UPDATE: Regarding the recent 3DS banwave

fb-3ds-400x400.jpg

It appears that users are being banned from 3DS online services, en masse. There's no direct cause right now, and seemingly no linking factor. This post is meant as an announcement for users, to be wary, and that GBAtemp will keep you updated as soon as more info rolls in. If you have been banned, please post in the thread below, and we will try to keep tabs on the situation. To be extra sure, it can't hurt to turn off your 3DS's wireless capabilities, so you might as well do that for now.

Edit 1: it appears that e-Shop access isn't restricted if you are banned.

Edit 2: A caller to Nintendo reported that the company said this ban is due to "unauthorized software usage".

Edit 3: @LinkSoraZelda is collecting info. Contact him if you are banned.

Edit 4: Click and fill this out if you were BANNED.

Edit 5:
[11:28:19 PM] Clector: Curiously the page of that error in Nintendo Support website used to have this:Error Code: 002-0102 Situation: You receive the error code 002-0102 when attempting to connect online. What to Do: If you continue to experience this issue, please contact Nintendo by calling 1-800-255-3700. Representatives are available from 6 a.m. to 7 p.m., Pacific Time, 7 days a week.
[11:28:44 PM] Clector: Now it says this: What to Do: If you are experiencing this error code, your Nintendo 3DS family system has been banned due to unauthorized system modifications, play of unauthorized versions of one or more games, and/or connecting to the official game servers in violation of our terms of service. This ban is effective immediately and requests to remove the ban will not be processed.
Thanks to @Joom

Edit 6: Aurora Wright is taking another poll here

Edit 7: Not a lot is known but

There are bans happening, they are happening in all regions.
All models in the 3ds family seem to be candidates for banning.
There is no indication they will be anything other than permanent.
A game or DLC may end up being a cause but there is no one game or DLC that ties banned users together.
The cause or causes are as yet unknown, though it does seem to be related to modifications. Reports of unmodified consoles being banned are as yet unproven.
The banning is tied to something you can modify, thus you can unban. Doing it while the causes are unknown is likely only going to burn a working token though.
There are semi public tokens out there, Nintendo knows how to browse a forum as well as you so don't be surprised if they also get banned.
It does not seem to be limited to a given base firmware version, it does not seem to be limited to any one custom firmware type. There is some speculation that older hacking methods are not being hit as hard but nothing to confirm this yet.
The data collection could have happened this morning, or it could have been months in the making.
A simple check to see is checking your friends list, by itself it will not ban you.
Some are turning their wifi off. It is doubtful this will be of much use and being banned does not seem to come with any downsides that wifi being off will not also mimic.
You may have escaped a ban thus far but it could happen at any point. It could be that they stop in the future, it has happened on other consoles, but you would be living in hope rather than any particularly well founded logic.
The bans are done on the side of Nintendo's servers rather than your 3ds so there is also that.

If you hack your devices/games then their online functionality may be troubled. This has been known for decades, Nintendo seems to have finally caught up with that.

Please continue to share information with the thread or the links in previous edits.

Update 5/30

HOW TO HELP AVOID BANS (we think)​

If I was to guess from the information we have gathered since the ban wave, it seems likely that they are looking for TitleIDs that don't exist. Homebrew shows up in the activity log as the Download Play app, and fake CIA's show up as just ??????. That last one is what I'm guessing they are looking for.

If you are not banned yet or before you unban yourself, go into your friends list, choose settings, and turn off the option to "show friends what game you are playing." This will prevent you from playing games online with friends, so turn it back on when you wanna game with someone, but ALWAYS keep it off when running custom CIAs. Next, go into system settings -> internet settings -> spotpass, and turn off BOTH options. One is auto download software, the other sends system information to Nintendo. Also, make sure you don't have your favorite title set to something stupid like FBI or any other non-Nintendo CIA.

Its VERY likely that these options are what tipped off Nintendo, but we aren't 100% certain yet. The amount of banned people that had one of these options turned on was over 80% for each. If I was to assume that some of those people overlap, its very possible (but not confirmed) that 100% of banned people in the survey had at least one of those options turned on. I personally had all of them off and I have TONS of reasons for Nintendo to ban me.... yet I am not banned (yet).

