´ÓAIµö¶üµ½×Ô¶¯»¯¹¥»÷×éÖ¯µÄÒ»´ÎÉî¶È·ÖÎöÓëËÝÔ´

°ä²¼¹¦·ò 2025-08-07

µÚÒ»Õ ¸ÅÊö


½üÆÚ£¬GA»Æ½ð¼×ADLabÔÚÍþвá÷ÁÔÆ½Ì¨ÉÏ·¢ÏÖ¶àÆð¼Ù×°³ÉΪAI´óÄ£ÐÍÀûÓ÷¨Ê½µÄÍøÂç¹¥»÷¡£Í¨¹ý¶ÔÕâÅú¹¥»÷µÄ³Ö¾Ã×·×ٺͷÖÎö£¬ÎÒÃÇ·¢ÏÖÕâЩ¿´ËÆÁãÉ¢µÄÀûÓÃAI´óÄ£ÐÍÈȶȽøÐд«²¼µÄ¹¥»÷£¬Æäʵ±³ºó°µ²Ø×ÅÒ»¸öÓµÓи߶È×éÖ¯»¯¡¢×Ô¶¯»¯ºÍÈ«Çò»¯ÔËÓªÌØµãµÄºÚ¿Í×éÖ¯¡£ÔÚ³¤¹¦·òµÄËÝÔ´ºÍ×·×Ùºó£¬×îÖÕÍøÂçµ½ÁË´óÁ¿Óë¸ÃºÚ¿Í¹¥»÷»î¶¯ÓйصÄÑù±¾¡¢»ù´¡ÉèÊ©ÒÔ¼°»î¶¯µý±¨Êý¾Ý¡£»ùÓÚÕâЩÊý¾ÝµÄ·ÖÎö£¬ÎÒÃÇ·¢ÏָúڿÍ×é֯ͨ¹ý¹¹½¨ÁËÒ»ÕûÌ××Ô¶¯»¯ÍøÂç¹¥»÷ϵͳÀ´ÊµÏÖ¹æÄ£»¯µÄC2ÖÎÀí¡¢×Ô¶¯»¯µÄ»ù´¡ÉèÊ©ÅäÖᢻúеÈË»¯µÄÉçȺ´«²¼¡¢ÅúÁ¿»¯µÄ¶ñÒâÈí¼þÌìÉúÓë·Ö·¢µÈµÈÖ°ÄÜ£¬ÆäÖÐC2µÄ×Ô¶¯»¯ÌìÉú»¹¾ß±¸ÁËìØÖµºÍÓïÒåÈÆ¹ýµÄ»úÔì¡£


ÔÚ½ñÄêÒÔÀ´£¬¸÷ÀàÒÔAI×÷Ϊ»°ÌâºÍµö¶üµÄ¹¥»÷ÔÙÈý³öÏÖ£¬ÎÒÃÇÒ²ÔÚ2Ô·ݵÚÒ»¹¦·ò·¢ÏÖÁËÒøºüAPT×éÖ¯ÀûÓúϷ¨DeepSeek²¿ÊðÈí¼þ½øÐй¥»÷µÄ°²È«Íþв¡£ÔÚ³ÖÐøµÄ¼¸¸öÔÂÖУ¬¹ÌÈ»ÒÀÈ»´æÔںܶàÁãÉ¢ÀûÓÃAIµÄÔÚÒ°¹¥»÷£¬µ«ÕâЩ¹¥»÷²¢Ã»ÓгÖÐøÐÔ¡£Ö±µ½ÎÒÃǰÑÎȵ½Ò»ÏµÁÐÓëGPTÓйصĶñÒâÔØºÉµÄ³öÏÖÈç¡°AI GPT4 TRADING BOT.rar¡±¡¢¡°ChatGPT4 Online.rar¡±¡¢¡°ChatGPT-Gemini4.rar¡±ºÍ¡°OpenAI GPT Images.rar¡±µÈ£¬Ö»¹ÜÕâÀà¼Ù×°ÔÚ½ñÄêµÄͶ¶¾Ñù±¾ÖÐÔçÒѲã³ö²»Çµ«ÕâÐ©ÔØºÉËù¹ØÁª³öµÄºÚ¿ÍÐÐΪÊý¾Ý²¢·ÇÎÒÃÇ´ËǰËù¿´µ½ÁãÉ¢¹¥»÷ÄÇôµ¥Ò»¡£Í¨¹ý¶ÔÕâÅúÑù±¾½øÐÐÀàËÆÐÔÆ¥Åä²¢½áºÏ¶þ½øÔìÌØµã½øÐоÛÀà·ÖÎö£¬ÎÒÃÇ×ܹ²·¢ÏÖÁË4431¸öÇ¿¹ØÁªÔغÉ£¬ÆäÖÐÉæ¼°µÄ»ù´¡ÉèÊ©ÓÐ1927¸ö£¬µ±È»ÎÒÃÇÍøÂçµ½µÄÊý¾Ý²¢²»ÆëÈ«£¬ÉõÖÁÖ»ÊÇÆä±ùɽһ½Ç¡£Í¬Ê±Í¨¹ýÆäͶ·ÅÔ´Í··ÖÎö¡¢´«²¼Çþ·¡¢¶ñÒâÈí¼þ¸öÐÔÎÒÃÇÈ·ÐÅÕâ²¢²»ÊÇÓÉÐþÉ«²úÒµÁ´£¨´æÔÚ´óÁ¿½áβºÚ¿Í£©×öµÄÑù±¾³ö²ú£¬¶ø½ö½ö¾ÍÊÇÒ»¸öºÚ¿Í×é֯ͨ¹ýÆä±³ºó×Ô¶¯»¯¹¥»÷ϵͳÅúÁ¿ÌìÉú¡£


ÔÚÎÒÃÇ·¢ÏÖµÄ4431¸öԭʼ¹¥»÷ÔØºÉÖУ¬³ýÁËÀûÓÃAI»°Ìâ½øÐÐÓÕµ¼ºÍÀ©É¢±í£¬ºÚ¿Í»¹³ö²úÁË´óÁ¿Èç¡°Free NordVPN.rar¡±¡¢¡°Adobe Photoshop + Crack.rar¡±¡¢¡°Steam Account Checker 2025.rar¡±ºÍ¡°PornHub Downloader Video.rar¡±µÈµÄ¹¥»÷Ñù±¾£¬ÕâЩµö¶üÎļþÃû³Æ¸²¸ÇÁË´ÓVPNÆÆ½â¡¢µÁ°æÈí¼þ¡¢Õ˺żì²âÆ÷µ½É«ÇéÄÚÈÝÏÂÔØµÈ¶àÖÖÖ¸±ê³¡¾°¡£¸Ã×éÖ¯ÓÐÒâʶµØÉè¼Æ³öÒ»Ì×¶àÔª»¯µö¶ü£¬¸²¸Ç¸ü¿í·ºµÄDZÔÚÖ¸±ê¡£


ÔÚ×·×Ù·ÖÎö¹ý³ÌÖÐͬʱ£¬ÎÒÃǶԶñÒâÔØºÉ½øÐÐÁËÂŴνâÃܵõ½¶ñÒâÔØºÉµÄÖ÷Ìâ¸ºÔØ£¬²¢×îÖÕÈ·Èϱ»Í¶·ÅµÄ¶ñÒâÈí¼þΪµ±Ç°·Ç³£»îÔ¾µÄÇÔÃÜľÂí¡ª¡ªLumma Stealer¡£¹¥»÷ÔØºÉͨ¹ýÈý½×¶ÎµÄpayload½âÃÜ¡¢½áºÏ¹ý³Ì×¢Èë¡¢»¨Ö¸Áî¡¢´úÂë»ìºÏÒÔ¼°API¶¯Ì¬Å²Óõȷ½Ê½À´Æ¥µÐ·ÖÎö¡£¸ÃľÂí×Ô2022 ÄêÆðÔÚµØÏÂÂÛ̳Ѹ¿ìÊ¢ÐУ¬×÷Ϊһ¿î¡°¶ñÒâÈí¼þ¼´·þÎñ¡±£¨MaaS£©Stealer£¬Æä¾ß±¸Ä£¿é»¯¼Ü¹¹ºÍ׳´óµÄÊý¾ÝÇÔÈ¡ÄÜÁ¦£ºÈçÇÔÈ¡ä¯ÀÀÆ÷ÃÜÂëÓëCookies¡¢¼ÓÃÜÇ®±ÒÇ®°ü¡¢FTP/VPN/email¿Í»§¶ËÅäÖÃÎļþµÈ¶àÖÖÃô¸ÐÊý¾Ý¡£Í¬Ê±Æ¾½èÆäÇáÁ¿»¯ºÍÓÅÁ¼µÄÃâɱ¸öÐÔ£¬¸ÃľÂí±»Ô̺¬¡°Scattered Spider hacking group¡±¡¢¡°Black Basta¡±¡¢¡°Storm-1607¡±ºÍ¡°FatherOfCarders¡±ÒÔ¼°¡°Moon Cloud¡±ÔÚÄڵĶà¸ö³ÛÃûºÚ¿Í×éÖ¯Ëù¿í·ºÑ¡È¡£¬³ÉÎªÍøÂç·¸×ï·Ö×ӵijÁÒª¹¥»÷±øÆ÷¡£´Ë±í£¬ÔÚÈ¥ÄêµÄPowerSchool ¹¥»÷ÊÂÎñÖУ¬ Lumma Stealer×÷Ϊ³õʼÈëÇֽ׶εijÁÒªÈë¿Ú£¬µ¼Ö³¬¹ý 7,000 Íò¼Í¼й¶£¬ÕâЩ·¸×ï·Ö×ÓʹÓÃÆä²Î¼ÓÐÅÓþ¿¨Ú²Æ­¡¢³õʼ½Ó¼ûȨÏúÊÛ¡¢¼ÓÃÜÇ®±Ò͵ÇԵȡ£Óë´Ëͬʱ£¬Î¢Èí¡¢ÃÀ¹ú˾·¨²¿ºÍÅ·ÖÞÐ̾¯×éÖ¯µÈÔÚ½ñÄê5Ô·ݵĽáºÏÐж¯ÆÚ¼ä£¬²é³öÖÁÉÙ394,000 Ì¨ Windows µçÄÔÊܵ½ Lumma StealerϰȾ¡£


ÔÚ±¾´Î×·×Ù·ÖÎöÖУ¬ÎÒÃÇͨ¹ý½âÃܳɹ¦»¹Ô­²¢¹ØÁª³öÒ»´óÅú¶ñÒâÓòÃû¡¢¶ñÒâURLºÍ¸ü´óÁ¿µÄ¶ñÒâÑù±¾£¬²¢½áºÏǰÆÚÍøÂçµÄÊý¾ÝºÍºÚ¿ÍÓйصĵý±¨ÐÅÏ¢£¬¶Ô»ù´¡ÉèÊ©·¢Õ¹ËÝÔ´Óë¹ØÁª·ÖÎö£¬½ø¶ø³ÉÁ¢ÆðÒ»Ì×½ÏΪÆëÈ«µÄ¹¥»÷»ù´¡ÉèÊ©»­Ïñ¡£¹²Í¬Ê¢¿ªµý±¨Ô´ºÍƽ̨Êý¾Ý£¬ÎÒÃÇ×·×Ùµ½ÁËÆä±³ºóµÄºÚ¿Í×éÖ¯ÔÚ¶à¸öÉ罻ýÌåÆ½Ì¨Éϲ¼ÉèµÄ´¹µöÓÕµ¼×ÊÔ´¡¢Êèµ¼Á´½ÓÒÔ¼°´óÁ¿ÓëÖ®ÅäÌ׵ĻúеÈËÕ˺Å¡£´Ó·ÖÎöµÄÁ˾ÖÀ´¿´£¬ºÚ¿ÍͶÈëµÄ»ù´¡ÉèÊ©²»½ö¹æÄ£¿É¹Û£¬ÇҾ߱¸¸ß¶ÈÄ£¿é»¯ºÍÊÊÓ¦ÐÔ£¬ÏÔʾ³ö³ÉÊìµÄ¹¥»÷ÄÜÁ¦ÓëÔËάÄÜÁ¦¡£½áºÏÆä³ÖÐøÍ¶·ÅLumma StealerµÈÇÔÃÜľÂíµÄÐÐΪÄܹ»ÅжÏ£¬¸Ã×éÖ¯µÄÖ÷ÌâÖ¸±êÊÇÔÚÈ«ÇòÁìÓòÄÚ´ó¹æÄ£»ñÈ¡Óû§Ãô¸ÐÊý¾ÝÓëÊý×Ö×ʲú¡£Æä¹¥»÷²¢·ÇÁãÉ¢ÊÔ̽£¬¶øÊÇÒ»´Î¾­¹ý³ä·Ö³ï±¸¡¢Ã÷È·Ö¸±ê¡¢³ÉϵͳִÐеÄÍøÂç·¸×ï×´¶¯¡£±¾ÎĽ«ÝÓÈÆÕâ´Î¹¥»÷Öеĵö¶üÎļþ´«²¼·½Ê½¡¢»ù´¡ÉèÊ©´î½¨¡¢¹¥»÷Ö¸±êÌØµã¼°µäÐÍÑù±¾½øÐÐÉî¿Ì·ÖÎöÓë×¢Ã÷¡£


