauto.com/?mtasa_maetro-1.6-latest 2) After update, turn off "use modified GTA files" in MTA settings (main tab) 3) restart MTA and try to join @Antaryy
  7. ^ The above post is because again, we know you're spreading false stories about MTA (AC team/me) and the TOP-GTA DayZ server owner samr46, besides that you have a lot of friends you're spreading it to as well, who may believe you on your word. This is the debunk, information to fight your disinformation, everyone should know you're a ** cheater. No one likes cheaters, and no, you will never play MTA again. Have a good evening!
  8. You have been banned for using paid hacks in MTA, such as that you've been cheating throughout the entire past month. I know you're very upset now, because A) you are addicted to this game, and soon you'll find out that B) evading bans like this one (manual ban) isn't possible, adding to you being upset. Because you think AC team (through reviewing the serial of an alleged cheater) can't see they are cheating, while we really can, you are lying that you haven't been cheating and you began posting conspiracies, like "samr46 asked his friend Dutchman101 to ban Clory, and then he falsely banned me" in other MTA related discords, and your friend groups, who btw, we also know largely consist of paid hack users. For a long time, as we know, you managed to keep your hands clean while having a lot of cheaters in your personal circle, even getting "Cheater affiliation" bans on some servers. But then, you became a big cheater yourself. Bad decision. There is a separation between your bad behavior (such as spamming MTA discord with throwaway accounts, in order to harrass/target samr46) and the offense of cheating, which is exactly what led to your ban. The moment i noticed you are a paid hack user, was the moment we had enough to permanently ban you: paid hack users are at constant risk of being banned, you're no different. Fun fact: in our AC system, we can see exactly on which days you cheated, for how long, in which gaming sessions and servers, so on. That's how we know you don't always cheat, but toggle it depending on the server you'd like to cheat on. Fun fact 2: you targetted samr46 for being angry with him that you got banned on his servers.. for cheating (well, now we can see he was right in knowing you were a cheater before AC team confirmed it). Your misuse of MTA services, like the Discord spam, has drawn our attention to you, as we were originally planning to give you a short ban for said misuse.. but during that process, my eye went towards your cheating activity (aforementioned "AC system can see your cheats") that show you're a paid hack user. So you literally did it all to yourself - both for cheating, which you know is extremely bannable, and for being such a hothead that you made us put you under the loop and being caught for cheating. There is no one else to blame other than yourself.
  9. Thanks, and it's one of the reasons i have additional faith in those that we unban. Because they are the people that experienced how strong our systems are, and in how much trouble they have found themselves after getting banned. I know how many of them have spent weeks to months trying to bypass the ban, because they were sure that if they succeeded, they wouldn't repeat their mistakes as they dont want to go there again. Many of them like the cheat developers, also found how easily it was to get such a harsh ban for a complete failure of being able to write a cheat for MTA (due to the general state of AC), so its not even a good risk-reward ratio for them. The fear that we have embedded in many cheaters, cheat devs and badly behaved people throughout the years, pays off and now is a deterrent to those that were forgiven. I also hope that they will spread the word about what happens if someone does what they did in the past.
  10. Hello, All global bans have been removed, everyone is unbanned * Legend: "global ban" = Manual ban for bad activity or AntiCheat "Banned by MTA" MTA wishes everyone a happy new year. To show our good intentions and willingness to forgive those in which we previously lost faith, everyone that received a global ban in the past 15 years has been given a final chance to be a normal player, and redeem themselves. This is not a joke, we removed all bans (except for a handful of the worst cases, up to 20 users), and will only happen once in MTA's lifetime. Everyone that used paid hacks, or was a cheat developer, can play again. We are extra confident in this because we recently patched (detected, blocked) the major paid hacks on MTA, unbanning paid hack users in this scenario was our traditional approach which we however shifted away from. Everyone that did basic malicious activity against MTA, its users or a server, can play again. Of course, except for the absolute worst of cases, which is unlikely to include you. So for a bit of context, besides giving everyone a chance to redeem themselves (if they had previously insisted they realized their mistakes and wouldn't repeat.. but got rejected as we have different experiences with such users), we realized that the system used was prone to false positive bans that accumulate during periods of lowered AC Team manpower. Even when manpower went up, it was a huge leap to catch up with the growing so-called technical debt to fix up on false positives, leading to, as I must admit, a bunch of unfairly banned people with appeals that wouldn't be attended to. This is the compassionate move. - Those that know what they did to get banned, should know that this is their final chance, and that should you draw AC team's attention again you are done for. You are certainly one of those that fully realize the strength of our anti-ban evade measures to which point you can't do anything to evade bans, as when you get such a manual ban not even spoofers will work to evade.. so, don't make the same mistake again, don't put yourself in the same situation of being defeated, AC team will really come after you if you repeat. You can consider the ban amnesty as a peace offering, as long you are willing to be a normal user from now on. Not a toxic cheat developer, hacker, DDoS attacker or so on, whatever behavior got you banned. Redeem yourself, learn from your past mistakes, and make a fresh start. - Those that know they are innocent and were caught in the crossfire of their appeals not being handled in a timely manner or at all, we extend our deepest apologies to you, and reassure you that 99% of all measures (intended for other banned users) which could lead to such a false positive ban are now removed along with the Ban Amnesty. You are cleared and very much welcome back to play MTA: San Andreas. I am well aware how many dreams of past players were ruined by unfortunate mistakes. Disclaimer: Anyone that notices they are still banned after today, is one of the up to 20 people in the list of exceptions, and shouldn't bother to appeal. It has been double checked that only intended remaining bans still exist, there is no such thing as a 'mistake' to be reconsidered. Community bans (Discord/Forums) are also not included other than on a case by case basis such as through the use of our Discord Ban Appeals board, unless otherwise stated in the near future. At last, if you have any friends that are permanently banned, please inform them about the good news, but caution them to behave this time, because like I wrote at the top, this is an extremely rare event that won't occur in MTA's future, as it has never done so in the past 15 years.
  11. Dutchman101