Another bit of advice: Only run custom CIAs when offline, and after you close them, run a "legit" game like Smash Bros. or something before shutting down or going back online. This way your most recent title won't show up as a fake CIA

Current Theories as to what causes a ban
* SpotPass Settings: 8 users out of 46 users that were banned have SpotPass completely shut off, or SpotPass only (no friends list visibility)
* Firmware Version (Luma, Nintendo): Literally all reports ranged from 10.2+, I can get exact numbers for this if you'd like, but all firmwares were affected.
* Firmware Type (A9LH, B9S): 44 of the 126 B9S users that answered were banned, pattern was mirrored for A9LH users as well.
* Homebrew Titles such as FBI, HBL, Luma Updater, Themely, and freeShop: Literally about 98% of users both banned and unbanned had some combination of these applications installed. However the common ones were: FBI, HBL, LumaUpdater and NTR.
* Save Modification: Equal amounts of users on both sides have reported save modification in some form, either with PKSM or another save editor
* System Transfers: 188 users said that they had not previously system transfered, 61 of those users were banned; 16 users said they transferred from a hacked console, only three of them received a ban; 13 said they transferred from a stock system and likewise were banned. The rest of our sample did not answer this question.
* Activity Log Information: A majority of those who have not been banned have said they had NOT cleaned their activity logs. I can get exact numbers for this too on request.

This information is just what I've found. Like I said, there could be variables or things we haven't even checked for yet. But these are things that I feel should be disproven, at least with the current dataset we have.

  • From the information that we've gathered from some people that have used a packet sniffer such as WireShark, the following data is sent to Nintendo's online gaming servers as soon as the 3DS connects to the internet:
    • Amount of time spent online (timer stops when either the system is disconnected from the internet, or connection drops out, then starts the timer again in a new session when it reconnects to the internet).
    • The game being played and amount of time spent on it during that session.
    • The console's unique hexadecimal ID used in the LocalFriendCodeSeedB, along with it's RSA-signed signature.
    • The console's serial number in which is broadcasted from the SoC and is hard coded in the SoC.
    • Friend Code generated on the Nintendo 3DS system, if one has been generated.
    • Internet connection status (either online or offline).
    • The Nintendo Network ID, if there is one linked to it.
    • Even if the sending of SpotPass Information is switched off, or even hiding your currently playing games. It does not prevent the system from sending currently playing information to Nintendo's online gaming servers, it only hides it from your friends in your friend list (like being invisible on the forum, while mods and admins can still see you). Why? Because even people without a Friend Code on their system have been getting banned too!

  • The following data is NOT sent to Nintendo's online gaming servers:
    • The data from the Nintendo 3DS's Activity Log. Oddly enough, while Nintendo does explicitly state that they collect Activity Log data, they're actually referring to their own server's Activity Log, which always tracks every console's online activity, and keeps a record of them that is stored forever. And is only collected in increments of data through a timer and a currently playing list.
    • Games or apps that have not been played, regardless if they're legitimate or not. You only get tracked when you're online and using that game or app.
    • Using games or apps while offline. Even though it is stored on the 3DS console's Activity Log, that data is NOT sent to Nintendo's online gaming servers.
    • Custom Firmware. Though we can't rule out the possibility of them releasing a 3DS update in the future that adds such function to collect MD5 hashes of files and FIRM data and send them to Nintendo online gaming servers (which would also be updated in a maintenance).