µÚ¶þÕ  ´«²¼õè¾¶·ÖÎö


ͨ¹ý³Ö¾ÃµÄ×·×ÙÎÒÃÇÍøÂçµ½ÁË´óÁ¿µÄÑù±¾¼°ÓйØÊý¾Ý£¬¶øºóÎÒÃǶÔÕâЩÑù±¾ºÍÊý¾Ý½øÐÐÁËϵͳÐÔ¹ØÁª·ÖÎö£¬ÊÔͼ»¹Ô­³öÕâÅú¹¥»÷µÄ´«²¼õè¾¶¼°´«²¼Ô´Í·¡£ÎÒÃÇÒÔ¶¯Ì¬ÐÐΪÈÕÖ¾¡¢URLÌØµã¡¢¹Ø¼ü×Ö¼à¿ØºÍ¶àƽ̨ËÝÔ´µÈ¼¿Á©£¬ÕýÈ·µØÕÒµ½Á˹¥»÷Ô´£¬¸ÃºÚ¿Í×éÖ¯µÄÖØÒª¹¥»÷ÔØºÉÔ´Í·ÓУº¼´Ê±Í¨Ñ¶Èí¼þTelegram¡¢Îļþ·ÖÏíÆ½Ì¨MediaFireºÍ4sharedÒÔ¼°GitHub²Ö¿â¡¢ÂÛ̳Ìû×ӵȡ£


2.1¡¢TelegramƵ·


ÔÚ×·Òä¹¥»÷ÔØºÉµÄԴͷʱ£¬ÎÒÃÇ·¢ÏÖ×î¶àÆðԴΪ¼´Ê±Í¨Ñ¶Èí¼þTelegram¡£Ôڴ˹ý³ÌÖУ¬ÎÒÃǾÍÔÚ×·×Ùij¸öÃûΪ¡°ChatGPT4 Online.rar¡±µÄ¶ñÒâѹËõ°üÑù±¾Ê±£¬¾¹Òâ±í½Ò¿ªÁ˹¥»÷ÕßÀûÓÃTelegramʵÏÖ×Ô¶¯»¯´«²¼µÄÒ»½Ç¡£Õâ¸ö¼Ù×°³ÉÈȵãAI¹¤¾ßµÄÑù±¾×î³õ³Ê´Ë¿ÌÒ»¸öÃûΪ¡°Private Program Arhive 2025¡±µÄ¸öÈËÆµÂ·ÖУ¬¸ÃƵ·µÄ´´½¨¹¦·òΪ2025Äê6ÔÂ18ÈÕ£¬¶©ÔÄÓû§½ö267ÈË£¬Èçͼ1Ëùʾ¡£


ͼƬ1.png

ͼ1 Ä³¸öÈËÆµÂ·


ͨ¹ý¶Ô¸ÃƵ·µÄ¼à¿Ø·¢ÏÖ£¬Ò»µ©¸ÃƵ·³öÏÖй¥»÷Ñù±¾£¬ÕâЩÑù±¾¾Í»á˲¼ä³Ê´Ë¿ÌÆäËûƵ·ÉÏ£¬¶øºóÎÒÃǽ«ÕâЩƵ·¼Í¼ÏÂÀ´¡£ÔÚ³¤¹¦·òµÄ×·×ٺ͹۲ìÖ®ºó£¬ÎÒÃÇ·¢ÏÖ¸ÃÆµÂ·ÊÇËùÓÐÆµÂ·µÄ×îÖÕÑùÕý±¾Ô´£¬¸ÃƵ·×ܹ²267¸ö¶©ÔÄÕߣ¬È´Ã»ÓÐÈκÎ̸Ìì¼Í¼ºÍ»îÔ¾¶È£¬²»ÍâÒ»µ©ÆµÂ·ÖдæÔÚ¶ñÒâÈí¼þ·ÖÏíʱ£¬»á±»ÕâЩ¶©ÔÄÕß¼±¾çת·¢µ½´ËÍâÆµÂ·ÉÏ¡£


Òò¶øÍ¨¹ý×·×Ùת·¢µÄÖ÷ÕÅÆµÂ·£¬ÎÒÃÇÍøÂçµ½ÁËһЩÏÂÓεĴ«²¼õè¾¶£¬ÏÂÓÎÆµÂ·Öдó²¿ÃÅÊÇÕý³£»îÔ¾µÄƵ·£¨·ÇºÚ¿Í×Ô½¨ÆµÂ·£©£¬ÉõÖÁ²¿·ÔìµÂ·ÊǼ«¶Ë»îÔ¾µÄºÃ±È¡°SILVER BULLET CONFIGS¡± ºÍ ¡°VIP HitMaster? Program¡±£¬ÕâÁ½¸öƵ·µÄÈËÊý±ðÀë¸ß´ï6383ºÍ51419ÈË£¬²¢Çҳ־ùØ×¢¡°¼¼ÊõºÍÀûÓ÷¨Ê½¡±ºÍ¡°¼ÓÃÜÇ®±Ò¡±µÈ»°Ìâ¡£ÕâÖÔìµÂ·¶ÔÓÚºÚ¿ÍÀ´ËµÊÇÒ»ÖÖ¼«¼ÑµÄ´«²¼ÆµÂ·¡£ÎÒÃÇ×·Òäµ½µÄÆäËûƵ·»¹ÓУºMother Flame£¨¶©ÔÄÊý:7900£¬¼ÓÃÜÇ®±ÒƵ·£©¡¢BMA (Books)[]£¨¶©ÔÄÊý4099£¬µç×ÓÊ鼮Ƶ·£©¡¢DeVoReCords£¨¶©ÔÄÊý2846£¬¼¼ÊõºÍÀûÓ÷¨Ê½ÆµÂ·£©¡¢Chat GPT 2025£¨¶©ÔÄÊý2738£¬AI¹¤¾ßƵ·£©ºÍSL CAT EHI FILES ?[] [ 02 ]£¨¶©ÔÄÊý2487£¬¼¼ÊõºÍÀûÓ÷¨Ê½ÆµÂ·£©µÈ¡£µ±È»»¹ÓдóÁ¿ÏÂÓÎÆµÂ·ÓÉÓÚijЩÏÞ¶ÈÎÞ·¨²ÎÓ룬ÓеÄÒѾ­±»Telegram·â½û¡£


²»ÍâÔÚÎÒÃǸú×Ù¹ý³ÌÖз¢ÏÖ¶à¸öÆëÈ«ÎÞ¹ØÁªµÄƵ·£¬ÔÚͳһ¹¦·òµãͬ²½°ä²¼ÁËͳһÅú¶ñÒâѹËõ°ü¡£ÀýÈ磬ÔÚ2025 Äê3ÔÂ9ÈÕ 22:54Õâ¸ö¹¦·òµã£¬Ò»ÅúÑù±¾±»Í¬Ê±×ª·¢µ½ ¡°DeVoReCords¡± ºÍ ¡°Mother Flame¡±ÆµÂ·£»ÓÖÈçÔÚ2025Äê6ÔÂ18ÈÕÏÂÎç02:48Õâ¸ö¹¦·òµã£¬Ò»ÅúÑù±¾Í¬²½³Ê´Ë¿Ì ¡°SILVER BULLET CONFIGS¡±ºÍ¡°BMA (Books)[]¡± µÈƵ·ÖУ¨Èçͼ2Ëùʾ£©¡£ÕâÒ»¾°ÏóÅųýÁËÈËΪ²Ù×÷µÄ¿ÉÄÜÐÔ£¬ÕâÅú×¢ÕâЩ¶ñÒâÑù±¾µÄԭʼ°ä²¼ÐÐΪÓÉͳһµÄTelegram»úеÈ˽ÚÔ죬²¢Í¨¹ý¹Ø×¢»°ÌâÅúÁ¿µØÖ²Èë¶à¸ö Telegram ÆµÂ·ÖÐÖ´ÐÐͶ·Å¹¤×÷¡£


ͼƬ2.png

ͼ2 ¶ñÒⷨʽ±»ÆäËûƵ·ͬ²½×ª·¢


ÎÒÃǽ«²¿ÃÅת·¢¼Í¼ºÍÓÐ¹ØµÄÆµÂ·Áе½±í1ÖУ¬´Óת·¢¹¦·òÀ´¿´£¬¹¥»÷ÕßÖÁÉÙ´ÓÈ¥Äê12ÔÂ·Ý¾ÍÆðͷͶ·Å´ËÀà¶ñÒâÈí¼þ£¬ÔÚ½ñÄê3Ô·ݡ¢5Ô·ݺÍ6Ô·ÝÓÖ±ðÀëÖ´ÐÐÁËÃܼ¯µÄÑù±¾Í¶·Å£¬ÒÔÖÁÕâЩÑù±¾ÔÚÕâ¶Îʱ³½½øÐÐÁË´óÁìÓò´«²¼¡£


Ƶ·Ãû³Æ

¶©ÔÄÈËÊý

ת·¢¹¦·ò

¹ú¶È

Àà±ð

VIP HitMaster? Program

51419

/

ÂíÀ´Î÷ÑÇ

¼ÓÃÜÇ®±Ò

Mother Flame

7900

2025.03.3001:552025.03.26 04:15

2025.03.09 22:542025.03.07 21:39

2024.12.14 00:02

Ó¡Äá

¼ÓÃÜÇ®±Ò

SILVER BULLET CONFIGS

6383

2025.06.1814:48 2025.06.09 21:40

2025.06.09 08:30 2025.06.05 03:35

2025.06.04 03:41 2025.05.23 01:46

2025.05.22 22:58 2025.05.09 00:09

2025.05.05 02:30 2025.05.01 03:49

ºÉÀ¼

¼¼ÊõºÍÀûÓ÷¨Ê½

BMA ( Books ) []

4099

2025.06.1814:48 2025.06.09 21:40

2025.06.09 08:30 2025.06.05 03:35

2025.06.04 03:41 2025.05.23 01:46

2025.05.22 22:58 2025.05.09 00:09

2025.05.05 02:29 2025.05.01 03:49

ÒÁÀ­¿Ë

Êé¼®

DeVoReCords

2846

2025.05.3001:57 2025.03.26 04:13

2025.03.09 22:542025.03.07 21:39

ÃÀ¹ú

¼¼ÊõºÍÀûÓ÷¨Ê½

Chat GPT 2025

2738

/

/

AI¹¤¾ß

SL CAT EHI FILES ? [][ 02 ]

2487

2025.05.01 03:49

˹ÀïÀ¼¿¨

¼¼ÊõºÍÀûÓ÷¨Ê½

Private Program Arhive 2025

267

2025.06.1814:45

/

/

¡­

¡­

¡­

¡­

¡­

±í1 ×ª·¢¹ý´ËÀà¶ñÒâÈí¼þµÄƵ·


½øÒ»²½·ÖÎö·¢ÏÖ£¬ÕâЩ»úеÈËÕ˺ŵĻ²¢²»¾ÖÏÞÓÚÕâЩƵ·£¬ËüÃÇ¿í·ºÂñ·üÓÚAI¹¤¾ß¡¢ÆÆ½âÎļþ·ÖÏíµÈÈ«ÇòÁìÓòÄڵĶà¸öTelegramƵ·ÖУ¬×é³ÉÁËÒ»¸ö×Ô¶¯»¯¡¢¸ßЧÄܵÄͶ·Åϵͳ¡£ÕâÒ²Ú¹ÊÏçËΪºÎһЩÕý±¾¶©ÔÄÁ¿ÓÐÏÞ¡¢»îÔ¾¶ÈµÍµÄƵ·ÈÔÄÜÔڶ̹¦·òÄÚʵÏÖÑù±¾µÄ´óÁìÓò´«²¼¡£