    MTA Unknown crash!

    Please go to C:\Program Files (x86)\MTA San Andreas 1.5\MTA\dumps\private and upload the newest .dmp file there to: https://upload.mtasa.com/ Post the resulting upload link in this topic @Sexan
  12. This matter (also about that particular serial) was already answerred in another topic: https://forum.multitheftauto.com/topic/136652-ac-4-trainer-кикнул-вас/#comment-1012958 As explained, there is nothing we can do.. but in a few mins, i will solve that ban which is on it because someone who was duplicated got it banned.
  13. It's because your server has been blacklisted as a result of prohibited activity.. the message in your server's /report tells you what to do next @MTAServerOwnerSince2014
  14. There are things we can control for MTA forks, but not everything.. fixing duplicated serials isn't one of them As opposed to official MTA, there is somewhat of a duplication risk for fork players. It is the forks' choice to block something in AC traffic that makes most of them incompatible with detecting and fixing duplications, we can't help you any further, please go back to the forks and ask them for a solution
  15. Please read https://forum.multitheftauto.com/topic/128549-announcement-regarding-serial-validation-on-cloud-gaming-and-vm-services/ once again, Shadow.tech and most other types of cloud gaming are unsupported. The error you are getting is expected @stinixx
  16. With the rise of specialised anti-DDoS solutions, it is possible to make your MTA server almost immune to DDoS attacks, should you know how to isolate your other services & ports properly so that the specialised DDoS protection can absorb everything. For example, the market-leading soyoustart and OVH GAME anti-DDoS provides 100% protection with MTA natively supported through their protection layer (if you enable it for your specific MTA server UDP ports in their Hosting Control panel).. so that you can't be DDoSed if the following circumstances are met: * There is no attack method that your hoster, e.g OVH still needs to patch (they surface every now and then, it's a cat and mouse game) * You managed to isolate other services and ports, this requires a serious extent of skill and understanding of networking (like being a sysop or having studied for it) As part of 1 of the isolation steps, securing your HTTP resource download interface can be important. This guide is for that particular thing. If you use the internal HTTP server in MTA server, you aren't protected at all (except for maybe your hoster's general traffic firewall).. if an attacker can't deal serious damage through sending DDoS to your UDP ports, they will usually carry out TCP attacks next. More details on isolating other services & ports may follow in the future in Reserved posts to this topic. Let's get to the point: Basic tutorial for setting up Cloudflare for HTTP server in MTA 1. Add your domain to CloudFlare, using it as your DNS provider. It will tell you what nameservers to assign to your domain 2. Under the DNS tab create an A record for either your subdomain or the domain itself that should point to your Nginx. In here add the IP address to the Nginx server. (NOTE: You should use the standard HTTP port in your Nginx config and use that subdomain as your server_name). Make sure to tick the proxy status to on so that the request is proxied 3. In your mtaserver.conf set httpdownloadurl to whichever (sub)domain you assigned for the downloads You can then further modify your CloudFlare settings to have https, a firewall setup etc. But that's a lot more specific than what you may go with initially. Under "caching", then "configuration" you can setup how the caching itself should work Extra info (to help you understand the logic of this infrastructure): - For using CloudFlare in this way, you need just a domain, no webhost (other than the nginx External HTTP server itself). You need to be able to point the nameservers to Cloudflare. You will have to modify the DNS records at Cloudflare, and point it to your nginx External HTTP server. Since you can't just upload that data to Cloudflare and have them handle it that way The subdomain is essentially just used for Cloudflare to proxy request through, when it has that data cached it will serve it itself If not it will go further to your Nginx server to fetch it, then caches it - It is recommended to use a separate machine (VPS/dedicated server) to host your External HTTP, which Cloudflare is connected to on its time. Why? Because it helps you to isolate from DDoS attacks.. for reasons like these: * keeping your real host IP hidden is crucial to benefit from the added protection of Cloudflare. If you use a host on the same machine as your MTA Server is, it's easy to leak the IP, rendering your CloudFlare useless should they attack it directly rather than where it gets served from (Cloudflare hosts). * if an attack hits your HTTP server after all, load won't get forwarded to your main MTA server machine and immediately freeze its CPU with 100% usage/disconnect all players
  17. It's not bugs.. the glibc errors are because MTA server no longer supports some very outdated Linux distributions. The solution is simple, update Linux. Using old versions is a bad practise, and can even present security risks. There is no reason to, say, use Ubuntu 16.04 (no longer supported). Any server owner or hoster that wants to be able to use new versions of MTA in the future, has to update their Linux distribution. If you don't know how to, ask any friend that has experience with Linux. * Referred to this: @4evergaming Ubuntu 16.04 was released in 2016 and went out of LTS support in 2021. Just upgrade to Ubuntu 22.04 to solve the problem. * For anyone that cares.. after the OVH fire incident we had to rebuild our Linux build agents, losing support for some ancient Linux distro versions. It's not worth the effort to bring it back and maintain it. We also phased out older platforms like Windows XP in a similar manner.. there always comes a point where we need to encourage users to update their system rather than maintaining compatibility with legacy systems (which can complicate adding new features and improvements)
  18. Dutchman101