  • Things that people think what happens with consoles, but really doesn't:
    • "LocalFriendCodeSeedB is transferred to the system upon doing a system transfer". This is false, the LocalFriendCodeSeedB remains on the system and does not move to another system.
    • "The console generates a LocalFriendCodeSeedB upon first startup". Again, this is false, the LocalFriendCodeSeedB is made during the manufacturing process at Foxconn. It is generated at the factory, flashed to the NAND flash memory storage, then created as an account on Nintendo's online gaming server and Nintendo eShop server immediately when being manufactured. It is absolutely impossible to generate a LocalFriendCodeSeedB and be able to connect to Nintendo's online gaming server and/or Nintendo eShop server, even if you knew the RSA generation key for it. You'd end up with Error Code 002-0102 "This console's online services have been restricted by Nintendo" if you even tried (the error can either mean two things: The hexadecimal ID doesn't exist on the server, or the request to access the hexadecimal ID has been denied which in other words... banned). So a LocalFriendCodeSeedB generator will NEVER happen! Because it's not worth doing, if it can't connect.
    • Switching off "Currently Playing" information. Once again, this does not hide your online activity from Nintendo's online gaming server, it only hides it from your friends.
    • Switching off SpotPass. Nope, this too doesn't hide your online activity from Nintendo's online gaming server, it only opts-out of receiving SpotPass data, sorry.

So pretty much the bottom line is, if anyone has been using custom apps and/or titles not installed through Nintendo eShop while online in the past, guess what? You're screwed! And it is only a matter of time before your console's unique hexadecimal ID in the LocalFriendCodeSeedB is banned from Nintendo's online gaming server. This will mean, your console can't access the Friend List or play any online functions in games.

If you have been online while using custom apps and/or titles not installed through Nintendo eShop and haven't been banned yet, that's because Nintendo hasn't caught up to you yet. They're still going through each unique hexadecimal ID's Activity Log on their server, and by Activity Log, I mean the Activity Log on their server, not the 3DS console's activity log. And it will be only a matter of time before you're banned too.

Thanks to @Platinum Lucario @MadMageKefka and @ShadowEO !
 

ShadowEO

Well-Known Member
Member
Joined
Mar 31, 2009
Messages
542
Trophies
0
Age
31
Location
Ohio, USA
XP
436
Country
United States
I mean my friend never used any save modifications or illegal Pokemon. So that could be ONE factor but not the actual one thats fucking all of us up.

I hate saying my friend because it feels like a lie or something xD (Sorry for edgy EMOticon)

I use "xD" myself, no apologies needed. It certainly can be, we haven't disproven save modifications yet or had any evidence to the contrary either (and ya, I understand, saying "my friend" makes it seem like heresay)
 

Derpdragon

Member
Newcomer
Joined
May 27, 2017
Messages
5
Trophies
0
Age
31
XP
58
Country
United States
Hey guys, I came across this whole issue today and I haven't been banned (yet at least, will list system info below) I was wondering if anyone has tried checking to see if the 3ds saves and updates security certificates? Is there a way to check that? If anyone has any ideas on that, I'd like to try and create an exploit for their CA (Certificate Authority) server side. I work in Cryptography for a major company (whom shall remain unnamed), and it looks like (from the outside) something we did when we found hundreds of unauthorized modification made to our hardware that had been stolen over the years (former employees not returning hardware after quitting/firing) still connecting to our servers. All we did to ban all of them from connecting was collected their private keys once they connected and black listed them. It wasn't the MOST secure way to deal with it, but it was the cheapest and easiest way. Plus, we figured none of the hardware was intentionally reconnecting (their NIC cards where hardwired to always exchange private keys with our server) so it wasn't a big deal. Had someone been a real hacker though, this could have been a HUGE security breech. As they could have just brute forced their own key to see the algorithm and forged (with trial and error and a lot of time) a new private key. If I can get a nice big list of keys that haven't been banned, I could create a key forger for anyone to use.

As of right now, my system info looks like this:
Luma and A9LH
Sys 11.4.0-37U
NNID linked
No rom or save edits used
Currently installed software:
FBI steveice 10
Monster hunter 4U (haven't played online in a few weeks)
Pokemon yellow and red VCs
Freeshop
Cooking mama 5

Never have had streetpass or spotpass on.
I can access my friends list.
 