´Ë±í£¬¹¥»÷Õß²»½ö´´½¨Á˳õʼͶ·ÅƵ·£¬»¹Ìáǰ½«¶à¸ö¼Ù×°³Éͨ³£Óû§»òÈÈÐÄ·ÖÏíÕßµÄ×Ô¶¯»¯»úеÈËÕ˺ÅÂñ·üÖÁ´óÁ¿Õý³£ÆµÂ·ÖС£ÕâЩ»úеÈ˾߱¸¼àÌý¡¢´¥·¢¡¢³ÁͶ·ÅµÄ×Ô¶¯»¯ÄÜÁ¦£¬ÄÜÆ¾¾Ý¹Ø¼ü´Ê»òÖ¸Áîʵʱ½øÐÐÐÅϢͬ²½¡£Æä±³ºóÓ¦ÊÇÒ»Ì××Ô¶¯»¯µÄ·Ö·¢¡¢´«²¼»úеÈËÔÚ¹¤×÷£¬¼´ºÚ¿ÍÆô¶¯¹¥»÷µÄÖ¸Áî·¢³öºó£¬×Ô¶¯»¯»úеÈË×Ô¶¯ÉÏ´«¶ñÒâÑù±¾£¬¶øºó×Ô¶¯Áª¶¯¶à¸ö»úеÈËÕ˺Ž«Í³Ò»ÐÂÎÅѸ¿ìͬ²½ÖÁÖ¸±êƵ·£¬ÊµÏÖ¶ñÒâÈí¼þµÄÖ¸Êý¼¶À©É¢¡£


È»¶ø£¬ÎÒÃÇ»¹¿´µ½¹¥»÷ÕßÒ²ÔÚ²»ÐÝÊÊÓ¦ºÍ¶ã±ÜÉó²é£¬ËûÃÇͨ¹ý¸ü»»ÆµÂ·Ãû³Æ¡¢³ÉÁ¢±¸ÓÃÆµÂ·¡¢ÀûÓÃת·¢Á´ÌõµÈ·½Ê½³ÖÐø´«²¼¶ñÒâÄÚÈÝ¡£ÓÉÓÚTelegram²»×ã¸ßЧµÄÎļþÄÚÈÝÉó²é»úÔ죬¹¥»÷Õß³£Í¨¹ý¡°ÓׯµÂ·°ä²¼¡ª´óƵ·ת·¢¡±µÄ·½Ê½£¬ÊµÏÖ¶ñÒâÎļþµÄ¼±¾ç´«²¼ºÍϰȾÁ¿µÄ¼¸ºÎ¼¶Ôö³¤£¬¼´±ãTelegram¹Ù·½Â½Ðø·â½û²¿ÃÅ´«²¼ÆµÂ·£¬µ«ÔÚÆ½Ì¨ÄäÃûÐÔÇ¿¡¢´«²¼Á´Ìõ·ÖÉ¢µÄ²¼¾°Ï£¬¶ñÒâÈí¼þÈÔ¾ÉÄÜѸ¿ìÔÚÆäËûƵ·ÖоíÍÁ³ÁÀ´£¬ÄÑÒÔ¸ù³ý¡£


2.2¡¢Îļþ·ÖÏíÆ½Ì¨


³ýÁËTelegramÇþ·±í£¬ÎÒÃÇ»¹ÔÚ4sharedºÍMediaFire¹«¿ªÎļþ·ÖÏíÆ½Ì¨ÉÏ×·×Ùµ½ÁËÕâÅú¶ñÒâÎļþµÄ´«²¼ºÛ¼£¡£


ͼƬ3.png

ͼƬ4.png

ͼ3 4sharedƽ̨ºÍmediafireƽ̨ÉϵĶñÒⷨʽ


ÆäÖÐ4sharedƽ̨ÔÊÐíÓû§Í¨¹ý¹«¿ªÁ´½Ó·ÖÏíѹËõ°ü¡¢¿ÉÖ´ÐÐÎļþµÈ×ÊÔ´£¬ÇÒ¶ÔÉÏ´«ÎļþµÄ°²È«ÐÔÉó²é½ÏΪÓÄ΢¡£ºÃ±ÈÁí±íÒ»¸öÃûΪ¡°AI GPT4 TRADING BOT.rar¡±µÄÑù±¾£¨ºÍTelegramÉϵÄÑù±¾Í¬Ãûµ«²»ÊÇͳһÅúÑù±¾£©Ò²ÒѾ­±»ÉÏ´«µ½4sharedƽ̨£¨Èçͼ3Ëùʾ£©£¬²¢ÇÒ¸ÃÎļþµÄÁ´½Ó±»·ÖÏíµ½Ò»Ð©ÂÛ̳ÖУ¬»ò±»Ç¶Èëµ½·ÂÃ°ÍøÕ¾ÖУ¬ÅäÉÏÒýÓÕÐÔ»°ÌâºÍÎÄ×Ö£¬ÓÕʹÓû§µã»÷ÏÂÔØ¡£


Èçͼ4ÏÔʾ£¬¡°AI GPT4 TRADING BOT.rar¡±µÄÉÏ´«ÈÕÆÚÊÇ2025Äê4ÔÂ13ÈÕ£¬ÓÉÃûΪ¡°Ronildo D.¡±µÄÓû§ÉÏ´«£¬¡°Shared from SM-A037M¡±Åú×¢¸Ã¶ñÒâÎļþÊÇͨ¹ýÈýÐÇÊÖ»ú¡°SM-A037M¡±·ÖÏíµÄ¡££¨4shared µÄAPPÔÚÉÏ´«Ê±»á¶ÁÈ¡É豸µÄÐͺÅÐÅÏ¢²¢½«Æä×÷ΪԪÊý¾ÝÓëÎļþ¹ØÁª£¬ÒÔÏÔʾÎļþµÄÆðÔ´É豸¡£¡°SM-A037M¡±ÊÇÈýÐÇΪÆä Galaxy A03 Core ÊÖ»ú·ÖÅäµÄÌØ¶¨ÐͺÅ¡£×ÖĸºÍÊý×ÖµÄ×éºÏ´ú±íÁËÉ豸ϵÁУ¨AϵÁУ©¡¢Ðͺţ¨03£©¡¢°æ±¾£¨Core£©ÒÔ¼°ÏúÊÛÇøÓò»òÍøÂçÀàÐÍ£©¡£ÕⰵʾÉÏ´«ÕߺܿÉÄÜÊÇÔÚËûµÄÈýÐÇÊÖ»úÉÏ×°ÖÃÁË 4shared µÄAPP£¬¶øºóÖ±½Óͨ¹ý¸ÃAPP´ÓÊÖ»úµÄ´æ´¢µ±Ñ¡ÔñÁË "AI GPT4 TRADING BOT.rar" Îļþ²¢ÉÏ´«·ÖÏí£¬µ±È»ºÚ¿ÍÒ²¿ÉÄÜͨ¹ý·ÂÕÕÆ÷À´²Ù×÷£¬²»ÍâĿǰûÓÐÏÔÖøµÄÖ¤¾Ý¡£


ͼƬ5.png

ͼ4 ¶ñÒâÈí¼þµÄ·ÖÏíÐÅÏ¢


ͼ5ÊÇ4sharedƽ̨ÖУ¬ÉÏ´«Õß¡°Ronildo D.¡±µÄÓû§½çÃæ¡£ÎÒÃÇ¿ÉÖªÉÏ´«ÕßÀ´×Ô°ÍÎ÷£¬×¢²á×ÔÁ½Äêǰ£¬¸ÃÓû§Ä¿Ç°ÔÚ4sharedƽ̨ÉÏÕ¼ÓÐ7¸öÎļþ¼Ð£¬²¢ÔÚ¸ÃÆ½Ì¨·ÖÏíÁË120¸öÎļþ£¨²»ÍâĿǰÕâÅúÑù±¾ÒÑÎÞ·¨½Ó¼û£©¡£¸ÃÕ˺ÅÓÉÓÚ×¢²áµÃ½ÏÔ磬Òò¶ø¿ÉÄÜÊǺڿÍͨ¹ýľÂíÇÔÈ¡µÄÓû§Æ¾Ö¤ºó½«¶ñÒⷨʽÉÏ´«µ½¸ÃÕ˺ÅÏ£¬¶øºóÔÚ¸÷ÀàÉ罻ýÌå»òÕßÂÛ̳½øÐд«²¼¡£ÓÉÓںڿ͵Ĵ«²¼õè¾¶½ÏΪ¿í·º£¬ÇÒÉæ¼°µÄÑù±¾Á¿Òì³£µÄ¶à£¬Òò¶ø£¬ÕâºÜÓпÉÄÜÒ²ÊǺڿ͹¥»÷Ðж¯×Ô¶¯»¯Ö´ÐÐµÄÆäÖÐÒ»»·¡£


ͼƬ6.png

ͼ5 ¶ñÒâÈí¼þÉÏ´«ÕßÐÅÏ¢


2.3¡¢ÆäËûÇþ·


´Ë±í£¬ºÚ¿Í»¹ÀûÓÃGitHub ²Ö¿â¡¢YouTube ºÍ Facebook¸æ°×µÈÇþ·½øÐжñÒâÈí¼þÁ´½ÓµÄ·Ö·¢£¨¼ûͼ6£©£¬½øÒ»²½Ó¡Ö¤Æä´«²¼Õ½ÊõÕý³¯×Å¡°¶àƽ̨¡¢¶à¼¿Á©¡¢ÈÚºÏÉç»á¹¤³Ì¡±µÄ·½ÏòÑݽø¡£Í¨¹ý¶à´«²¼õè¾¶µþ¼ÓºÍÅúÁ¿Ñù±¾µÄ×Ô¶¯·Ö·¢ÒÔʵÏÖ¸üΪ¿í·º´«²¼¡£


ͼƬ7.png

ͼ6 ÆäËû´«²¼·½Ê½


µÚÈýÕ  »ù´¡ÉèÊ©·ÖÎö


ÔÚÕâ´Î¹¥»÷µÄ·ÖÎö¹ý³ÌÖУ¬ÎÒÃÇͨ¹ý¶ÔǰÆÚÍøÂçµ½µÄ¶à¸ö¶ñÒâÈí¼þÑù±¾½øÐйØÁª£¬Í¬Ê±ÀûÓÃÑù±¾µÄÍøÂçÍ¨Ñ¶ÌØµã¡¢±íÁ¬ÓòÃûµØÖ·¡¢´úÂëÖ¸ÎÆµÈ½øÐÐÀ©ÏߺÍÊý¾ÝÍøÂ磬µÃµ½ÁË´óÁ¿µÄÑù±¾ºÍÓòÃûÊý¾Ý¡£Æð³õÎÒÃǹØÁª²¢Ëø¶¨ÁË9¸ö¶ñÒâC2·þÎñÆ÷µØÖ·£¨¼û±í2£©¡£


pomelohgj.top

voznessxyy.life

insidegrah.run

homewappzb.top

clatteqrpq.digital

descenrugb.bet

grizzlqzuk.live

ninepicchf.bet

snakejh.top

±í2¹ØÁªµ½µÄ¶ñÒâC2·þÎñÆ÷µØÖ·


ËæºóÒÔÕâ9¸ö¶ñÒâC2·þÎñÆ÷µØÖ·ÎªÏßË÷£¬½áºÏ¶ñÒâ´úÂë¶þ½øÔìÖ¸ÎÆ¡¢Í¨Ñ¶Ìص㡢Ñù±¾±êÇ©µÈ¶à¸öά¶È¹ØÁªÏßË÷£¬×·×Ùµ½4431¸öԭʼ¹¥»÷ÔØºÉ¡£Í¨¹ý¶ÔÑù±¾¹þÏ£½øÐÐÈ¥³Á£¬×îÖÕɸѡ³ö¹²¼Æ2918¸ö¶ñÒâÑù±¾¡£ÎÒÃǶÔÕâ2918¸ö¶ñÒâÑù±¾µÄÌìÉú¹¦·ò½øÐÐÁËͳ¼Æ£¨¼ûͼ7£©£¬Êý¾ÝÏÔʾÕâЩ¶ñÒâÑù±¾µÄͶ·Å»î¶¯ÖØÒª¼¯ÖÐÔÚ ½ñÄêµÄ1Ô¡¢2Ô¡¢4ÔºÍ5Ô£¬ÔÚÈ¥Äê12Ô½öÓÐ1¸öÑù±¾£¬½ñÄê6ÔÂÓë7ÔÂÒ²½öÓÐÁãɢͶ·Å£¬³öÏÖ³öÏÔÖøµÄ½×¶ÎÐÔ¶¥·å£¬Õâ×¢Ã÷¸ÃϵÁй¥»÷»î¶¯ÔÚ½ñÄêÆðÍ·µ½5ÔµÄÐж¯ºó£¬´Ó6ÔÂ·ÝÆðÍ·³öÏÖÁËÏÔÖø½µÎ¡£Õâ¿ÉÄÜÊÇËûÃÇÔÚµ÷Õû¹¥»÷Õ½Êõ£¬»òÕß¹¥»÷±»·À»¤¼¿Á©Ñ¹ÔìÁËÒ»Õó¡£


