{"id":8472,"date":"2025-02-10T09:10:06","date_gmt":"2025-02-10T09:10:06","guid":{"rendered":"https:\/\/howtogeek.blog\/zh\/?p=8472"},"modified":"2025-02-10T09:10:06","modified_gmt":"2025-02-10T09:10:06","slug":"fixing-malware-issues-how-to-repair-your-device-from-recurring-malware-infections","status":"publish","type":"post","link":"https:\/\/howtogeek.blog\/zh\/fixing-malware-issues-how-to-repair-your-device-from-recurring-malware-infections\/","title":{"rendered":"\u4fee\u5fa9\u60e1\u610f\u8edf\u9ad4\u554f\u984c\uff1a\u5982\u4f55\u4fee\u5fa9\u88dd\u7f6e\u4ee5\u9632\u6b62\u91cd\u8907\u611f\u67d3\u60e1\u610f\u8edf\u9ad4"},"content":{"rendered":"<p>\u5373\u4f7f\u662f\u4e7e\u6de8\u7684\u8a2d\u5099\uff0c\u9047\u5230\u6301\u7e8c\u7684\u60e1\u610f\u8edf\u9ad4\u554f\u984c\u4e5f\u6703\u4ee4\u4eba\u975e\u5e38\u6cae\u55aa\u3002\u9019\u7a2e\u53cd\u8986\u51fa\u73fe\u7684\u554f\u984c\u901a\u5e38\u8868\u793a\u5b58\u5728\u91cd\u5927\u7684\u5b89\u5168\u6f0f\u6d1e\uff0c\u5fc5\u9808\u7acb\u5373\u89e3\u6c7a\u4ee5\u4fdd\u8b77\u60a8\u7684\u8cc7\u6599\u4e26\u78ba\u4fdd\u60a8\u7684\u8a2d\u5099\u5b89\u5168\u3002\u5728\u7576\u4eca\u7684\u6578\u4f4d\u74b0\u5883\u4e2d\uff0c\u4e86\u89e3\u5982\u4f55\u8b58\u5225\u3001\u6d88\u9664\u548c\u9810\u9632\u60e1\u610f\u8edf\u9ad4\u5a01\u8105\u81f3\u95dc\u91cd\u8981\u3002<\/p>\n<h2 id=\"detecting-dangerous-backdoors-on-your-device\">\u6aa2\u6e2c\u8a2d\u5099\u4e0a\u7684\u5371\u96aa\u5f8c\u9580<\/h2>\n<p>\u6301\u7e8c\u7684\u60e1\u610f\u8edf\u9ad4\u611f\u67d3\u53ef\u80fd\u8868\u793a\u60a8\u7684\u88dd\u7f6e\u4e0a\u5b58\u5728\u5f8c\u9580\u3002\u5f8c\u9580\u5141\u8a31\u672a\u7d93\u6388\u6b0a\u7684\u4f7f\u7528\u8005\u5728\u4e0d\u88ab\u767c\u73fe\u7684\u60c5\u6cc1\u4e0b\u5b58\u53d6\u548c\u63a7\u5236\u60a8\u7684\u8a2d\u5099\uff0c\u5373\u4f7f\u60a8\u4f3c\u4e4e\u5df2\u7d93\u89e3\u6c7a\u4e86\u5b89\u5168\u554f\u984c\uff0c\u4ed6\u5011\u4ecd\u53ef\u4ee5\u90e8\u7f72\u60e1\u610f\u8edf\u9ad4\u6216\u57f7\u884c\u6709\u5bb3\u64cd\u4f5c\u3002\u503c\u5f97\u6ce8\u610f\u7684\u5f8c\u9580\u985e\u578b\u5305\u62ec\u9060\u7aef\u5b58\u53d6\u6728\u99ac (RAT) \u548c\u6728\u99ac\u672c\u8eab\u3002\u5f8c\u9580\u7684\u8de1\u8c61\u53ef\u4ee5\u8868\u73fe\u70ba\u8a2d\u5099\u904e\u71b1\u3001\u5947\u602a\u7684\u5f48\u51fa\u8996\u7a97\u548c\u61c9\u7528\u7a0b\u5f0f\u983b\u7e41\u5d29\u6f70\u3002\u5982\u679c\u60a8\u61f7\u7591\u6709\u5f8c\u9580\uff0c\u8acb\u8003\u616e\u4ee5\u4e0b\u6b65\u9a5f\u4f86\u8b58\u5225\u4e26\u522a\u9664\u5b83\uff1a<\/p>\n<ul>\n<li><strong>\u5fb9\u5e95\u6383\u63cf\uff1a<\/strong>\u4f7f\u7528\u4fe1\u8b7d\u826f\u597d\u7684\u9632\u6bd2\u8edf\u9ad4\uff0c\u4f8b\u5982<a href=\"https:\/\/www.kaspersky.co.in\/.how\" rel=\"noreferrer\">\u5361\u5df4\u65af\u57fa<\/a>\u6216<a