Fsm51

Well-Known Member
Newcomer
Joined
Jun 30, 2011
Messages
47
Trophies
1
Age
27
Location
Star Road
XP
361
Country
El Salvador
o3DS XL - 11.4.0-37U
Status: Not Banned
No NNID linked

History:

Between May~October 2013 - I was banned from the eShop (I could still play online)
September 2015 - Installed MSET + RxTools + EmuNAND.
At some point of 2015 - Updated to MenuHax + CakesFW, I then modified my SecureInfo_A to get unbanned from the eShop.
At some point of 2016 - Installed a9lh + auReiNAND, i dont know what guide I used, but Plailect's wasn't up yet.
Last week I installed sighax (using this).
Currently - Sighax + Luma 7.1 (release)

This is my personal 3DS, I've used it plenty times for System Transfers (for DSiWareHax), I do play a lot online (Mario Kart 7 / Smash Bros).

My apps:
FBI (Inyected)
Homebrew Loader
NTR CFW Selector
JKSM
CHMM

I've edited my savegames a lot of times (Animal Crossing) and extData (specifically Mii Maker's extData).

Last played games:
Mario Kart 7: A minutes ago, I do not use cheats nor i have an edited savefile, I do load mods for it (music/texture hacks) with Luma's LayeredFS feature.
Super Smash Bros.: This morning, I do not use cheats nor i have an edited savefile, I do load mods for it (music/texture hacks) with saltySD + Luma.
Animal Crossing - New Leaf: Today, this game's savefile IS heavily modified! custom town layout.

That's pretty much all I use my 3DS for.
I do own those 3 games (physically) but I have them installed as I do not like carrying my games with me everywhere.

I've never used *THAT*Shop, I've generated all my CIAs from scene released .3DS games using my own 3DS + Decrypt9.

Streetpass:
Active.

Friend List:
Favourite Title: Right now, Animal Crossing. I've set it to hbl loader before but apparently it doesn't even show up like that on my friends' 3DS.
Settings since forever : Show friends when you're online? [Yes]
Friends: 43 as of today.

Spotpass:
On.

My online behavior:
I like taunting salty players on Smash :( I'm guilty.

I don't even use eShop (only for updating my games) because it's almost useless where I live (El Salvador).
 
  • Like
Reactions: TinchoX

Slashkin

Active Member
Newcomer
Joined
May 26, 2017
Messages
37
Trophies
0
Age
32
XP
140
Country
Russia
I am a bit sad that I am not banned. I did everything with my 3ds. Cia, legit, hacks, cheats, Pokémon hacked, loaded saves, emulators, spotpass on, friends on, installed themes.

The only things I could consider for not banning me:

- I purchased games from the Eshop (maybe Nintendo is not banning this people?)
- long time cfw user
- never installed freeshop or similar

Same thing, but I istalled freeshop and ciangel. Not banned (yet)
I heard speculation: Nin maked a bot, which random banned ppl in few wave till end :з
 
  • Like
Reactions: mordorer

KytuzuEX

Recreate your Re:Creators by Recreating.
Member
Joined
Apr 21, 2014
Messages
755
Trophies
0
Age
25
XP
688
Country
Puerto Rico
I use "xD" myself, no apologies needed. It certainly can be, we haven't disproven save modifications yet or had any evidence to the contrary either (and ya, I understand, saying "my friend" makes it seem like heresay)
XD
I feel ya. I actually use that "xD" to lessen the seriousness and wise tone of the message I write.
 

ShadowEO

Well-Known Member
Member
Joined
Mar 31, 2009
Messages
542
Trophies
0
Age
31
Location
Ohio, USA
XP
436
Country
United States
Loving this! More people, we're finally gathering the information we need! Spotpass is definitely off my cause list at this point, unless someone else has conjecture that can support it still being an active theory. We have way too many people in this thread in different ban states, with differing settings for it to have been a factor.