    AC #4 FIlelocker

    The problem is caused by this file on your PC: C:\WINDOWS\system32\drivers\FileLock.sys It's part of some software that is a violation, the point is to figure out which so you can disable it.
  19. Hello, We recently discovered a vulnerability within MTA Server, as a result of which an attacker could crash your server. The issue has been fixed and we urge all server owners and hosters to update immediately. Getting the update Linux: https://linux.multitheftauto.com/ Windows x64: https://nightly.multitheftauto.com/?mtasa_x64-1.5-rc-latest If your server is hosted locally (out of your MTA installation folder), reinstall with the full installer from https://multitheftauto.com/ for the x86 server
  20. I just uploaded a ped morphing resource that makes all players fat, you can check it out as example @long_gone https://community.multitheftauto.com/?p=resources&s=details&id=18647
  21. The script security principle that others explained to you (never trust the client) apply at all times. But a working Lua injector is extremely unlikely and rare, just as there isn't one at the moment. And the reason im saying this is because it indicates that in your case, this situation at hand, there is a scripting bug somewhere in your code. Something that lets players 'boost' (stat pad) their money or enter the amount they want through some manipulation.. that should move your focus towards reviewing all of your resources which can potentially set player's money, or other generalized vulnerabilities such as resources that act as a 'non real' Lua injector on player's demand.. such as a resource that has a file in its directory that can be loaded with loadstring, where the contents can be added into. That's a very stupid mistake that nullifies the scripting security level of a server, but it does happen regularly, also as a backdoor - always be careful who you trust to send you resources to use. Also keep an eye on admin and admin runcode logs, to see if your admins/scripters aren't setting their own (or a friended player's) money somehow. @TiTawN
  22. Dutchman101

    Error

    Delete the contents of this folder: C:\Program Files\Cheat Engine 7.2 @ZeusHazretleri
  23. I don't know about that, but i called it "SAMP discussion forums" for a reason: there can be other places on the internet where there's a concentration SAMP users or SAMP discussion categories. But it's not our job to find ones to recommend, as this is the MTA forum. Actually, i'd much rather have you won't go look for a place to ask this question again, as I don't think you got good things in mind with it.
  24. Asking for help with dubious things isn't allowed on the MTA forums. Your post doesn't make it clear if you want to get the backdoors to nab them (make yourself safe) or use them for malicious purposes/publish them. So as we can't always make sure of intentions, we will simply not allow most forms of backdoor talk, let alone help requests of this type. If you wanted to do something legitimate, you should've gone to SAMP discussion forums anyways as no, that resource (like 99% else on the MTA forums) didn't work with pawn/SAMP. @kerzaks
×
×
  • Create New...