href=\"https:\/\/www.malwarebytes.com\/.how\" rel=\"noreferrer\">Malwarebytes<\/a>\u3002\u5c0d\u65bc Windows \u4f7f\u7528\u8005\u4f86\u8aaa\uff0cWindows Defender \u53ef\u4ee5\u4f5c\u70ba\u5805\u5be6\u7684\u7b2c\u4e00\u9053\u9632\u7dda\u3002<\/li>\n<li><strong>\u4f7f\u7528\u5c08\u9580\u7684 Rootkit \u6383\u63cf\u7a0b\u5f0f\uff1a\u9069\u7528\u65bc Windows \u7684<\/strong><a href=\"https:\/\/www.malwarebytes.com\/solutions\/rootkit-scanner?cjdata=MXxOfDB8WXww&amp;c=cj&amp;k=15376698&amp;utm_source=cj&amp;utm_medium=aff&amp;utm_content=15376698&amp;utm_campaign=AFF-CJ_4112715&amp;tracking=cj&amp;x-wts=cj&amp;x-affid=4112715&amp;ADDITIONAL_AFFID=cj-4112715&amp;cjevent=ac0bb6d3dfa611ef81407adb0a18b8fc&amp;clickid=ac0bb6d3dfa611ef81407adb0a18b8fc&amp;pid=cj_int\" rel=\"noreferrer\">Malwarebytes Anti-Rootkit<\/a>\u6216\u9069\u7528\u65bc Linux \u7684<a href=\"https:\/\/www.chkrootkit.org\/.how\" rel=\"noreferrer\">Chkrootkit<\/a>\u7b49\u5de5\u5177\u53ef\u4ee5\u6709\u6548\u5730\u5075\u6e2c rootkit\u3002<\/li>\n<li><strong>\u76e3\u63a7\u555f\u52d5\u7a0b\u5e8f\u548c\u767b\u9304\u9805\u76ee\uff1a<\/strong>\u60e1\u610f\u8edf\u9ad4\u7d93\u5e38\u96b1\u85cf\u5728\u555f\u52d5\u9805\u4e2d\u3002\u4f7f\u7528 Windows \u7684 Autoruns \u7b49\u5be6\u7528\u7a0b\u5f0f\u6aa2\u67e5\u4e26\u522a\u9664\u53ef\u7591\u689d\u76ee\u3002<\/li>\n<li><strong>\u67e5\u770b\u7cfb\u7d71\u65e5\u8a8c\uff1a<\/strong>\u5b9a\u671f\u6aa2\u67e5\u7cfb\u7d71\u65e5\u8a8c\u4e2d\u662f\u5426\u6709\u4efb\u4f55\u7570\u5e38\u6d3b\u52d5\uff0c\u5305\u62ec\u672a\u77e5\u7684\u767b\u5165\u5617\u8a66\u3002 Windows \u4f7f\u7528\u8005\u53ef\u4ee5\u4f7f\u7528\u4e8b\u4ef6\u6aa2\u8996\u5668\u4f86\u4ed4\u7d30\u6aa2\u67e5\u9019\u4e9b\u65e5\u8a8c\u3002<\/li>\n<\/ul>\n<p>\u6301\u7e8c\u6383\u63cf\u548c\u76e3\u63a7\u60a8\u7684\u88dd\u7f6e\u662f\u9632\u6b62\u5f8c\u9580\u5a01\u8105\u7684\u95dc\u9375\u3002\u7136\u800c\uff0c\u70ba\u4e86\u5fb9\u5e95\u6e05\u9664\uff0c\u5982\u6709\u5fc5\u8981\uff0c\u8acb\u5c0b\u6c42\u5c08\u696d\u5354\u52a9\u3002<\/p>\n<h2 id=\"exercise-caution-when-using-external-devices\">\u8b39\u614e\u4f7f\u7528\u5916\u90e8\u8a2d\u5099<\/h2>\n<p>\u5916\u90e8\u8a2d\u5099\u56e0\u5728\u5404\u7a2e\u5e73\u53f0\u4e0a\u50b3\u64ad\u60e1\u610f\u8edf\u9ad4\u800c\u81ed\u540d\u662d\u8457\u3002\u7576\u60a8\u5c07\u53d7\u611f\u67d3\u7684 USB \u96a8\u8eab\u789f\u6216 SSD \u9023\u63a5\u5230\u5176\u4ed6\u6a5f\u5668\u6642\uff0c\u53ef\u80fd\u6703\u51fa\u73fe\u50b3\u8f38\u60e1\u610f\u8edf\u9ad4\u7684\u98a8\u96aa\u3002\u56e0\u6b64\uff0c\u4f7f\u7528\u5171\u4eab\u8a2d\u5099\u6642\u4fdd\u6301\u8b66\u60d5\u81f3\u95dc\u91cd\u8981\u3002<\/p>\n<p>\u8b66\u60d5\u53ef\u80fd\u5df2\u88ab