Restating for people just joining us, the following is the list of items that have so far, not appeared (NOTE: APPEARED, Open to counter argument, looking to people who know who they are) to be a deciding factor:

  • SpotPass Settings: Some who have been banned have this off, some who have not have it turned on. We've also had enough reports that I'm comfortable assuming this isn't a factor, unless someone else has theories opposite this decision.
  • Firmware Version (Luma, Nintendo): People on all versions have been hit
  • Firmware Type (A9LH, B9S): People using A9LH and B9S have been hit as well.
  • StreetPass Settings (I doubt this was a thing to begin with since StreetPass uses local Wireless for communications): StreetPass rarely, if ever, talks to Nintendo. I think the only time it does is if it receives a special Mii, or when you purchase a game for Mii Plaza.
  • Homebrew Titles such as FBI, HBL, Luma Updater, Themely, and *thatShop* (We now have more users who are saying they have these titles installed who aren't banned, myself included) - I cannot conclusively rule this out, but the main five titles here seem to be safe, as we've had enough reports of people on both sides with it installed.
 
Last edited by ShadowEO,

Veranek

Well-Known Member
Member
Joined
Oct 25, 2016
Messages
156
Trophies
0
XP
227
Country
United States
Hey guys, I came across this whole issue today and I haven't been banned (yet at least, will list system info below) I was wondering if anyone has tried checking to see if the 3ds saves and updates security certificates? Is there a way to check that? If anyone has any ideas on that, I'd like to try and create an exploit for their CA (Certificate Authority) server side. I work in Cryptography for a major company (whom shall remain unnamed), and it looks like (from the outside) something we did when we found hundreds of unauthorized modification made to our hardware that had been stolen over the years (former employees not returning hardware after quitting/firing) still connecting to our servers. All we did to ban all of them from connecting was collected their private keys once they connected and black listed them. It wasn't the MOST secure way to deal with it, but it was the cheapest and easiest way. Plus, we figured none of the hardware was intentionally reconnecting (their NIC cards where hardwired to always exchange private keys with our server) so it wasn't a big deal. Had someone been a real hacker though, this could have been a HUGE security breech. As they could have just brute forced their own key to see the algorithm and forged (with trial and error and a lot of time) a new private key. If I can get a nice big list of keys that haven't been banned, I could create a key forger for anyone to use.

As of right now, my system info looks like this:
Luma and A9LH
Sys 11.4.0-37U
NNID linked
No rom or save edits used
Currently installed software:
FBI steveice 10
Monster hunter 4U (haven't played online in a few weeks)
Pokemon yellow and red VCs
Freeshop
Cooking mama 5

Never have had streetpass or spotpass on.
I can access my friends list.

Um not to be rude and all, but banned seeds work as well, no need to ask for unbanned seeds, right now you could be a scammer.
 
  • Like
Reactions: nitroBW

Zaphod77

Well-Known Member
Member
Joined
Aug 25, 2015
Messages
665
Trophies
0
Age
48
XP
604
Country
United States
I get the feeling that nintendo is laughing at us now trying to figure out what the cause are.

i still think my theory is the right one, but it's hard to tell for sure.
 

Zkajavier

Well-Known Member
Member
Joined
Sep 13, 2009
Messages
358
Trophies
1
XP
1,334
Country
Costa Rica
Now I'm curious if it is the Fire Emblem Echo that is causing the ban, and if people who didn't pirate it or it's DLC were part of the SuMo ban, and they ended up banned because someone with the seed they used got banned for Echoes, and caused a chain reaction.
I've got SuMo before release and I wasn't banned, I've also got echoes before release and wasn't banned. I never went online with them before release tho. I also had SpotPass on but disabled it recently because of the ban wave. I'm still not banned.
 

ShadowEO

Well-Known Member
Member
Joined
Mar 31, 2009
Messages
542
Trophies
0
Age
31
Location
Ohio, USA
XP
436
Country
United States
I get the feeling that nintendo is laughing at us now trying to figure out what the cause are.

i still think my theory is the right one, but it's hard to tell for sure.
Exactly why I haven't completely ruled out Piracy in my listed items, it could certainly be something similar to the SuMo bans, or it could truly be random in selection. There's too many variables in this to conclusively say.

@brenoppr We do not yet. But that's a good question, it would help immensely if we could get a valid sample size of banned users vs non-banned. There's a few, but the community was so fragmented in it's discussion and surveying that it's almost impossible to be sure that you're getting a good, accurate count.
 
