duangsues.is_a? SaltedFish
59 subscribers
609 photos
6 videos
91 files
562 links
🌶🐔🐟 duangsuse 的日常
尤其喜欢发些奇奇怪怪的东西
和转载别人的东西
Download Telegram
fx 的缓存
和他们有关的网站特别多 总结一下

https://mbi88.net/mfcclub
45.62.110.178
103.208.220.66
139.162.20.209
mcteam.info
mfcclub.com
mfcclub.net
mfcclub.info
mfcteam.com
mfctem.net
mfcteam.info
t10d1.com
g10w1.com
mbivip.com
mfcteam.org // 可能


mcalls.asia
mface.me
gameview.asia
mmallv2u.net
charity100.org
mmallv2u.com
o2olr.com
macademy.asia
mbidesaku.com
m-darts.com
mbiv2u.com
mepay.net
mcoinv2u.com
linktu.com


27.126.176.216
103.238.224.19


5 年了, 发展的这么大啊... 这跑路的话怕不是还有点坠 🌚
https://27.126.176.216/?post=171215145805
我们先来看看这个所谓的 「抢币」软件 (第三方大概)
fx 已经报恶意网站了
( 本来 x64dbg 是最好分析的
算了不花费时间做这个了
最有价值批量检查的是: (Ruby 2.6 中有效的数组和字符串表达形式)

["https://mbi88.net/mfcclub", "45.62.110.178", "103.208.220.66", "139.162.20.209", "mcteam.info", "mfcclub.com", "mfcclub.net", "mfcclub.info", "mfcteam.com", "mfctem.net", "mfcteam.info", "t10d1.com", "g10w1.com", "mbivip.com", "mfcteam.org", "mcalls.asia", "mface.me", "gameview.asia", "mmallv2u.net", "charity100.org", "mmallv2u.com", "o2olr.com", "macademy.asia", "mbidesaku.com", "m-darts.com", "mbiv2u.com", "mepay.net", "mcoinv2u.com", "linktu.com"]


Bash

https://mbi88.net/mfcclub 45.62.110.178 103.208.220.66 139.162.20.209 mcteam.info mfcclub.com mfcclub.net mfcclub.info mfcteam.com mfctem.net mfcteam.info t10d1.com g10w1.com mbivip.com mfcteam.org mcalls.asia mface.me gameview.asia mmallv2u.net charity100.org mmallv2u.com o2olr.com macademy.asia mbidesaku.com m-darts.com mbiv2u.com mepay.net mcoinv2u.com linktu.com
# print things in yellow (ANSI console)
function cprint() { printf "\033[01;33m$1\033[00m\n"; }

# set up urls to ping
urls='https://mbi88.net/mfcclub 45.62.110.178 103.208.220.66 139.162.20.209 mcteam.info mfcclub.com mfcclub.net mfcclub.info mfcteam.com mfctem.net mfcteam.info t10d1.com g10w1.com mbivip.com mfcteam.org mcalls.asia mface.me gameview.asia mmallv2u.net charity100.org mmallv2u.com o2olr.com macademy.asia mbidesaku.com m-darts.com mbiv2u.com mepay.net mcoinv2u.com linktu.com'

for i in $urls; do cprint "Ping host: $i"; ping -c1 $i; cprint "Exited: \033[01;31m$?\033[00m"; done
基础情况:

Ping host: https://mbi88.net/mfcclub
ping: https://mbi88.net/mfcclub: 未知的名称或服务

Ping host: mfcclub.net
ping: mfcclub.net: 没有与主机名关联的地址

Ping host: mfcclub.info
ping: mfcclub.info: 没有与主机名关联的地址

Ping host: mfcteam.com
Exited: 1

Ping host: mfctem.net
ping: mfctem.net: 未知的名称或服务

Ping host: mfcteam.info
ping: mfcteam.info: 没有与主机名关联的地址

Ping host: t10d1.com
ping: t10d1.com: 没有与主机名关联的地址

Ping host: mmallv2u.net
Exited: 1

Ping host: mepay.net
Exited: 1

Ping host: mcoinv2u.com
Exited: 1
其他的放 Zenmap 上跑
跑一晚上
Failed to resolve "mfcclub.net".
Failed to resolve "mfcclub.info".
Failed to resolve "mfcteam.net".
Failed to resolve "mfcteam.info".
Failed to resolve "t10d1.com".
Failed to resolve "mbivip.com".
duangsues.is_a? SaltedFish
Failed to resolve "mfcclub.net". Failed to resolve "mfcclub.info". Failed to resolve "mfcteam.net". Failed to resolve "mfcteam.info". Failed to resolve "t10d1.com". Failed to resolve "mbivip.com".
sudo nmap -T4 -A -v -Pn mbi88.net 45.62.110.178 103.208.220.66 139.162.20.209 mcteam.info mfcclub.com mfcclub.net mfcclub.info mfcteam.com mfcteam.net mfcteam.info t10d1.com g10w1.com mbivip.com mfcteam.org mcalls.asia mface.me gameview.asia mmallv2u.net charity100.org mmallv2u.com o2olr.com macademy.asia mbidesaku.com m-darts.com mbiv2u.com mepay.net mcoinv2u.com linktu.com
GeekApk 这两天可能都会受到这个骗子的影响... #geekapk
whois 没有任何有用的信息