USB \u99ed\u5ba2\u5de5\u5177\uff08\u4f8b\u5982 OMG Cable \u548c Rubber Ducky\uff09\u4ee5\u53ca\u6d41\u884c\u7684\u9375\u76e4\u8a18\u9304\u5668\u653b\u64ca\u7684\u88dd\u7f6e\u3002\u5728\u63d2\u5165\u4efb\u4f55\u5916\u90e8\u8a2d\u5099\u4e4b\u524d\uff0c\u52d9\u5fc5\u4ed4\u7d30\u6aa2\u67e5\u5176\u4f86\u6e90\u3002<\/p>\n<ul>\n<li><strong>\u505c\u7528\u81ea\u52d5\u64ad\u653e\u548c\u81ea\u52d5\u904b\u4f5c\uff1a<\/strong>\u9019\u4e9b\u529f\u80fd\u53ef\u4ee5\u5728\u9023\u63a5\u5916\u90e8\u88dd\u7f6e\u5f8c\u7acb\u5373\u81ea\u52d5\u555f\u52d5\u60e1\u610f\u8edf\u9ad4\u3002\u78ba\u4fdd\u6240\u6709\u9023\u63a5\u7684\u88dd\u7f6e\u4e0a\u5747\u5df2\u505c\u7528\u9019\u5169\u9805\u529f\u80fd\u3002<\/li>\n<li><strong>\u555f\u7528\u5beb\u5165\u4fdd\u8b77\uff1a<\/strong>\u6b64\u529f\u80fd\u9650\u5236\u5916\u90e8\u88dd\u7f6e\u5c0d\u60a8\u7684\u7cfb\u7d71\u9032\u884c\u66f4\u6539\uff0c\u5f9e\u800c\u963b\u6b62\u4efb\u4f55\u5d4c\u5165\u5f0f\u60e1\u610f\u8edf\u9ad4\u57f7\u884c\u3002<\/li>\n<li><strong>\u5c07\u5de5\u4f5c\u8a2d\u5099\u548c\u500b\u4eba\u8a2d\u5099\u5206\u958b\uff1a<\/strong>\u5c07\u5de5\u4f5c\u8a2d\u5099\u7684\u4f7f\u7528\u9650\u5236\u5728\u5c08\u696d\u74b0\u5883\u4e2d\uff0c\u4e26\u7dad\u8b77\u5c08\u7528\u7684\u500b\u4eba\u8a2d\u5099\uff0c\u4ee5\u6700\u5927\u9650\u5ea6\u5730\u964d\u4f4e\u4ea4\u53c9\u611f\u67d3\u7684\u98a8\u96aa\u3002<\/li>\n<li><strong>\u5229\u7528\u96f2\u7aef\u5132\u5b58\uff1a<\/strong>\u8003\u616e\u5c07\u6587\u4ef6\u79fb\u81f3\u96f2\u7aef\u5132\u5b58\u670d\u52d9\uff0c\u9019\u4e0d\u50c5\u53ef\u4ee5\u6700\u5927\u9650\u5ea6\u5730\u6e1b\u5c11\u5be6\u9ad4\u8a2d\u5099\u7684\u4f7f\u7528\uff0c\u800c\u4e14\u9084\u53ef\u4ee5\u8f15\u9b06\u5be6\u73fe\u6587\u4ef6\u5171\u4eab\u548c\u5b89\u5168\u6027\u3002\u8acb\u52d9\u5fc5\u8a18\u4f4f\u50b3\u8f38\u5f8c\u6383\u63cf\u4e0b\u8f09\u7684\u6a94\u6848\u3002<\/li>\n<\/ul>\n<h2 id=\"cultivating-safe-browsing-habits\">\u57f9\u990a\u5b89\u5168\u700f\u89bd\u7fd2\u6163<\/h2>\n<p>\u990a\u6210\u5b89\u5168\u7684\u700f\u89bd\u7fd2\u6163\u5c0d\u65bc\u907f\u514d\u8207\u7db2\u8def\u91e3\u9b5a\u8a50\u9a19\u548c\u6709\u5bb3\u7db2\u7ad9\u76f8\u95dc\u7684\u98a8\u96aa\u81f3\u95dc\u91cd\u8981\u3002\u9078\u64c7\u503c\u5f97\u4fe1\u8cf4\u7684\u700f\u89bd\u5668\uff0c\u4f8b\u5982 Mozilla Firefox \u6216 Google Chrome\uff0c\u5b83\u5011\u63d0\u4f9b\u5167\u5efa\u5b89\u5168\u529f\u80fd\u548c\u5b9a\u671f\u66f4\u65b0\u4ee5\u6e1b\u8f15\u6f0f\u6d1e\u3002<\/p>\n<p>\u5c0d\u9023\u7d50\u8981\u6709\u8fa8\u5225\u529b\uff1b\u50c5\u5f9e\u4fe1\u8b7d\u826f\u597d\u7684\u4f86\u6e90\u4e0b\u8f09\u61c9\u7528\u7a0b\u5f0f\u3002\u900f\u904e\u6aa2\u67e5<code>https:\/\/<\/code>URL\u4f86\u9a57\u8b49\u7db2\u7ad9\u7684\u5b89\u5168\u6027\uff0d\u5b89\u5168\u7db2\u7ad9\u6703\u5c0d\u4f7f\u7528\u8005\u8cc7\u6599\u9032\u884c\u52a0\u5bc6\uff0c\u800c\u73fe\u4ee3\u700f\u89bd\u5668\u901a\u5e38\u6703\u5c0d\u4e0d\u5b89\u5168\u7684\u7db2\u7ad9\u767c\u51fa\u8b66\u544a\u3002<\/p>\n<h2 