Last edited by ShadowEO,

marbles73

Well-Known Member
Member
Joined
Apr 12, 2017
Messages
109
Trophies
0
Age
33
XP
135
Country
Canada
I think it's possible Nintendo just hasn't got through their ban list yet, or maybe it's something the CFWs do themselves or during installation and not specific actions afterwards.
 

Zekamon

Now with extra salt!
Member
Joined
Sep 16, 2016
Messages
470
Trophies
0
Age
22
XP
443
Country
Germany
I get the feeling that nintendo is laughing at us now trying to figure out what the cause are.

i still think my theory is the right one, but it's hard to tell for sure.
I'm going to tell my Uncle President Reggo Filly Aims to tell me the cause and I'm not going to tell you [emoji14] /s

Do you mean the Echoes theory?
 

ShadowEO

Well-Known Member
Member
Joined
Mar 31, 2009
Messages
542
Trophies
0
Age
31
Location
Ohio, USA
XP
436
Country
United States
Some ppl belive in it here (meaning where I am living, not this topic). Bullshit, too stupid for big company.
A bot would be a little far-fetched, it could definitely be an automatic response of some kind though. We can't make any real assumptions about Nintendo's infrastructure really.

@marbles73 It looks like ban reports have slowed down, so while it may not be over, they could be doing some additional investigations into individual accounts. But it does look like they are picking who they picked for a reason, we just haven't found that reason yet.
 
Last edited by ShadowEO,
  • Like
Reactions: Slashkin

Zaphod77

Well-Known Member
Member
Joined
Aug 25, 2015
Messages
665
Trophies
0
Age
48
XP
604
Country
United States
My theory is that its' triggered by multiple things.

1) spotpass telemetry showing unauthorized cia files ran.
2) online play with unbought/nonexistent CIA fies.
3) any other weirdness in the spotpass telemetry they think can't happen without hacking.
 
  • Like
Reactions: brenoppr

Jaxon

Active Member
Newcomer
Joined
Jan 1, 2013
Messages
38
Trophies
1
Age
40
XP
206
Country
United States
I was thinking the same thing, I was wondering if maybe Echoes was a cause similar to SuMo. But during SuMo, they hyperbanned us. Here they merely console banned.

That and the last few reports kinda poked holes in that theory, at least in my head.

And with @Jaxon's post, we can put more nails into SpotPass/StreetPass, @Jaxon looks to have an almost identical configuration to mine as well (though I /do/ use custom badges and tell all games that they can use SpotPass)

Actually, I do still have one custom badge I forgot about. I don't have the software to install custom badges anymore so I'm not sure how it's still there, but it is. I also allow spotpass for games, but what I don't do is download the demos from the icons they send- BoxBoxBoy and Kirby Team Clash got deleted- as soon as the notification showed up, I chose to delete rather than visit eshop to download. I also religiously choose no when asked if I want to share gameplay with Nintendo- I never realized there was a master setting for this so that was left on (might as well have been turned off though if I was denying access on a game to game basis)
 

ShadowEO

Well-Known Member
Member
Joined
Mar 31, 2009
Messages
542
Trophies
0
Age
31
Location
Ohio, USA
XP
436
Country
United States
Actually, I do still have one custom badge I forgot about. I don't have the software to install custom badges anymore so I'm not sure how it's still there, but it is. I also allow spotpass for games, but what I don't do is download the demos from the icons they send- BoxBoxBoy and Kirby Team Clash got deleted- as soon as the notification showed up, I chose to delete rather than visit eshop to download. I also religiously choose no when asked if I want to share gameplay with Nintendo- I never realized there was a master setting for this so that was left on (might as well have been turned off though if I was denying access on a game to game basis)

If you've never re-opened Badge Arcade after using the custom badges, it would still be in the badge database. But yes, your information is very much appreciated. Feel free to assist us, but be sure to skim through the thread to make sure that you aren't proposing a theory that may have already been proposed. Helps keep the thread clean.

I'll post my list of "so far, possibly disproven" theories every so often as a reminder.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    K3Nv2 @ K3Nv2: Pass