ͼƬ8.png

ͼ7 ¶ñÒâÑù±¾ÌìÉú¹¦·òͳ¼Æ


½Ó×Å£¬ÎÒÃÇÒÔÕâ2918¸öÇ¿¹ØÁªÑù±¾Îª»ù´¡£¬½øÒ»²½ÍÚ¾òÆäÄÚÖûòͨѶ¹ý³ÌÖж³öµÄ¸ü¶à¶ñÒâC2·þÎñÆ÷µØÖ·¡£Í¨¹ýÅúÁ¿½âÎöÑù±¾ÅäÖúÍÍøÂçÍ¨Ñ¶ÌØµã£¬½áºÏ×Ô¶¯»¯¾ç±¾¶ÔÌáÈ¡µÄC2µØÖ·½øÐлã×Ü£¬ÌÞ³ý³Á¸´ºÍÎÞЧÊý¾Ýºó£¬×îÖÕÈ·ÈϹ²¼Æ771¸ö¶ÀÁ¢µÄ¶ñÒâC2µØÖ·£¬ÎÒÃÇÕâÀォ²¿ÃÅC2µØÖ·Áе½±í3ÖС£


tirepublicerj.shop

tentabatte.lat

lightdeerysua.biz

rockemineu.bond

localixbiw.top

framekgirus.shop

wordyfindy.lat

mixedrecipew.biz

broadecatez.bond

stockyslam.top

abruptyopsn.shop

slipperyloo.lat

affordtempyo.biz

offsetyofcre.bond

narrathfpt.top

cloudewahsj.shop

curverpluch.lat

hoursuhouy.biz

tranuqlekper.bond

citellcagt.top

rabidcowse.shop

shapestickyr.lat

measlyrefusz.biz

moonehobno.bond

cornerdurv.top

wholersorie.shop

observerfry.lat

impolitewearr.biz

reliedevopoi.bond

posseswsnc.top

noisycuttej.shop

manyrestro.lat

pleasedcfrown.biz

quarrelepek.bond

featurlyin.top

nearycrepso.shop

bashfulacid.lat

grandiouseziu.biz

granystearr.bond

threatqjqy.top

±í3 ²¿ÃÅC2·þÎñÆ÷µØÖ·


´ÓÕâЩC2ÓòÃûÃû³ÆÄܹ»ÏÔÖøµÄ¿´³ö£¬ÆäÓµÓÐ×Ô¶¯»¯ÌìÉúµÄÌØµã£¬ÕâÀïÏÕЩËùÓÐÓòÃûÊÇÓÉÒ»Á½¸öÕý³£Ó¢Îĵ¥´Ê½áºÏÓп϶¨Ëæ»úµÄ×Ö·û´®×é³É£¬¿´ÆðÀ´ÏñÕý³£´Ê»ã£¬µ«ÏÖʵÉÏÊÇÎÞÓïÒåµÄ¡£ÒÔÍù´óÁ¿×Ô¶¯»¯Ë®Æ½½Ï¸ßµÄºÚ¿Í×é֯ϲ»¶Ñ¡È¡DGA»òÕßËæ»úÓòÃûÀ´ÊµÏÖC2µØÖ·ÅúÁ¿»¯³ö²ú£¬µ«ÊǸúڿÍѡȡÕâÖÖ¿´ËƲ»ÆðÑÛµÄת±äÆäʵÖ÷ÕÅÔÚÈÆ¹ýµ±Ç°Ö÷Á÷µÄһЩ¶ñÒâÓòÃû¼ì²âËã·¨£¬ºÃ±ÈÕâÖÖ³ö²ú²½ÖèÄܹ»´ó´ó½µµÍìØÖµÒÔ¼°Ìá¸ßÌìȻ˵»°µÄÓïÒåÐÔ£¬ÕâÖÖ´¦ÖÃÔÚijÖÖˮƽÉÏÄܹ»ÈƹýÒÔ¾²Ì¬ºÚÃûµ¥¼¼Êõ¡¢ìØÖµÅж¨¼¼Êõ¡¢ÌìÈ»Óï˵»°Òå¼ì²â¼¼ÊõΪ»ù´¡µÄ¼ì²âϵͳ¡£


ͬʱ£¬ÎÒÃÇ»¹Ê¹ÓÃ×Ô¶¯»¯¾ç±¾¶ÔÕâ771¸öÓòÃûµÄ×¢²áÕß¡¢ÁªÏµ·½Ê½¡¢×¢²á»ú¹¹ºÍ×¢²á¹¦·òµÈ¹Ø¼üÐÅÏ¢½øÐÐÁË×·×ÙºÍÍøÂ磬ÒÔ½øÇ°½øÒ»²½µÄËÝÔ´·ÖÎö¡£È»¶øÓÉÓÚÕâЩÓòÃûÏÕЩȫÊýÆôÓÃÁËÒþÖÔ±£»¤·þÎñ£¬µ¼ÖÂ×¢²áÈË¡¢ÁªÏµ·½Ê½¡¢×¢²á»ú¹¹µÈ×ֶα»°µ²Ø»òÒÔÄäÃûÐÅÏ¢°ü°ì£¬ÎÞ·¨³ÉÁ¢ÓòÃûÓë¹¥»÷ÕßÉí·ÝÖ®¼äµÄ¹ØÁª¡£´Ë±í£¬ÎÒÃǶÔÕâЩÓòÃûµÄ×¢²á¹¦·ò½øÐÐÁËͳ¼Æ£¬Á˾ÖÈçͼ8Ëùʾ¡£


ͼƬ9.png

ͼ8 ¶ñÒâC2×¢²á¹¦·òͳ¼Æ


´Ó×¢²á¹¦·òÉ¢²¼ÉÏ¿´£¬ÔÚ2021µ½2024ÄêÕâ¶Î¹¦·ò£¬¶ñÒâÓòÃûµÄ×¢²áÊýÁ¿ºÜÉÙ£¬Ò»¸öÔÂ×¢²áÁ¿ÆÕ±é¶¼ÔÚ20¸ö֮ϣ¬ÏñÊÇÔÚÃþË÷½×¶Î£¬Ã»ÔõôÓдó×÷Ϊ£¬×Ô2025ËêÊׯðÍ·×¢²áÁ¿ÏÔÖøÔö³¤£¬ÓÈÆäÔÚ1Ô¡¢2Ô¡¢4ÔºÍ5Ô³öÏÖ³ö¼¯Öб©ÕǵÄÇ÷Ïò£¬¶øµ½ÁË6ÔÂÔò³öÏÖÁËÏÔÖø»ØÂä¡£ÕâÒ»±ä¶¯·¨¹æÓëÎÒÃÇǰÎÄÌáÈ¡³öµÄ2918¸ö¶ñÒâÑù±¾µÄÌìÉú¹¦·ò¸ß¶È³ÁºÏ£¬¶þÕßÔÚ¹¦·òά¶ÈÉÏÏÕЩͬ²½¡£ÕâÒ»¸ß¶ÈÒ»ÖÂÐÔÅú×¢£¬¹¥»÷ÕßÔÚ·¢Õ¹´ó¹æÑù×Ó±¾Í¶·ÅÐж¯Ö®Ç°£¬ÍùÍù»áÌáǰÅúÁ¿×¢²áC2ÓòÃûÓÃÓÚÅäÌ×ʹÓã¬ÕâÖÖÅäÌ×¹ØÏµ£¬ÌåÏÖ³ö¹¥»÷»î¶¯±³ºó¾ß±¸Ã÷È·µÄ´òËãÐÔÓë×éÖ¯ÐÔ¡£ÕûÌå¸Ð´¥£¬ºÚ¿ÍÊÇÔÚÓдòËã¡¢ÓнÚÅÄµØÆÌÉè¹¥»÷»ù´¡£¬½ÓÏÂÀ´µÄ¼¸¸öÔ£¬¹¥»÷ºÜ¿ÉÄÜÔٴη¢×÷£¬ÎÒÃǽ«Ç×êǹØ×¢¡£


ÔÚʵÏÖÉÏÊöC2ÓòÃûµÄ¹ØÁª·ÖÎöÖ®±í£¬ÎÒÃÇ»¹½øÒ»²½¶ÔǰÎÄɸѡ³öµÄ2918¸ö¶ñÒâÑù±¾ÔÚÖ´Ðйý³ÌÖнӼûµÄ¶ñÒâURL½øÐÐÁËͳ¼ÆÓë¹éÀࡣΪÌá¸ßÕýÈ·ÐÔ£¬ÎÒÃǶÔËùÓнӼû¼Í¼½øÐÐÁËÈËΪɸѡÓëÌØµã·ÖÎö£¬ÌÞ³ýÁ˲¿ÃŹØÁªÐÔ½ÏÈõ¡¢ÒÉËÆÎ󱨻ò·Ç¹Ø¼üµÄURL£¬×îÖÕÕû¶Ù³ö1156¸ö¸ß¶È¿ÉÐŵĶñÒâµØÖ·£¬±í4ÊÇÆäÖеIJ¿ÃÅURLµØÖ·¡£ÕâЩURL±»ÓÃÓÚLumma StealerÖ´Ðеĺó½×¶ÎÐж¯£¬ÆäÌåʽΪ¡°http://ip/files/Êý×Ö/Ëæ»úÃû.exe¡±£¬ÏñÊǹ¥»÷Õßͨ¹ý×Ô¶¯»¯¾ç±¾¶¯Ì¬ÌìÉúµÄÁ˾Ö¡£ÕâЩÁ´½Ó´ó¶àÖ±Á¬Ò»¸öÓ²±àÂëµÄIPµØÖ·£¬ÎÞÐè½âÎöÓòÃû£¬ÏÔÈ»ÊÇΪÁ˶ã±ÜDNS²ãµÄ¼à²âÀ¹½Ø¡£õè¾¶ÖеÄÊý×Ö¿ÉÄÜ´ú±í¹¤×÷±àºÅ¡¢Åú´Î±êʶ£¬¶øÎļþÃûÔò¶àΪ´óÓ×д»ìºÏµÄÎ±Ëæ»ú×Ö·û´®£¬Ö÷ÕÅÊÇÌÓ±ÜÌØµãÆ¥ÅäºÍ¾²Ì¬¹æ¶¨¡£ÏÂÔØµÄÄÚÈݺ­¸ÇEXE¡¢BAT¡¢PS1µÈ¶àÖÖÌåʽ£¬×¢Ã÷¹¥»÷Õß»áÆ¾¾Ý³¡¾°¶¯Ì¬Í¶ËÍ·ÖÆçÀàÐ͵ĶñÒâÔØºÉ£¬Ô̺¬¸¨Öú¹¤¾ß¡¢½âÃÜÄ£¿é¡¢×Ô¸üлòºóÐøÐÅÏ¢ÇÔÈ¡×é¼þ¡£