id=\"limit-admin-privileges-for-security\">\u9650\u5236\u7ba1\u7406\u54e1\u6b0a\u9650\u4ee5\u589e\u5f37\u5b89\u5168\u6027<\/h2>\n<p>\u8a31\u591a\u60e1\u610f\u8edf\u9ad4\u7a0b\u5f0f\u9700\u8981\u7ba1\u7406\u54e1\u6b0a\u9650\u624d\u80fd\u57f7\u884c\u6709\u5bb3\u64cd\u4f5c\u3002\u5be6\u65bd\u6700\u5c0f\u7279\u6b0a\u539f\u5247 (PoLP) \u53ef\u4ee5\u986f\u8457\u964d\u4f4e\u60e1\u610f\u8edf\u9ad4\u7684\u7834\u58de\u6f5b\u529b\u3002\u4ee5\u4e0b\u662f\u6709\u6548\u61c9\u7528\u6b64\u539f\u5247\u7684\u65b9\u6cd5\uff1a<\/p>\n<ul>\n<li><strong>\u5efa\u7acb\u5e38\u898f\u4f7f\u7528\u8005\u5e33\u6236\uff1a<\/strong>\u5229\u7528\u6a19\u6e96\u4f7f\u7528\u8005\u5e33\u6236\u9032\u884c\u65e5\u5e38\u6d3b\u52d5\uff0c\u4e26\u50c5\u70ba\u95dc\u9375\u7684\u5b89\u5168\u529f\u80fd\u4fdd\u7559\u7ba1\u7406\u54e1\u5b58\u53d6\u6b0a\u9650\u3002<\/li>\n<li><strong>\u5b9a\u671f\u5be9\u67e5\u4f7f\u7528\u8005\u6b0a\u9650\uff1a<\/strong>\u5c0d\u65bc\u5171\u4eab\u8a2d\u5099\uff0c\u7d93\u5e38\u5be9\u6838\u4f7f\u7528\u8005\u6b0a\u9650\uff0c\u522a\u9664\u4e0d\u5fc5\u8981\u7684\u5e33\u6236\u4e26\u78ba\u4fdd\u6240\u6709\u5e33\u6236\u90fd\u6709\u5f37\u5bc6\u78bc\u3002<\/li>\n<li><strong>\u9650\u5236\u8edf\u9ad4\u5b89\u88dd\uff1a<\/strong>\u5c07\u8edf\u9ad4\u5b89\u88dd\u6b0a\u9650\u9650\u5236\u65bc\u60a8\u7684\u7ba1\u7406\u54e1\u5e33\u6236\uff0c\u9632\u6b62\u672a\u7d93\u6388\u6b0a\u7684\u5b89\u88dd\u3002<\/li>\n<li><strong>\u5c0d\u5176\u4ed6\u4eba\u9032\u884c\u5b89\u5168\u6559\u80b2\uff1a<\/strong>\u63d0\u9ad8\u7528\u6236\u5c0d\u5b89\u5168\u5be6\u8e10\u91cd\u8981\u6027\u7684\u8a8d\u8b58\uff0c\u4f8b\u5982\u4e0d\u5171\u4eab\u7db2\u8def\u5bc6\u78bc\u548c\u8b39\u614e\u5f9e\u672a\u77e5\u4f86\u6e90\u4e0b\u8f09\u8edf\u9ad4\u3002<\/li>\n<\/ul>\n<h2 id=\"maintain-regular-system-updates\">\u5b9a\u671f\u7dad\u8b77\u7cfb\u7d71\u66f4\u65b0<\/h2>\n<p>\u7121\u8ad6\u4f5c\u696d\u7cfb\u7d71\u662f\u4ec0\u9ebc\uff0c\u4fdd\u6301\u66f4\u65b0\u5230\u6700\u65b0\u7684\u8edf\u9ad4\u7248\u672c\u90fd\u81f3\u95dc\u91cd\u8981\u3002\u904e\u6642\u7684\u7cfb\u7d71\u5bb9\u6613\u53d7\u5230\u60e1\u610f\u8edf\u9ad4\u7684\u653b\u64ca\u3002\u5b9a\u671f\u66f4\u65b0\u901a\u5e38\u5305\u542b\u89e3\u6c7a\u6b64\u985e\u6f0f\u6d1e\u7684\u95dc\u9375\u5b89\u5168\u6027\u4fee\u88dc\u7a0b\u5f0f\u3002\u59cb\u7d42\u5728\u66f4\u65b0\u524d\u5275\u5efa\u5099\u4efd\u4e26\u5f9e\u5b98\u65b9\u4f86\u6e90\u7372\u53d6\u66f4\u65b0\uff0c\u4ee5\u907f\u514d\u507d\u88dd\u6210\u66f4\u65b0\u7684\u60e1\u610f\u8edf\u9ad4\u3002<\/p>\n<h2 