New Creator Store viruses use explorer to crash your game & hide its malicious scripts

Visual Aids:


Links to affected resources:

Provided in private section

These infected models crash your game by inserting an object with 546 nested children, all with very long foreign names & emojis, likely intended to bloat your memory or overflow something, causing the immediate crash. while it doesn’t make your game crash instantly upon inserting the object, your studio will force close when you return from a playtest, or do Select Children on the object.

extracted all of the scripts from it;


the contents of one of the scripts:

it would probably take hours to find out whatever the purpose of this virus is, as everything is hidden among these scripts filled with thousands of lines of spam.

Why did this not get auto rejected? i can’t even upload a single script to creator store without it getting flagged for ‘misusing roblox systems’ and yet these people are able to upload this

Also worth noting that the model uploader is ID verified - the hidden require uploader is not id verified though

Expected behavior

  1. Studio should not be able to crash from these deeply nested objects, there should be some kind of prevention in place
  2. Roblox’s automatic moderation should be evaluated, as clearly it is not capable of flagging obvious TOS violations, yet it deletes innocent scripts. The virus which this script requires has existed on the platform for multiple months without being deleted

A private message is associated with this bug report

3 Likes

Video showing how to replicate, i still have no idea what those additional scripts were hiding

Hey! Thank you for bringing this up! We have taken down the offending assets and I have alerted the team about this. In terms of your assets getting flagged, you can appeal the decision on your asset configuration page as long as they do not violate our Creator Store policies. Thanks!

Thanks for dealing with this, and with my assets being flagged I have already appealed numerous times through the proper locations, always gets automatically denied, and edited reuploads also get flagged, so I just gave up on uploading it as to not risk my account being wrongly terminated. All it was is a simple module loader which requires child modules in a user-specified order

If you’re using require by ID, that violates Creator Store guidelines and will get you auto moderated unfortunately.

it requires by findfirstchild, and unfortunately they don’t auto moderate ID required scripts as all of the viruses still use IDs

these viruses are quite litterally everywhere now, it’s a little redicilous at this point

all the emoji ones are viruses. definitely not a good look on the platform when almost half of the assets are viruses


https://devforum.roblox.com/t/huge-amount-of-infected-models-on-toolbox-as-of-yesterday/4042676

1 Like

I have a huge thread of people responsible for this btw, it’s the one linked in OPs first post here.

I can also confirm the is NOT fixed. Most of the modules found by people replying to me are still up.
https://devforum.roblox.com/t/huge-amount-of-infected-models-on-toolbox-as-of-yesterday/4042676/

1 Like