¶ñÒâURL

http://176.113.115.7/files/1362458159/TZhhGqc.exe

http://176.113.115.7/files/1494968410/cVPsEcV.exe

http://176.113.115.7/files/1494968410/gbz6UL4.exe

http://176.113.115.7/files/1566754488/2KdMigj.exe

http://176.113.115.7/files/1615968338/67e0HNq.exe

http://176.113.115.7/files/1763292343/jrKsxjw.exe

http://176.113.115.7/files/1781548144/6lTXbuX.exe

http://176.113.115.7/files/5149365135/ILqcVeT.exe

http://176.113.115.7/files/5149365135/rXOl0pp.exe

http://176.113.115.7/files/5153162918/Ps7WqSx.exe

http://176.113.115.7/files/5153162918/uW8i508.exe

http://176.113.115.7/files/5153283513/rA6Gys9.exe

http://176.113.115.7/files/5165347769/T3g5uSf.exe

http://176.113.115.7/files/5215106624/82x5hPR.exe

http://176.113.115.7/files/5265591378/bgUvqLl.exe

http://176.113.115.7/files/5419477542/qhjMWht.exe

±í4²¿ÃŶñÒâURL


´ÓÆäÕÆ¿ØµÄ´óÁ¿¶ñÒâ»ù´¡ÉèÊ©À´¿´£¬Ô̺¬³É¹æÄ£×¢²áµÄÓòÃû×ÊÔ´¡¢¿É¶¯Ì¬Çл»µÄÉ¢²¼Ê½IP ³Ø¡¢²¿ÊðÔÚ¶à¸öÉ罻ƽ̨µÄ×Ô¶¯»¯´«²¼¾ç±¾¡¢»úеÈËÕ˺ż°¼Ù×°Õ˺Å£¬¸ÃºÚ¿Í×é֯չʾ³öÏÔÖøµÄϵͳ»¯¡¢×Ô¶¯»¯ÔËÓªÌØµã¡£ÕâЩ»ù´¡ÉèÊ©²»½ö¸²¸ÇÁìÓò¹ã¡¢²¿Êð½Ã½Ý£¬»¹¾ß±¸½Ï¸ßµÄ¸´ÓÃÐÔÓë³ÖÐøÔËÐÐÄÜÁ¦£¬·´Ó³³öÆäÔÚ¶ñÒâÈí¼þÔËÓª·½Ãæ¾ß±¸½Ï¸ßµÄ¼¼Êõ³ÉÊì¶Å×ë·á˶µÄ¹¥»÷¾­Ñé¡£×ÛºÏÆä´ó¹æÄ£¡¢³ÖÐøµØÍ¶·ÅLumma StealerµÈÐÅÏ¢ÇÔÈ¡Àà¶ñÒâÈí¼þµÄÐÐΪģʽÅжÏ£¬¸ÃºÚ¿Í×éÖ¯¹¥»÷Ö¸±êÏÔÈ»ÃæÏòÈ«ÇòÓû§µÄÒþÖÔÊý¾ÝÓëÊý×Ö×ʲú£¬ÓµÓÐÃ÷È·µÄ¾­¼Ã¶¯»úÓë²»±äµÄÐж¯Ö´ÐлúÔ죬ÊôÓÚµäÐ͵ÄÓÐ×éÖ¯ÍøÂç·¸×ï»î¶¯¡£´Ó¼¼ÊõÆðÔ´ÉÏ´§Ä¦£¬¸ÃºÚ¿Í×éÖ¯ºÜ¿ÉÄÜÒÀÀµ×ÔÉí°ÑÎÕµÄÒ»Ì××Ô¶¯»¯Ö§³ÖÌåÏ·´Î¬³ÖÉÏÊö»ù´¡ÉèÊ©µÄÔËÐУ¬ÕâÖÖ×Ô¶¯»¯Ö§³Öϵͳ½µµÍÁ˹¥»÷Ãż÷£¬ÌáÉýÁËÔËӪЧÄÜ£¬Ò²¼Ó¾çÁË´ËÀàÍþвµÄÒñ±ÎÐÔÓë¹ÌÖ´ÐÔ¡£


µÚËÄÕ  ¹¥»÷Ö¸±ê·ÖÎö


ÎÒÃǽ«¸ÃºÚ¿Í×éÖ¯ÔÚÉç½»ÍøÂçÖа䲼µÄ¶à¸ö¼Ù×°ÎļþÃû¡¢¼Ù×°Èí¼þÀàÐÍÒÔ¼°ÐÐÒµÓô¦Õû¶ÙÔÚ±í5ÖУ¬´Ó¼Ù×°ÎļþÃûÀ´¿´£¬ºÚ¿ÍÖØÒªÝÓÈÆÁ½¸ö·½ÏòͶ·Åµö¶ü£ºÒ»ÊÇÈȵ㼼Êõ¹Ø¼ü´Ê£¨Èç ChatGPT¡¢GPT-4¡¢Gemini¡¢OpenAI GPT£©£¬¶þÊÇÆÆ½â¡¢»Ò²ú¹¤¾ß¼°µÁ°æ×ÊÔ´£¨È缤»î¹¤¾ß¡¢Õ˺Ų鳭Æ÷¡¢VPN¡¢É«ÇéÏÂÔØÆ÷¡¢SMTP/IPTV É¨ÃèÆ÷µÈ£©¡£±í¸ñÖеġ°¼Ù×°Èí¼þÀàÐÍ¡±ËµÁËÈ»¼Ù×°Èí¼þµÄËùÊôÀàÐÍ£¬¶ø¡°ÐÐÒµÓô¦ ¡±Ò»À¸Ôò˵ÁËÈ»ÆäÖ¸±êÊܶàµÄÐËÖÂÁìÓò»òËù´¦ÐÐÒµ¡£´ÓÕûÌ嶨ÃûÕ½ÊõÀ´¿´£¬¸ÃºÚ¿Í×éÖ¯²¢Î´Õë¶ÔÌØ¶¨ÆóÒµ»òµ±¾Ö»ú¹¹µÈ¸ß¼ÛÖµÖ¸±êÖ´Ðо«È·Í¶·Å£¬¶øÊÇͨ¹ý¼Ù×°ÈÈµã¹Ø¼ü´ÊºÍ³£¼ûÆÆ½â¹¤¾ß£¬ÔÚ»¥ÁªÍø¶à¸öÇþ·ÒýÁ÷À©É¢£¬ÊÔͼÒÔ×îÓ׳ɱ¾»»È¡×î´óÏ°È¾Ãæ¡£


ÎļþÃû

¼Ù×°Èí¼þÀàÐÍ

ÐÐÒµÓô¦

ChatGPT 4 online.rar

AI ¹¤¾ß×°Öðü

ÃæÏòAI ¹¤¾ß°®ºÃÕß / ¿ª·¢Õß

ChatGPT-4 Online.exe

AI ¿ÉÖ´Ðз¨Ê½

ͬÉÏ

ChatGPT - Gemini 4.rar

AI ¹¤¾ß/¶àÄ£ÐÍÕûºÏ

¶ÔChatGPT ºÍ Gemini ÓÐÐËÖµÄÓû§

AI GPT4 TRADING BOT.rar

×Ô¶¯ÂòÂô¹¤¾ß

ÃæÏòÊý×ÖÇ®±Ò/ ½ðÈÚͶÆõÕß

OpenAI GPT Images.rar

AI ÌìÉúͼƬ°ü

AI »­Í¼ / ´´×÷Õß 

Fake ID Cards.rar

·¸·¨Îļþ×ÊÔ´ 

ÍøÂçÚ¿Æ­/ Æ­Ö¤¼þÈËȺ

Free NordVPN.rar

ÆÆ½âVPN ¹¤¾ß

ÏëÄäÃûä¯ÀÀµÄÓû§

Free ExpressVPN.rar

ͬÉÏ

ͬÉÏ

Netflix Mail Account Checker 2025.rar

ÓÊÏäײ¿â¹¤¾ß 

ºÚ²ú/ ¿¨ÉÌ / Õ˺ÅÊÕ¸îÕß

PornHub Downloader Video.rar

³ÉÈËÄÚÈÝÏÂÔØÆ÷

³ÉÈËÄÚÈÝÏû·ÑÕß

SMTP Cracker 2025 version.rar

Óʼþ±¬ÆÆ¹¤¾ß

Õë¶ÔÀ¬»øÓʼþÓªÏú/ ºÚ¿Í²Ù×÷ÈËÔ±

Steam Account Checker by Risky 2025.rar

ÓÎϷƽ̨Õ˺ʤ¾ß

¿¨ÉÌ¡¢µÁºÅÕß¡¢ÓÎÏ·ºÚ²ú

TradingView Online Unlimited.rar

½ðÈÚͼ±íÆÆ½â°æ

ÃæÏò¹ÉƱ/ ¼ÓÃÜÂòÂôÕß

AIO Multi Checker v 9.10.rar

¶àƽ̨¼ì²âÆ÷

ºÚ²úÕ˺ÅÑéÖ¤Õß

BLTools Logs Checker 3.2 PRO.rar

ÈÕÖ¾·ÖÎö/ ×ªÂô¹¤¾ß

ºÚ²úʹÓÃ

GIFT CARD GENERATOR 25 MODULES.rar

ÀñÎ│ÌìÉúÆ÷

Ú¿Æ­/ Ú²Æ­ÒâͼȺÌå

Netflix Account Checker.rar

Õ˺ű©Á¦¹¤¾ß

ײ¿âÕß/ ºÚ²úʹÓÃ

Steam Account Checker.rar

ͬÉÏ

ͬÉÏ

Universal IPTV Scan v3.0.rar

ÍøÂçµçÊÓ×ÊÔ´¹¤¾ß

ÆÆ½âµçÊÓÓû§/ ¿¨ÉÌ

Windows 10 Activatior.rar

ϵͳ¼¤»î¹¤¾ß

ÏëÈÆ¹ý¸¶·ÑWindows µÄͨ³£Óû§

Adobe Photoshop + CDkey.rar

ÆÆ½âÈí¼þ

Éè¼ÆÊ¦/ ÄÚÈÝ´´×÷Õß

PhotoShop_V26Fullversion.zip

ͼÏñÈí¼þ

ͬÉÏ

Bitdefender Antivirus + CDkey.rar

ɱ¶¾Èí¼þÆÆ½â

ÏëʡǮµÄͨ³£Óû§

Avira Antivirus 2025 + CDkey.rar

ͬÉÏ

ͬÉÏ

Microsoft Office 2025 + CDkey.rar

°ì¹«Èí¼þÆÆ½â

°×Áì

Windows Activator 2025.rar

ϵͳ¼¤»î¹¤¾ß

ͬÉÏ

Adobe Photoshop + Crack.rar

ͼÏñ´¦ÖÃÈí¼þÆÆ½â

ͬÉÏ

IPTV scanner +Playlist Scanner & Checker 2025.rar

IPTV É¨Ã蹤¾ß

ÆÆ½â/µÁ²¥ IPTV Óû§

netstat.exe

ϵͳ¹¤¾ß

·ÂÕպϷ¨ÏµÍ³¹¤¾ß£¬ÒýÓÕµã»÷

IDM_6.4x_Crack_v19.9.exe

ÏÂÔØÆ÷ÆÆ½â

Ïë»ñÈ¡IDMÆÆ½âµÄͨ³£Óû§

±í5¼Ù×°µÄ¶ñÒâÎļþÃû¼°ÀàÐÍ


Óɱí5²»ÄÑ¿´³ö£¬Õâ´Î¹¥»÷¸üÆ«²îÓÚ¿í·ºÕë¶ÔÓÐÌØ¶¨ÏÂÔØÐèÒªµÄͨ³£Óû§£¬ÓÈÆäÊÇ»îÔ¾ÓÚÆÆ½â×ÊÔ´¡¢»Ò²ú¹¤¾ßºÍ¼¼ÊõÂÛ̳µÈ·ÇÕý¹æÇþ·µÄȺÌå¡£ÀýÈ磬ʹÓá°ChatGPT4Online¡±¡¢¡°AI GPT4 TRADING BOT¡±¡¢¡°Gemini 4¡±µÈ¶¨Ãû£¬ÒâͼÎüÒýµ«Ô¸ÂÄÀúÇ°ÑØAI¹¤¾ßµ«²»×ã¼¼ÊõÃż÷»ò¸¶·ÑÒâÔ¸µÄÓû§£»¶ø¡°Free VPN¡±¡¢¡°Netflix/Steam Account Checker¡±¡¢¡°GIFT CARD GENERATOR¡±µÈÔòÖ±Ö¸´æÔÚµÁ°æÊ¹Óá¢Õ˺ÅÅúÁ¿»ñÈ¡µÈÐÐΪƫ²îµÄ»ÒÉ«Óû§ÈºÌå¡£´Ë±í£¬´øÓÓ×°Crack¡±¡¢¡°CDkey¡±¡¢¡°Activator¡±µÈ×ÖÑùµÄÎļþ£¬Ôò½øÒ»²½Â¶³öÁ˹¥»÷Õß½«Ç±ÔÚÊܺ¦ÕßËø¶¨ÔÚ×·ÇóÆÆ½â¼¤»î¡¢·¸·¨Èƹý¸¶·Ñ»úÔìµÄȺÌåÖ®ÖС£Õâ´ÎºÚ¿Í¶ñÒâÎļþµÄͶ·ÅÕ½ÊõËä²»¸´ÔÓ£¬È´ÒòÇнü¹¥»÷Ö¸±êÐèÒª¡¢¼Ù×°ÐÔÇ¿£¬¾ß±¸½Ï¸ßµÄ¹Æ»óÐÔÓë´«²¼Ð§ÄÜ¡£