id=\"consider-reformatting-your-device\">\u8003\u616e\u91cd\u65b0\u683c\u5f0f\u5316\u4f60\u7684\u8a2d\u5099<\/h2>\n<p>\u5982\u679c\u60a8\u5df2\u7d93\u7528\u76e1\u6240\u6709\u522a\u9664\u65b9\u6cd5\u4f46\u60e1\u610f\u8edf\u9ad4\u4ecd\u7136\u5b58\u5728\uff0c\u8acb\u8003\u616e\u91cd\u65b0\u683c\u5f0f\u5316\u60a8\u7684\u88dd\u7f6e\u4f5c\u70ba\u6700\u5f8c\u7684\u624b\u6bb5\u3002\u8acb\u8a18\u4f4f\uff0c\u9019\u5c07\u522a\u9664\u6240\u6709\u61c9\u7528\u7a0b\u5f0f\u3001\u8a2d\u5b9a\u548c\u81ea\u8a02\u4ee5\u53ca\u60e1\u610f\u8edf\u9ad4\uff0c\u56e0\u6b64\u9019\u61c9\u8a72\u662f\u60a8\u7684\u6700\u7d42\u9078\u64c7\u3002\u60a8\u53ef\u80fd\u9084\u9700\u8981\u91cd\u65b0\u683c\u5f0f\u5316\u5176\u4ed6\u9023\u63a5\u7684\u88dd\u7f6e\u4ee5\u6d88\u9664\u6b98\u7559\u7684\u611f\u67d3\u3002<\/p>\n<h3 id=\"essential-safety-tips\">\u57fa\u672c\u5b89\u5168\u63d0\u793a<\/h3>\n<ul>\n<li>\u4e0b\u8f09\u60e1\u610f\u8edf\u9ad4\u6e05\u9664\u5de5\u5177\u6642\uff0c\u78ba\u4fdd\u5b83\u5011\u662f\u5408\u6cd5\u7684\uff1b\u6709\u4e9b\u662f\u771f\u5be6\u60e1\u610f\u8edf\u9ad4\u7684\u507d\u88dd\u3002<\/li>\n<li>\u900f\u904e Tor \u7db2\u8def\u9020\u8a2a\u7db2\u7ad9\u6642\u59cb\u7d42\u4f7f\u7528 VPN\uff1b\u5b83\u589e\u5f37\u4e86\u96b1\u79c1\u4e26\u964d\u4f4e\u4e86\u66b4\u9732\u65bc\u60e1\u610f\u7db2\u7ad9\u7684\u98a8\u96aa\u3002<\/li>\n<li>\u5728\u55ae\u7368\u7684\u88dd\u7f6e\u6216\u96f2\u7aef\u4fdd\u7559\u7cfb\u7d71\u5099\u4efd\uff0c\u4ee5\u4fbf\u5728\u9700\u8981\u91cd\u65b0\u683c\u5f0f\u5316\u6642\u8f15\u9b06\u5fa9\u539f\u3002<\/li>\n<\/ul>\n<h2>\u5e38\u898b\u554f\u984c<\/h2>\n<h3><strong>1.\u54ea\u4e9b\u8de1\u8c61\u986f\u793a\u6211\u7684\u88dd\u7f6e\u53ef\u80fd\u611f\u67d3\u4e86\u60e1\u610f\u8edf\u9ad4\uff1f<\/strong><\/h3>\n<p>\u5e38\u898b\u6307\u6a19\u5305\u62ec\u983b\u7e41\u5f48\u51fa\u5ee3\u544a\u3001\u6027\u80fd\u7de9\u6162\u3001\u610f\u5916\u7684\u8edf\u9ad4\u5b89\u88dd\u4ee5\u53ca\u7570\u5e38\u7684\u8a2d\u5099\u884c\u70ba\uff0c\u4f8b\u5982\u904e\u71b1\u6216\u96a8\u6a5f\u5d29\u6f70\u3002<\/p>\n<h3><strong>2.\u6211\u61c9\u8a72\u591a\u4e45\u6383\u63cf\u4e00\u6b21\u6211\u7684\u88dd\u7f6e\u4ee5\u5c0b\u627e\u60e1\u610f\u8edf\u9ad4\uff1f<\/strong><\/h3>\n<p>\u5efa\u8b70\u6bcf\u5468\u81f3\u5c11\u57f7\u884c\u4e00\u6b21\u5b8c\u6574\u6383\u63cf\uff0c\u7576\u60a8\u61f7\u7591\u6709\u4efb\u4f55\u7570\u5e38\u6d3b\u52d5\u6216\u4f7f\u7528\u5916\u90e8\u8a2d\u5099\u5f8c\uff0c\u9032\u884c\u984d\u5916\u7684\u5feb\u901f\u6383\u63cf\u3002<\/p>\n<h3><strong>3.