µÚÎåÕ µäÐÍÑù±¾·ÖÎö


Èçͼ9Ëùʾ£¬ºÚ¿ÍµÄ¹¥»÷Á÷³ÌÊÇÕâÑùµÄ£ººÚ¿Í»á½«¶ñÒⷨʽ¶¨ÃûΪ¡°AI GPT4 TRADING BOT.rar¡±µÈ¼«¾ßÒýÓÕÐÔµÄÃû×Ö£¬¶øºóÔÚ¸÷´óÉ罻ƽ̨»òÕßÂÛ̳À©É¢£¬Í¨³£Óû§Í¨¹ýËÑË÷ÒýÇæ»òÉ罻ƽ̨ÎóÈëÓйØÁ´½Ó²¢ÏÂÔØÖ´ÐС£¶ñÒⷨʽͨ¹ý¶à½×¶Î²ã²ã½âÃÜpayloadºÍ¹ý³Ì×¢ÈëÖ´ÐУ¬×îÖÕÏòͨ³£Óû§É豸ÉÏͶ·ÅLumma StealerľÂí¡£Lumma StealerľÂíÔËÐк󣬻áÇÔȡϰȾÉ豸ÉÏä¯ÀÀÆ÷±£ÁôµÄÃÜÂë¡¢Cookies¡¢¼ÓÃÜÇ®±ÒÇ®°ü¡¢FTP/VPN/email¿Í»§¶ËÅäÖÃÎļþµÈÃô¸ÐÐÅÏ¢£¬²¢Í¨¹ýC2·þÎñÆ÷ʵʱÉÏ´«ÇÔÈ¡µÄÊý¾Ý¡£ÒÔÏÂÎÒÃǽ«¶ÔLumma StealerÒ»´ÎµäÐ͵Ĺ¥»÷½øÐÐÉî¿ÌµÄ¼¼Êõ·ÖÎö£¬Ô̺¬ÓйضñÒⷨʽµÄ¼ÓÔØÁ÷³Ì¡¢¹Ø¼üº¯ÊýºÍ½ÚÔìºÅÁîµÈ¡£


ͼƬ10.png

ͼ9 ¹¥»÷Á÷³Ìͼ


5.1¡¢µÚÒ»½×¶Î·ÖÎö


ÔÚ¶Ôԭʼ¶ñÒâÑù±¾µÄ·ÖÎö¹ý³ÌÖУ¬ÎÒÃÇ·¢ÏÔìäѡȡÁ˶ñÒâÈí¼þʱʱʹÓõÄÒ»ÖÖ²½Öè¡°ÊÖ¶¯Ó³Éä¹ý³Ì×¢Èë·¨¡±½«¶ñÒâPEÎļþдÈëºÏ·¨¹ý³ÌMSBuild.exe ²¢Ö´ÐС£ÊÖ¶¯Ó³Éä×¢Èë·¨²»ÒÀÀµ²Ù×÷ϵͳµÄ³ß¶È¼ÓÔØÆ÷£¬¶øÊÇÓɶñÒâ´úÂë×ÔÐÐʵÏÖPE¼ÓÔØ¡¢ÄÚ´æÐ´ÈëºÍÖ´ÐÐÁ÷³Á¶¨Ïò£¬ÕâÖÖ²½Öè»áÈÆ¹ýͨÀý¼ÓÔØ»úÔ죬ʵÏÖ¶Ô¶ñÒâPEÎļþµÄÒñ±ÎÖ´ÐУ¬ÕâÑù×öÄܹ»°µ²ØÖ´ÐÐõè¾¶£¬²¢Ôڿ϶¨Ë®Æ½ÉÏÈÆ¹ý°²È«²úÆ·µÄÐÐΪ¼ì²â¡£


Ê×ÏÈ£¬¶ñÒâÑù±¾Í¨¹ýCreateProcessA ´´½¨Ò»¸ö¹ÒÆð״̬£¨dwCreationFlagsµÅ×Ú4£©µÄ ¡°C:\\Windows\\Microsoft.NET\\Framework\\v4.0.30319\\MSBuild.exe¡±¹ý³Ì£¨Èçͼ10Ëùʾ£©£¬ÕâÑùÄܹ»Ô¤·ÀÖ¸±ê¹ý³Ìµ±¼´Ö´ÐÐÔ­ÓдúÂ룬±ãÓÚºóÐø²Ù¿Ø¡£


ͼƬ11.png

ͼ10 ´´½¨¹ÒÆðµÄMSBuild.exe¹ý³Ì


½Ó×Å£¬ÆäŲÓÃWow64GetThreadContext»ñÈ¡Ö÷Ïß³ÌµÄ¼Ä·ÅÆ÷¸ßµÍÎÄ£¨¼ûͼ11£©£¬ÖØÒªÊÇΪÁË»ñȡָÁîÈë¿ÚµØÖ·ºÍÕ»Ö¸Õ룬ΪעÈëºóµÄÌø×ª×ö³ï±¸¡£


ͼƬ12.png

ͼ11 »ñÈ¡Ö÷Ïß³ÌµÄ¼Ä·ÅÆ÷¸ßµÍÎÄ


Ëæºó£¬ÆäʹÓÃVirtualAllocEx ÔÚÖ¸±ê¹ý³ÌMSBuild.exeÖÐÉêÇëÒ»¿éÄÚ´æ¿Õ¼ä£¬ÓÃÓÚ¸éÖöñÒâµÄPEÎļþ¡£Èçͼ12Ëùʾ£¬ÉêÇëÄÚ´æµÄÕØÊ¼µØÖ·Îª0x00400000£¬ÉêÇëµÄÄÚ´æ´óÓ×Ϊ0x00165000£¬µÚËĸö²ÎÊýflAllocationTypeΪ0x3000£¬´ú±íÄÚ´æ·ÖÅäµÄÀàÐÍΪ¡°MEM_COMMIT | MEM_RESERVE¡±£¬×îºóÒ»¸ö²ÎÊýflProtectΪ0x40£¬´ú±íÄÚ´æ±£»¤ÊôÐÔΪ¡°RWE¡±¡£


ͼƬ13.png

ͼ12ÉêÇëÄÚ´æ¿Õ¼ä


ͨ¹ýÂÅ´ÎŲÓÃWriteProcessMemory£¬Æä½«¶ñÒâPEµÄ¸÷¸öSectionÖð¶ÎдÈëµ½MSBuild.exe¹ý³ÌµÄÕâ¿éÄÚ´æÖУ¬·ÂÕÕ³öÒ»¸öÆëÈ«µÄÓ³Ïñ½á¹¹£¨Í¼13ÊÇдÈë¶ñÒâÎļþPEÍ·µÄ²Ù×÷²¿ÃÅ£©¡£


ͼƬ14.png

ͼ13 Ð´Èë¶ñÒâÎļþPEÍ·


Èçͼ14Ëùʾ£¬ÔÚÄÚ´æ»ú¹ØÊµÏÖºó£¬Ñù±¾Å²ÓÃWow64SetThreadContext½«Ö¸±êÏ̵߳ÄÈë¿ÚµØÖ·Åú¸ÄΪעÈëPEµÄÕØÊ¼µØÖ·£¬¼´ÊµÏÖÁË´úÂë½Ù³Ö¡£×îºó£¬Í¨¹ýResumeThread¸´Ô­±»¹ÒÆðµÄỊ̈߳¬Ê¹Æä´ÓÉèÖõÄÐÂÈë¿ÚÆðÍ·Ö´ÐУ¬´Ó¶øÊµÏÖ¶Ô¶ñÒâ´úÂëµÄÒñ±ÎÖ´ÐС£


ͼƬ15.png

ͼ14ÉèÖÃÏ̸߳ߵÍÎÄÐÅÏ¢²¢¸´Ô­Ïß³ÌÖ´ÐÐ


ÕâÖÖ×¢È뷽ʽÕûÌå²Ù×÷½ÏΪµ×²ã£¬µ«Ö´ÐÐÁ´Â·¶Ì¡¢½ÚÔìÁ¦Ç¿£¬ÎÞÐèÂ䵨Îļþ¾ÍʵÏÖÁËÄÚ´æ¹¥»÷£¬ÕâʹµÃ¼ì²âÄѶÈÏÔÖøÔö³¤¡£


5.2¡¢µÚ¶þ½×¶Î·ÖÎö


ÔÚµÚÒ»½×¶Î£¬Ô­Ê¼¶ñÒâÑù±¾Ð½¨ºÏ·¨¹ý³ÌMSBuild.exe²¢ÏòÆäÖÐ×¢Èë¶ñÒâPEÎļþ²¢Ö´ÐУ¬Æä¶ñÒâPEÎļþÖ´Ðкó»áŲÓÃCreateFileWÏòϰȾÖ÷»ú¡°C:\Users\[username]\AppData\Roaming¡±Ä¿Â¼¿ªÊÍÁ½¸ö¶ñÒⷨʽ£¬¶ñÒⷨʽÃû³ÆÓÉ×ܳ¤¶ÈµÅ×Ú10µÄ×ÖĸºÍÊý×ÖËæ»ú×é³É£¬Èçͼ15Ëùʾ¡£


ͼƬ16.png

ͼ15дÈë¶ñÒâÎļþ


¿ªÊÍÍê¶ñÒⷨʽºó£¬¶ñÒâPEÎļþÔÙŲÓÃShellExecuteAÖ´ÐÐÕâÁ½¸ö¶ñÒⷨʽ£¬Èçͼ16Ëùʾ¡£Ê¹ÓÃÕâÖÖÖ´Ðз½Ê½£¬¸üÇнüÕý³£Óû§²Ù×÷£¬²»Ò×´¥·¢Ä³Ð©AV/EDRµÄÌØµã¹æ¶¨£¬³£±»¶ñÒâÈí¼þÓÃÓÚÈÆ¹ý²¿ÃÅÐÐΪ¼ì²â¡£


ͼƬ17.png

ͼ16 Ö´ÐжñÒⷨʽ


ͼ17¼´ÊÇÉÏÊö²Ù×÷¿ªÊͲ¢Ö´ÐеÄÁ½¸ö¶ñÒâÎļþ¡£¡°HauP0PNxwr.exe¡±´óÓ×Ϊ11,264bytes£¬ÕƹÜɱ¶¾Èí¼þ¼ì²â£¬¡°KZbu03ZssI.exe¡± ´óÓ×Ϊ1,239,080bytes£¬ÓÃÓÚÖ´ÐкóÐøµÄ¶ñÒâÐÐΪ¡£


ͼƬ18.png

ͼ17¿ªÊ͵ĶñÒâÎļþ


5.3¡¢µÚÈý½×¶Î·ÖÎö


KZbu03ZssI.exeÖ´Ðк󣬻áʹÓú͵ÚÒ»½×¶ÎͬÑùµÄ¡°ÊÖ¶¯Ó³Éä¹ý³Ì×¢Èë·¨¡±£¬´´½¨ºÏ·¨¹ý³Ì¡°C:\\Windows\\Microsoft.NET\\Framework\\v4.0.30319\\MSBuild.exe¡±£¬²¢Ïò¹ý³ÌMSBuild.exeÄÚ´æÖÐ×¢ÈëLumma Stealer¶ñÒâÈí¼þÖ´ÐУ¬ÕâÀï½öÁгöKZbu03ZssI.exeÏòMSBuild.exe¹ý³ÌдÈëLumma StealerµÄPEÍ·ÒÔ×÷×¢Ã÷£¨¼ûͼ18£©¡£


ͼƬ19.png

ͼ18ÏòMSBuild.exe×¢ÈëLumma Stealer


5.4¡¢Lumma Stealer·ÖÎö


ÈçǰËùÊö£¬¾­¹ýÇ°ÃæÒ»ÏµÁеIJÙ×÷£¬×î³õµÄ¶ñÒⷨʽ×îºóÏòÊܺ¦ÕßÉ豸Ͷ·ÅÁËÇÔÃܹ¤¾ßLumma Stealer£¬Æä×Ô2022 Äê8ÔÂÆð¾ÍÒÔ¡°¶ñÒâÈí¼þ¼´·þÎñ¡±£¨MaaS£©Ä£Ê½ÔÚµØÏÂÂÛ̳±»¿í·ºÍƹ㣬ͼ19ÊÇijºÚ¿ÍÂÛ̳ÉÏLumma StealerµÄ¸æ°×£¬Í¼20ÊÇLumma Stealer·ÖÆçÌײÍÔ̺¬µÄÖ°ÄܽéÉÜ¡£Æä¾ß±¸×³´óµÄÐÅÏ¢ÍøÂçÓëÊý¾Ý±í´«ÄÜÁ¦£¬ÆäÖØÒª¸öÐÔÔ̺¬ÇÔÈ¡ä¯ÀÀÆ÷±£ÁôµÄÃÜÂëÓëCookies¡¢¼ÓÃÜÇ®±ÒÇ®°üÐÅÏ¢¡¢FTP/VPN/email¿Í»§¶ËÅäÖÃÎļþµÈ¶àÖÖÃô¸ÐÊý¾ÝºÍÖ§³Ö²å¼þ»¯Ö°ÄÜÀ©´ó¡£Lumma StealerÒÔÆäÇáÁ¿»¯¡¢¸ß¼æÈÝÐÔºÍÈÆ¹ý¼ì²âÄÜÁ¦Ç¿µÈÌØµã£¬ÔÚµØÏÂÊг¡¿í·ºÁ÷ͨ£¬±»¡°Scattered Spider hacking group¡±¡¢¡°Black Basta¡±µÈ¶à¸ö¹¥»÷×éÖ¯ÓÃÓÚ¶¨ÏòÐÅÏ¢ÇÔÈ¡Óë³õʼÈëÇֽ׶Ρ£


ͼƬ20.png

ͼ19ºÚ¿ÍÂÛ̳ÉÏLumma StealerµÄ¸æ°×


ͼƬ21.png

ͼ20·ÖÆçÌײ͵ÄÖ°ÄܽéÉÜ


ÎÒÃÇ´ÓÄÚ´æÖÐdump³öÁËÕâ´ÎͶ·ÅµÄLumma Stealer£¬¶øºó¶ÔÆä½øÐÐÁËÄæÏò·ÖÎö£¬Í¼21ÊÇÕâ´Î·Ö·¢µÄLumma StealerµäÐÍÈë¿Úº¯Êý¡£


ͼƬ22.png

ͼ21 Lumma Stealer Èë¿Úº¯Êý


Lumma StealerʹÓÃÁË´óÁ¿µÄ»¨Ö¸ÁîºÍ´úÂë»ìºÏÒÔ×ÌÈÅ·ÖÎö¹¤¾ßºÍ°²È«·ÖÎöÈËÔ±£¬Èçͼ22Ëùʾ¡£´Ë±í£¬Æä»¹Ê¹ÓÃÁ˶¯Ì¬DLL¼ÓÔØºÍ¶¯Ì¬APIŲÓõȷ½Ê½À´Æ¥µÐ°²È«·ÖÎö¡£


ͼƬ23.png

ͼ22 »¨Ö¸Áî²Ù×÷


ÎÒÃÇÊ×ÏȶÔLumma StealerÄÚÖõÄC2·þÎñÆ÷µØÖ·½øÐÐÏàʼûÜÌáÈ¡£¬Èçͼ23Ëùʾ¡£Lumma Stealer´Ó°ä²¼µ½°æ±¾6£¬ÆäÄÚÖÃC2ÅäÖÃÌåʽ¾­ÀúÁËÂÅ´ÎÑݱ䣬´ÓXOR+Base64µ½ Chacha20+Ó²±àÂë ÔÙµ½´Ë¿ÌµÄChacha20+·ÖÀëÃÜÔ¿¿é£¬Äܹ»Ô¤¸Ð£¬ÄÚÖÃC2·þÎñÆ÷µØÖ·µÄ¼ÓÃÜÊÖ·¨»¹»á³ÖÐøÉý¼¶¡£


ͼƬ24.png

ͼ23 ÄÚÖõÄC2µØÖ·


ËæºóÎÒÃǶԸÃLumma Stealer½øÐÐÁ˶¯Ì¬µ÷ÊÔ£¬ÎÒÃǶ¯Ì¬µ÷ÊÔ¹ý³ÌÖз¢ÏÖ£¬¡°Lumma Stealer¡±Ò»´ÎÖ»»áÑ¡ÖÐÒ»¸öC2·þÎñÆ÷½øÐн»»¥£¬ÆäÊ×ÏÈ»á¼ì²âÑ¡ÖеÄC2·þÎñÆ÷ÊÇ·ñ´¦Óڻ״̬£¬ÈôÊDz»´¦Óڻ״̬£¬ÔòÑ¡ÔñÏÂÒ»¸öC2·þÎñÆ÷£¬ÈôÊÇ´¦Óڻ״̬£¬Ôò·¢ËͺóÐøºÅÁͼ24ÊÇ¡°Lumma Stealer¡±Å²ÓÃWinHttpSendRequestÏòC2·þÎñÆ÷·¢ËÍRECEIVE_MESSAGEºÅÁîÒªÇóÊý¾ÝµÄ½ØÍ¼¡£


ͼƬ25.png

ͼ24 ÏòC2ÒªÇóÊý¾Ý


¡°Lumma Stealer¡±·¢Ë͵Äÿ¸öºÅÁî¶¼Ô̺¬Ò»¸ö»ò¶à¸ö²ÎÊý£¬ÕâЩ²ÎÊý×÷ΪPOST±íµ¥Êý¾Ý±»·¢ËÍÖÁÖ¸±êC2·þÎñÆ÷£¬ÕâЩ²ÎÊýºÍÆäÔ¢Òâ¼û±í6£¬±í7ÔòÊÇLumma StealerһЩ×î³£¼ûµÄºÅÁî¼°Æä´îÅäµÄÓйزÎÊý×¢Ã÷¡£


²ÎÊý

Ô¢Òâ

±¸×¢

act

ÏòC2·¢Ë͵ĺÅÁî

´Ë²ÎÊýÔÚversion 6 Öб»È¥³ý

ver

°æ±¾ºÅ

Õâ¸öÖµ×ÜÊÇ4.0£¬²¢ÇÒ×ÔLumma StealerµÚÒ»¸ö°æ±¾ÒÔÀ´´ÓδŤת¹ý

lid

ÓÃÓÚ¼ø±ðLumma client

version5ºÍ֮ǰ

uid

ͬÉÏ

version6

j

¿ÉÑ¡²ÎÊý£¬ÓÃÓÚ¼ø±ð¸½¼ÓÖ°ÄÜ

version5ºÍ֮ǰ

cid

ͬÉÏ

version6

hwid

ϰȾÉ豸Ψһ±êʶ·û

/

pid

ÓÃÓÚ±êʶ±»µÁÊý¾ÝµÄÆðÔ´

ÔÚSEND_MESSAGEºÅÁîÖÐʹÓÃ

±í6 ²ÎÊýºÍÆäÔ¢Òâ


ºÅÁî

×÷ÓÃ

ºÅÁî¼°ÆäÓйزÎÊý

±¸×¢

PING / LIFE

²é³­C2 ÊÇ·ñ´¦ÓÚ¼¤»î״̬

act=life

ÔÚversion6Öб»È¥³ý

RECEIVE_MESSAGE

ÓÃÓÚÏÂÔØLumma StealerµÄÅäÖÃÎļþ£¬¸ÃÎļþÔ̺¬ÁËÖ¸±êÁбíµÄÓйØÐÅÏ¢

act=recive_message&ver=4.0&lid=[]&j=[]

version3ºÍ֮ǰ

act=receive_message&ver=4.0&lid=[]&j=[]

version4ºÍversion5

uid=&cid=[]

actÔÚversion6Öб»ÒƳý

SEND_MESSAGE

ÓÃÓÚ·Ö¿é´«Ëͱ»µÁÊý¾Ý

act=send_message, hwid, pid, lid/uid, and j/cid

actÔÚversion6Öб»ÒƳý

GET_MESSAGE

ÓÃÓÚÏÂÔØµÚ¶þ¸öÅäÖÃÎļþ£¬¸ÃÅäÖÃÎļþÔ̺¬ÁËÓйزå¼þÒÔ¼°Òª×°ÖÃÔÚÖ¸±êϵͳÉÏµÄÆäËû¶ñÒâÈí¼þµÄÐÅÏ¢£¬Ä¿Ç°·¢ÏÖ°²Lumma Stealer»á×°ÖÃа汾¼ôÌù°åÇÔÈ¡²å¼þºÍÍÚ±ÒÈí¼þ

act=get_message&ver=4.0&lid=[]&j=[]&hwid=

version 5ºÍ֮ǰ£¬

uid=&cid=[]&hwid=

actÔÚversion6Öб»ÒƳý

±í7 ³£¼ûµÄºÅÁî¼°ÆäÓйزÎÊý


RECEIVE_MESSAGEºÅÁî·¢Ë͸øC2·þÎñÆ÷ºó£¬·µ»ØµÄpayload½âÃܺóΪһ¸öjson½á¹¹£¬Ô̺¬Á˾ßÌåµÄÊý¾ÝÍøÂçÖ¸ÁÌṩÁËÆëÈ«µÄä¯ÀÀÆ÷À©´óÁбíºÍ¸ÐÐËÖµÄÍøÕ¾Áбí¡£¸Ã½á¹¹·ÖΪÈý¸öÖØÒª²¿ÃÅ£ºex¡¢mx ºÍ c¡£

ex£º´ËÁбíÁгöÁ˶à¶àµÄä¯ÀÀÆ÷À©´ó·¨Ê½£¬ÖØÒªÊǼÓÃÜÇ®±ÒÇ®°ü£¨ºÃ±ÈMetaMask, Ronin Wallet, Trust Wallet, Coinbase£©¡¢ÃÜÂëÖÎÀíÆ÷£¨ºÃ±È1Password £¬LastPass£©ÒÔ¼°ÈÏÖ¤¹¤¾ß£¨ºÃ±ÈAuthy, EOS Authenticator, GAuth£©¡£Ã¿Ò»±Ê¼Í¼¶¼Ô̺¬Ò»¸öΨһµÄ±êʶ·û£¨Chrome À©´ó·¨Ê½ID£©ºÍÒ»¸öÒ×ÓÚÔĶÁµÄÃû³Æ¡£


mx£º´Ë×Ö¶ÎΪָ¶¨µÄÀ©´ó·¨Ê½ÌṩÁËÌØ¶¨µÄÖ¸ÁºÃ±ÈMetaMask µÄ¼Í¼ÖÐÔ̺¬ÁËÒ»¸ö¡°et¡±²ÎÊý£¬¸Ã²ÎÊý´øÓÐÃÜÂëÍÆµ¼ÉèÖ㨵ü´ú´ÎÊý=600000£©£¬Æä¿ÉÓÃÓÚ±©Á¦ÆÆ½â¹¥»÷»òÔÚÀëÏß״̬ÏÂÑéÖ¤ÃÜÂë±£»¤µÄ¿â£¬´Ë²¿ÃÅ¿ÉÕë¶Ô±ØÒªÌØÊâ´¦Öõĸ߼ÛÖµÖ¸±ê½øÐиöÐÔ»¯ÉèÖá£

c£ºÕâÊǸýṹÖÐ×îʵÓõIJ¿ÃÅ£¬ÒÔÏÂÊÇÿ¸ö¶ÔÏóµÄÔ¢Ò⣺

t - ÇÔÈ¡ÀàÐÍ£¬°µÊ¾Îļþ»ñÈ¡µÄÀàÐÍ£¬ºÃ±ÈÎļþ»ò×¢²á±í

p - ÇÔȡָ±êõè¾¶£¬Í¨³£ÊÇ%appdata% »ò %localappdata% õè¾¶

m - Æ¥Åäģʽ£¬É¸Ñ¡Ìض¨Îļþ(ºÃ±Èkeystore, *.sqlite)

z - ÇÔÈ¡µÄÎļþÔÚ¹¥»÷·½Ò»²àÒª±£ÁôµÄÎļþ¼Ð(ºÃ±ÈWallets/Ethereum)

d - ÇÔȡĿ¼µÄÉî¶È

fs - ×î´óÎļþ´óÓ×(ºÃ±È˵20MB)