\u514d\u8cbb\u9632\u6bd2\u5de5\u5177\u80fd\u6709\u6548\u62b5\u79a6\u60e1\u610f\u8edf\u9ad4\u55ce\uff1f<\/strong><\/h3>\n<p>\u8a31\u591a\u514d\u8cbb\u7684\u9632\u6bd2\u7a0b\u5f0f\u63d0\u4f9b\u57fa\u672c\u4fdd\u8b77\uff0c\u4f46\u70ba\u4e86\u5168\u9762\u9632\u79a6\u9ad8\u7d1a\u5a01\u8105\uff0c\u8acb\u8003\u616e\u6295\u8cc7\u4fe1\u8b7d\u826f\u597d\u7684\u4ed8\u8cbb\u9632\u6bd2\u89e3\u6c7a\u65b9\u6848\u3002<\/p>\n<p><a class=\"xiaomi\" href=\"https:\/\/allthings.how\/how-to-fix-your-device-if-it-keeps-getting-malware\/\" rel=\"noopener noreferrer nofollow\" target=\"_blank\">\u4f86\u6e90\u548c\u5716\u7247<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u5373\u4f7f\u662f\u4e7e\u6de8\u7684\u8a2d\u5099\uff0c\u9047\u5230\u6301\u7e8c\u7684\u60e1\u610f\u8edf\u9ad4\u554f\u984c\u4e5f\u6703\u4ee4\u4eba\u975e\u5e38\u6cae\u55aa\u3002\u9019\u7a2e\u53cd\u8986\u51fa\u73fe\u7684\u554f\u984c\u901a\u5e38\u8868\u793a\u5b58\u5728\u91cd\u5927\u7684\u5b89\u5168\u6f0f\u6d1e\uff0c\u5fc5\u9808\u7acb\u5373\u89e3\u6c7a\u4ee5\u4fdd\u8b77\u60a8\u7684\u8cc7\u6599\u4e26\u78ba\u4fdd\u60a8\u7684\u8a2d\u5099\u5b89\u5168\u3002\u5728\u7576\u4eca\u7684\u6578\u4f4d\u74b0\u5883\u4e2d\uff0c\u4e86\u89e3\u5982\u4f55\u8b58\u5225\u3001\u6d88\u9664\u548c\u9810\u9632\u60e1\u610f\u8edf\u9ad4\u5a01\u8105\u81f3\u95dc\u91cd\u8981\u3002 \u6aa2\u6e2c\u8a2d\u5099\u4e0a\u7684\u5371\u96aa\u5f8c\u9580 \u6301\u7e8c\u7684\u60e1\u610f\u8edf\u9ad4\u611f\u67d3\u53ef\u80fd\u8868\u793a\u60a8\u7684\u88dd\u7f6e\u4e0a\u5b58\u5728\u5f8c\u9580\u3002\u5f8c\u9580\u5141\u8a31\u672a\u7d93\u6388\u6b0a\u7684\u4f7f\u7528\u8005\u5728\u4e0d\u88ab\u767c\u73fe\u7684\u60c5\u6cc1\u4e0b\u5b58\u53d6\u548c\u63a7\u5236\u60a8\u7684\u8a2d\u5099\uff0c\u5373\u4f7f\u60a8\u4f3c\u4e4e\u5df2\u7d93\u89e3\u6c7a\u4e86\u5b89\u5168\u554f\u984c\uff0c\u4ed6\u5011\u4ecd\u53ef\u4ee5\u90e8\u7f72\u60e1\u610f\u8edf\u9ad4\u6216\u57f7\u884c\u6709\u5bb3\u64cd\u4f5c\u3002\u503c\u5f97\u6ce8\u610f\u7684\u5f8c\u9580\u985e\u578b\u5305\u62ec\u9060\u7aef\u5b58\u53d6\u6728\u99ac (RAT) \u548c\u6728\u99ac\u672c\u8eab\u3002\u5f8c\u9580\u7684\u8de1\u8c61\u53ef\u4ee5\u8868\u73fe\u70ba\u8a2d\u5099\u904e\u71b1\u3001\u5947\u602a\u7684\u5f48\u51fa\u8996\u7a97\u548c\u61c9\u7528\u7a0b\u5f0f\u983b\u7e41\u5d29\u6f70\u3002\u5982\u679c\u60a8\u61f7\u7591\u6709\u5f8c\u9580\uff0c\u8acb\u8003\u616e\u4ee5\u4e0b\u6b65\u9a5f\u4f86\u8b58\u5225\u4e26\u522a\u9664\u5b83\uff1a \u5fb9\u5e95\u6383\u63cf\uff1a\u4f7f\u7528\u4fe1\u8b7d\u826f\u597d\u7684\u9632\u6bd2\u8edf\u9ad4\uff0c\u4f8b\u5982\u5361\u5df4\u65af\u57fa\u6216Malwarebytes\u3002\u5c0d\u65bc Windows \u4f7f\u7528\u8005\u4f86\u8aaa\uff0cWindows Defender \u53ef\u4ee5\u4f5c\u70ba\u5805\u5be6\u7684\u7b2c\u4e00\u9053\u9632\u7dda\u3002 \u4f7f\u7528\u5c08\u9580\u7684 Rootkit \u6383\u63cf\u7a0b\u5f0f\uff1a\u9069\u7528\u65bc Windows \u7684Malwarebytes Anti-Rootkit\u6216\u9069\u7528\u65bc Linux \u7684Chkrootkit\u7b49\u5de5\u5177\u53ef\u4ee5\u6709\u6548\u5730\u5075\u6e2c rootkit\u3002 \u76e3\u63a7\u555f\u52d5\u7a0b\u5e8f\u548c\u767b\u9304\u9805\u76ee\uff1a\u60e1\u610f\u8edf\u9ad4\u7d93\u5e38\u96b1\u85cf\u5728\u555f\u52d5\u9805\u4e2d\u3002\u4f7f\u7528 Windows \u7684 Autoruns \u7b49\u5be6\u7528\u7a0b\u5f0f\u6aa2\u67e5\u4e26\u522a\u9664\u53ef\u7591\u689d\u76ee\u3002 \u67e5\u770b\u7cfb\u7d71\u65e5\u8a8c\uff1a\u5b9a\u671f\u6aa2\u67e5\u7cfb\u7d71\u65e5\u8a8c\u4e2d\u662f\u5426\u6709\u4efb\u4f55\u7570\u5e38\u6d3b\u52d5\uff0c\u5305\u62ec\u672a\u77e5\u7684\u767b\u5165\u5617\u8a66\u3002 Windows \u4f7f\u7528\u8005\u53ef\u4ee5\u4f7f\u7528\u4e8b\u4ef6\u6aa2\u8996\u5668\u4f86\u4ed4\u7d30\u6aa2\u67e5\u9019\u4e9b\u65e5\u8a8c\u3002 \u6301\u7e8c\u6383\u63cf\u548c\u76e3\u63a7\u60a8\u7684\u88dd\u7f6e\u662f\u9632\u6b62\u5f8c\u9580\u5a01\u8105\u7684\u95dc\u9375\u3002\u7136\u800c\uff0c\u70ba\u4e86\u5fb9\u5e95\u6e05\u9664\uff0c\u5982\u6709\u5fc5\u8981\uff0c\u8acb\u5c0b\u6c42\u5c08\u696d\u5354\u52a9\u3002 \u8b39\u614e\u4f7f\u7528\u5916\u90e8\u8a2d\u5099 \u5916\u90e8\u8a2d\u5099\u56e0\u5728\u5404\u7a2e\u5e73\u53f0\u4e0a\u50b3\u64ad\u60e1\u610f\u8edf\u9ad4\u800c\u81ed\u540d\u662d\u8457\u3002\u7576\u60a8\u5c07\u53d7\u611f\u67d3\u7684 USB \u96a8\u8eab\u789f\u6216 SSD \u9023\u63a5\u5230\u5176\u4ed6\u6a5f\u5668\u6642\uff0c\u53ef\u80fd\u6703\u51fa\u73fe\u50b3\u8f38\u60e1\u610f\u8edf\u9ad4\u7684\u98a8\u96aa\u3002\u56e0\u6b64\uff0c\u4f7f\u7528\u5171\u4eab\u8a2d\u5099\u6642\u4fdd\u6301\u8b66\u60d5\u81f3\u95dc\u91cd\u8981\u3002 \u8b66\u60d5\u53ef\u80fd\u5df2\u88ab USB \u99ed\u5ba2\u5de5\u5177\uff08\u4f8b\u5982 OMG Cable \u548c Rubber Ducky\uff09\u4ee5\u53ca\u6d41\u884c\u7684\u9375\u76e4\u8a18\u9304\u5668\u653b\u64ca\u7684\u88dd\u7f6e\u3002\u5728\u63d2\u5165\u4efb\u4f55\u5916\u90e8\u8a2d\u5099\u4e4b\u524d\uff0c\u52d9\u5fc5\u4ed4\u7d30\u6aa2\u67e5\u5176\u4f86\u6e90\u3002 \u505c\u7528\u81ea\u52d5\u64ad\u653e\u548c\u81ea\u52d5\u904b\u4f5c\uff1a\u9019\u4e9b\u529f\u80fd\u53ef\u4ee5\u5728\u9023\u63a5\u5916\u90e8\u88dd\u7f6e\u5f8c\u7acb\u5373\u81ea\u52d5\u555f\u52d5\u60e1\u610f\u8edf\u9ad4\u3002\u78ba\u4fdd\u6240\u6709\u9023\u63a5\u7684\u88dd\u7f6e\u4e0a\u5747\u5df2\u505c\u7528\u9019\u5169\u9805\u529f\u80fd\u3002 \u555f\u7528\u5beb\u5165\u4fdd\u8b77\uff1a\u6b64\u529f\u80fd\u9650\u5236\u5916\u90e8\u88dd\u7f6e\u5c0d\u60a8\u7684\u7cfb\u7d71\u9032\u884c\u66f4\u6539\uff0c\u5f9e\u800c\u963b\u6b62\u4efb\u4f55\u5d4c\u5165\u5f0f\u60e1\u610f\u8edf\u9ad4\u57f7\u884c\u3002 \u5c07\u5de5\u4f5c\u8a2d\u5099\u548c\u500b\u4eba\u8a2d\u5099\u5206\u958b\uff1a\u5c07\u5de5\u4f5c\u8a2d\u5099\u7684\u4f7f\u7528\u9650\u5236\u5728\u5c08\u696d\u74b0\u5883\u4e2d\uff0c\u4e26\u7dad\u8b77\u5c08\u7528\u7684\u500b\u4eba\u8a2d\u5099\uff0c\u4ee5\u6700\u5927\u9650\u5ea6\u5730\u964d\u4f4e\u4ea4\u53c9\u611f\u67d3\u7684\u98a8\u96aa\u3002 \u5229\u7528\u96f2\u7aef\u5132\u5b58\uff1a\u8003\u616e\u5c07\u6587\u4ef6\u79fb\u81f3\u96f2\u7aef\u5132\u5b58\u670d\u52d9\uff0c\u9019\u4e0d\u50c5\u53ef\u4ee5\u6700\u5927\u9650\u5ea6\u5730\u6e1b\u5c11\u5be6\u9ad4\u8a2d\u5099\u7684\u4f7f\u7528\uff0c\u800c\u4e14\u9084\u53ef\u4ee5\u8f15\u9b06\u5be6\u73fe\u6587\u4ef6\u5171\u4eab\u548c\u5b89\u5168\u6027\u3002\u8acb\u52d9\u5fc5\u8a18\u4f4f\u50b3\u8f38\u5f8c\u6383\u63cf\u4e0b\u8f09\u7684\u6a94\u6848\u3002 \u57f9\u990a\u5b89\u5168\u700f\u89bd\u7fd2\u6163 \u990a\u6210\u5b89\u5168\u7684\u700f\u89bd\u7fd2\u6163\u5c0d\u65bc\u907f\u514d\u8207\u7db2\u8def\u91e3\u9b5a\u8a50\u9a19\u548c\u6709\u5bb3\u7db2\u7ad9\u76f8\u95dc\u7684\u98a8\u96aa\u81f3\u95dc\u91cd\u8981\u3002\u9078\u64c7\u503c\u5f97\u4fe1\u8cf4\u7684\u700f\u89bd\u5668\uff0c\u4f8b\u5982 Mozilla Firefox \u6216 Google Chrome\uff0c\u5b83\u5011\u63d0\u4f9b\u5167\u5efa\u5b89\u5168\u529f\u80fd\u548c\u5b9a\u671f\u66f4\u65b0\u4ee5\u6e1b\u8f15\u6f0f\u6d1e\u3002 \u5c0d\u9023\u7d50\u8981\u6709\u8fa8\u5225\u529b\uff1b\u50c5\u5f9e\u4fe1\u8b7d\u826f\u597d\u7684\u4f86\u6e90\u4e0b\u8f09\u61c9\u7528\u7a0b\u5f0f\u3002\u900f\u904e\u6aa2\u67e5https:\/\/URL\u4f86\u9a57\u8b49\u7db2\u7ad9\u7684\u5b89\u5168\u6027\uff0d\u5b89\u5168\u7db2\u7ad9\u6703\u5c0d\u4f7f\u7528\u8005\u8cc7\u6599\u9032\u884c\u52a0\u5bc6\uff0c\u800c\u73fe\u4ee3\u700f\u89bd\u5668\u901a\u5e38\u6703\u5c0d\u4e0d\u5b89\u5168\u7684\u7db2\u7ad9\u767c\u51fa\u8b66\u544a\u3002 \u9650\u5236\u7ba1\u7406\u54e1\u6b0a\u9650\u4ee5\u589e\u5f37\u5b89\u5168\u6027 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[129,6],"class_list":["post-8472","post","type-post","status-publish","format-standard","hentry","category-how-to","tag-microsoft","tag-windows"],"acf":[],"_links":{"self":[{"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/posts\/8472","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/comments?post=8472"}],"version-history":[{"count":1,"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/posts\/8472\/revisions"}],"predecessor-version":[{"id":8473,"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/posts\/8472\/revisions\/8473"}],"wp:attachment":[{"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/media?parent=8472"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/categories?post=8472"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/howtogeek.blog\/zh\/wp-json\/wp\/v2\/tags?post=8472"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}