ÕâЩ¹æ¶¨Ã÷È·½²ÁËÈ»Lumma Stealer´Ó¼ÓÃÜÇ®±ÒÇ®°ü¡¢ä¯ÀÀÆ÷»á»°¡¢FTP/VPN/email¿Í»§¶ËÅäÖÃÎļþ¡¢ÃÜÂëÖÎÀíÆ÷ºÍͨÓÃÓû§ÅäÖÃÎļþÖÐÇÔÈ¡Ãô¸ÐÐÅÏ¢µÄÒâͼ£¬Í¼25ÊÇÒ»¸ö¾«¼òµÄ¸Ã½á¹¹µÄÀý×Ó¡£


ͼƬ26.png

ͼ25 RECEIVE_MESSAGEºÅÁî·µ»ØµÄpayload½âÃܺóµÄ½á¹¹Ê¾Òâͼ


GET_MESSAGEºÅÁîµÄÏìÓ¦Ôòµ¥Ò»ºÃ¶à£¬Èçͼ26£¬ËüÔ̺¬Ò»¸öÖ¸ÏòÔ¶³Ì·þÎñÆ÷ÉÏÍйܵÄPE¿ÉÖ´ÐÐÎļþ£¨Èçnetstat.exe£©µÄ URL£¬u°µÊ¾ÏÂÔØµØÖ·£»ftÖ¸ÎļþÀàÐÍ£¨0°µÊ¾exe£¬1°µÊ¾dll£¬2¾ç±¾»òÆäËû£©£»eÖ¸ÎļþÊÇ·ñ¾²Ä¬Ö´ÐУ¨0°µÊ¾Õý³£Ö´ÐУ¬1°µÊ¾°µ²ØÖ´ÐУ©¡£ÕâÅú×¢¸ÃLumma StealerÄܹ»Í¨¹ý´ËÇþ·½Ó¹ÜºóÐø½×¶ÎµÄÖ¸Á¿ÉÓÃÓÚ¸üÐÂ×ÔÉí¡¢·Ö·¢¶ñÒâ´úÂë»ò¼¤»îÌØ¶¨Ä£¿é¡£


ͼƬ27.png

ͼ26 GET_MESSAGEºÅÁî·µ»ØµÄpayload½âÃܺóµÄ½á¹¹Ê¾Òâͼ


Lumma Stealer´Ó×î³õ°ä²¼µ½Èç½ñµÄ°æ±¾6£¬Ö°Äܲ»Ðݵü´ú£¬Æä¿ÉÄÜÇÔÈ¡´óÁ¿Ãô¸ÐÊý¾Ý£¬Ô̺¬¶à¸öÖ÷Á÷ä¯ÀÀÆ÷£¨ÈçChrome¡¢Edge¡¢Firefox¡¢OperaµÈ£©±£ÁôµÄÕ˺š¢ÃÜÂë¡¢Cookies¡¢×Ô¶¯Ìî±íÐÅÏ¢¡¢º¹Çà¼Í¼µÈ£»Æä»¹»áÇÔÈ¡¼ÓÃÜÇ®±ÒÇ®°üÈçBinance¡¢Electrum ºÍÒÔÌ«·»µÈÇ®°ü£»ÆäͬÑù»áÇÔȡϰȾÉ豸FTP¿Í»§¶Ë¡¢Óʼþ¿Í»§¶Ë£¨ÈçOutlook¡¢Thunderbird£©ºÍ¼´Ê±Í¨Ñ¶Èí¼þµÄµÇ¼ƾ֤ÒÔ¼°Ìض¨õè¾¶Îļþ²¢Ö§³Ö²å¼þ»¯Ö°ÄÜÀ©´ó¡£


Lumma Stealer µÄÖ÷ÌâÊǶñÒâÈí¼þ¼´·þÎñ£¨MaaS£©Éú̬ϵͳµÄ·¶Àý£ºÍøÂç·¸×ï·Ö×ÓÖ»ÐèÖ§¸¶¶©ÔÄ·Ñ£¨Æð¼ÛΪ 250 ÃÀÔª/Ô£©£¬¼´¿É»ñµÃ¸üеĶñÒâÈí¼þ°æ±¾¡¢ÒDZí°å½Ó¼û¡¢¼¼ÊõÖ§³ÖºÍ×Ô½ç˵ְÄÜ£¬¹¥»÷ÕßÖ»±ØÒªÍ¨¹ýÍøÂçÒDZí°å¾ÍÄܹ»½Ó¼û±»ÇÔÈ¡µÄÊý¾Ý£¬Õû¸ö¹¥»÷Á÷³ÌʵÏÖÁË¡°¼´²å¼´Óá±£¬¼´±ãºÁÎÞ¼¼Êõ»ù´¡µÄ²Ù×÷ÕßÒ²ÄÜÇáËÉÉÏÊÖ¡£ÕâÖÖµÍÃż÷¡¢¸ßЧÄܵĹ¥»÷¹¤¾ß£¬ÎÞÒÉ»á¸øÆóÒµÓëÓ×ÎÒ´øÀ´ÏÔÖøÍþв¡£


µÚÁùÕ ×ܽá


±¾´ÎÊÂÎñ½ÒʾÁËÒ»¸ö¸ß¶È×éÖ¯»¯¡¢×Ô¶¯»¯²¢¾ß±¸È«ÇòͶ·ÅÄÜÁ¦µÄºÚ¿Í¼¯Ìå¡£ËûÃDz»½ö½ÚÔì×Å´óÁ¿¶ñÒâÓòÃûÓëIP×ÊÔ´£¬»¹ÔÚTelegramµÈÉ罻ƽ̨Éϲ¿ÊðÁËÖØ´óµÄ×Ô¶¯×ª·¢»úеÈËÍøÂç¡£ÕâЩ»úеÈËÂñ·üÓÚ¶à¸öÈÈµãÆµÂ·ÖУ¬Ò»µ©½Ó¹Üµ½Ö¸Á±ã»á½«¼Ù×°³ÉÈȵãÈí¼þµÄ¶ñÒâÎļþѸ¿ìÍÆË͸ø³ÉǧÉÏÍòÃûÓû§£¬¸²¸ÇÁìÓòÓâÔ½¶à¸ö¹ú¶ÈÓëµØÓò¡£¹¥»÷ÕßµÄÖ¸±êÈËȺ²»½öÏÞÓÚAIÐËÖÂȺÌ壬ÏÕЩËùÓÐʹÓÃTelegram¡¢¶ÔÃâ·Ñ×ÊÔ´¸ÐÐËÖµÄͨ³£Óû§¶¼ÓпÉÄܳÉΪÊܺ¦Õß¡£ÆäÖ÷ÌâÒâͼÊÇ»ñȡȫÇòÁìÓòÄÚµÄÃô¸ÐÐÅÏ¢¡¢Êý×Ö×ʲú£¬ÉõÖÁÔ¶³Ì½ÚÔìȨÏÞ£¬³ä·ÖÌåÏÖ³ö¸Ã×éÖ¯ÔÚͶ°ÕÐݶÎÓë³ÖÐøÔËÓª·½ÃæµÄ¸ß¶È³ÉÊìÓëÒñ±ÎÐÔ¡£


Ãæ¶ÔÕâÀàÓÐ×éÖ¯¡¢¸ßЧÄܵĴó¹æÄ£ÍøÂç¹¥»÷£¬Í¨³£Óû§²»Ó¦ÔÙ±§ÓÓװʲ»¹Ø¼º¡±µÄÐÒÔËÉúÀí¡£Èç½ñ£¬¶ñÒâÈí¼þµÄ´«²¼Ãż÷ÒÑ´ó·ù½µµÍ£¬ÎÞÐè´¹µöÓʼþ»ò·ì϶ÀûÓ㬽öƾÉ罻ƽ̨µÄÎÞ¼à¹Ü»·¾³ÓëÓÕµ¼ÐÔ±êÌ⣬¾Í×ãÒÔʹ¶ñÒâÎļþѸ¿ìÀ©É¢²¢Ôì³ÉÑϳÁÓ°Ïì¡£Ó¦¶Ô´ËÀ๥»÷£¬¼È±ØÒªÆ½Ì¨¼ÓÇ¿ÄÚÈÝÉóºËºÍ·â½û»úÔ죬ҲÀë²»¿ª°²È«ÉçÇø¡¢×êÑÐÈËÔ±ÓëÖÕ¶ËÓû§Ö®¼äµÄºÏ×÷ÓëÁª·À¡£ÎªÔ¤·ÀϰȾ´ËÀà¼Ù×°³ÉÈȵãAI¹¤¾ß»òÆÆ½âÈí¼þµÄ¶ñÒⷨʽ£¬½¨ÒéÓû§Ê¼ÖÕά³Ö¸ß¶È¾¯Ì裬Ԥ·À´Ó·Ç¹Ù·½Çþ·ÏÂÔØÑ¹Ëõ°ü»ò¿ÉÖ´ÐÐÎļþ¡£ËùÓÐÈí¼þӦͨ¹ýÆä¹Ù·½ÍøÕ¾»ñÈ¡£¬Ô¤·À×°Ööî±í·¨Ê½¡£ÔÚ´ò¿ªÈκÎÏÂÔØÎļþǰ£¬Ó¦Ê¹ÓÃɱ¶¾Èí¼þ»òÔÚÏßɨÃè·þÎñ½øÐа²È«²é³­£¬²¢È·±£²Ù×÷ϵͳ¼°°²È«²úƷʵʱ¸üС£ÈçʧÉ÷ÔËÐÐÁË¿ÉÒÉ·¨Ê½£¬Ó¦µÚÒ»¹¦·ò¶ÏÍø£¬²¢¾¡¿ì×·Çóרҵ¼¼ÊõÖ§³Ö£¬ÒÔÔ¤·ÀÐÅϢй¶»òÉ豸±»Ô¶³Ì½ÚÔì¡£


²Î¿¼£º

https://www.microsoft.com/en-us/security/blog/2025/05/21/lumma-stealer-breaking-down-the-delivery-techniques-and-capabilities-of-a-prolific-infostealer/

https://www.certego.net/blog/lummastealer/

https://www.trendmicro.com/en_us/research/25/g/lumma-stealer-returns.html



GA»Æ½ð¼×»ý¼«·ÀÓù³¢ÊÔÊÒ£¨ADLab£©


ADLab³ÉÁ¢ÓÚ1999Ä꣬ÊÇÖйú°²È«ÐÐÒµ×îÔç³ÉÁ¢µÄ¹¥·À¼¼Êõ×êÑг¢ÊÔÊÒÖ®Ò»£¬Î¢ÈíMAPP´òËãÖ÷Ìâ³ÉÔ±£¬¡°ºÚȸ¹¥»÷¡±¸ÅÏëÊ×ÍÆÕß¡£½ØÖÁĿǰ£¬ADLabÒÑͨ¹ý CNVD/CNNVD/NVDB/CVEÀۼư䲼°²È«·ì϶6500Óà¸ö£¬³ÖÐøÎ¬³Ö¹ú¼ÊÍøÂ簲ȫÁìÓòÒ»Á÷Ë®×¼¡£³¢ÊÔÊÒ×êÑз½Ïòº­¸Ç»ù´¡°²È«×êÑÓ×¢Êý¾Ý°²È«×êÑÓ×¢5G°²È«×êÑÓ×¢AI+°²È«×êÑÓ×¢ÎÀÐǰ²È«×êÑÓ×¢ÔËÓªÉÌ»ù´¡ÉèÊ©°²È«×êÑÓ×¢ÒÆ¶¯°²È«×êÑÓ×¢ÎïÁªÍø°²È«×êÑÓ×¢³µÁªÍø°²È«×êÑÓ×¢¹¤¿Ø°²È«×êÑÓ×¢ÐÅ´´°²È«×êÑÓ×¢ÔÆ°²È«×êÑÓ×¢ÎÞÏß°²È«×êÑÓ×¢¸ß¼¶Íþв×êÑÓ×¢¹¥·ÀÆ¥µÐ¼¼Êõ×êÑС£×êÑгɾÍÀûÓÃÓÚ²úÆ·Ö÷Ìâ¼¼Êõ×êÑÓ×¢¹ú¶È³Áµã¿Æ¼¼ÏîÄ¿¹¥¹Ø¡¢×¨Òµ°²È«·þÎñµÈ¡£


adlab.jpg