{"id":478486,"date":"2023-08-09T09:33:31","date_gmt":"2023-08-09T09:33:31","guid":{"rendered":""},"modified":"2023-09-05T11:16:50","modified_gmt":"2023-09-05T11:16:50","slug":"poweliks","status":"publish","type":"wiki","link":"https:\/\/oneproxy.pro\/cn\/wiki\/poweliks\/","title":{"rendered":"\u9c8d\u97e6\u5229\u514b\u65af"},"content":{"rendered":"<p>Poweliks \u662f\u4e00\u79cd\u5c5e\u4e8e\u65e0\u6587\u4ef6\u6076\u610f\u8f6f\u4ef6\u7c7b\u522b\u7684\u6076\u610f\u8f6f\u4ef6\u3002\u4e0e\u611f\u67d3\u8ba1\u7b97\u673a\u4e0a\u6587\u4ef6\u7684\u4f20\u7edf\u6076\u610f\u8f6f\u4ef6\u4e0d\u540c\uff0cPoweliks \u4ec5\u9a7b\u7559\u5728 Windows \u6ce8\u518c\u8868\u4e2d\uff0c\u56e0\u6b64\u68c0\u6d4b\u548c\u5220\u9664\u5177\u6709\u6311\u6218\u6027\u3002\u5b83\u4e8e 2014 \u5e74\u9996\u6b21\u88ab\u53d1\u73b0\uff0c\u6b64\u540e\u9010\u6e10\u53d1\u5c55\u6210\u4e3a\u5bf9\u8ba1\u7b97\u673a\u7cfb\u7edf\u7684\u5de8\u5927\u5a01\u80c1\u3002<\/p>\n<h2>Poweliks \u7684\u8d77\u6e90\u5386\u53f2\u53ca\u5176\u9996\u6b21\u63d0\u53ca\u3002<\/h2>\n<p>Poweliks \u7684\u8d77\u6e90\u4ecd\u7136\u6709\u4e9b\u6a21\u7cca\uff0c\u4f46\u636e\u4fe1\u5b83\u662f\u7531\u4e00\u7fa4\u590d\u6742\u7684\u7f51\u7edc\u72af\u7f6a\u5206\u5b50\u521b\u5efa\u7684\uff0c\u65e8\u5728\u5229\u7528\u65e0\u6587\u4ef6\u6076\u610f\u8f6f\u4ef6\u7684\u9690\u5f62\u529f\u80fd\u3002 Poweliks \u7684\u9996\u6b21\u8bb0\u5f55\u53ef\u8ffd\u6eaf\u5230 Microsoft \u5b89\u5168\u4e13\u5bb6\u4e8e 2014 \u5e74\u53d1\u5e03\u7684\u4e00\u4efd\u7814\u7a76\u62a5\u544a\u3002\u4ece\u90a3\u65f6\u8d77\uff0c\u7531\u4e8e\u5176\u72ec\u7279\u7684\u7279\u5f81\u548c\u89c4\u907f\u6280\u672f\uff0c\u5b83\u4e00\u76f4\u53d7\u5230\u7f51\u7edc\u5b89\u5168\u4e13\u4e1a\u4eba\u58eb\u7684\u5174\u8da3\u3002<\/p>\n<h2>\u6709\u5173 Poweliks \u7684\u8be6\u7ec6\u4fe1\u606f\u3002\u6269\u5c55 Poweliks \u4e3b\u9898\u3002<\/h2>\n<p>Poweliks \u4e3b\u8981\u9488\u5bf9\u57fa\u4e8e Windows \u7684\u7cfb\u7edf\uff0c\u5e76\u901a\u8fc7\u5404\u79cd\u65b9\u5f0f\u8fdb\u884c\u5206\u53d1\uff0c\u4f8b\u5982\u6076\u610f\u7535\u5b50\u90ae\u4ef6\u9644\u4ef6\u3001\u53d7\u611f\u67d3\u7684\u7f51\u7ad9\u6216\u6f0f\u6d1e\u5229\u7528\u5de5\u5177\u5305\u3002\u4e00\u65e6\u611f\u67d3\u7cfb\u7edf\uff0c\u5b83\u5c31\u4f1a\u64cd\u7eb5 Windows \u6ce8\u518c\u8868\u6765\u521b\u5efa\u6301\u4e45\u6027\u5e76\u5728\u5185\u5b58\u4e2d\u6267\u884c\u5176\u6076\u610f\u8d1f\u8f7d\u3002\u901a\u8fc7\u907f\u514d\u4f7f\u7528\u6587\u4ef6\uff0cPoweliks \u907f\u5f00\u4e86\u4f20\u7edf\u7684\u9632\u75c5\u6bd2\u548c\u53cd\u6076\u610f\u8f6f\u4ef6\u8f6f\u4ef6\uff0c\u8fd9\u4f7f\u5f97\u68c0\u6d4b\u548c\u5220\u9664\u53d8\u5f97\u56f0\u96be\u3002<\/p>\n<p>\u8be5\u6076\u610f\u8f6f\u4ef6\u8fd0\u884c\u9690\u79d8\uff0c\u4f7f\u7528\u6237\u5f88\u96be\u6ce8\u610f\u5230\u4efb\u4f55\u53ef\u7591\u6d3b\u52a8\u3002 Poweliks \u53ef\u80fd\u4f1a\u4ece\u4e8b\u6076\u610f\u6d3b\u52a8\uff0c\u4f8b\u5982\u6570\u636e\u76d7\u7a83\u3001\u952e\u76d8\u8bb0\u5f55\u4ee5\u53ca\u5c06\u5176\u4ed6\u6709\u5bb3\u8d1f\u8f7d\u4e0b\u8f7d\u5230\u53d7\u611f\u67d3\u7684\u7cfb\u7edf\u4e0a\u3002<\/p>\n<h2>Poweliks \u7684\u5185\u90e8\u7ed3\u6784\u3002 Poweliks \u662f\u5982\u4f55\u8fd0\u4f5c\u7684\u3002<\/h2>\n<p>Poweliks \u65e8\u5728\u4fdd\u6301\u5185\u5b58\u9a7b\u7559\uff0c\u8fd9\u610f\u5473\u7740\u5b83\u4e0d\u4f1a\u5728\u53d7\u611f\u67d3\u7cfb\u7edf\u7684\u786c\u76d8\u9a71\u52a8\u5668\u4e0a\u7559\u4e0b\u4efb\u4f55\u6587\u4ef6\u3002\u76f8\u53cd\uff0c\u5b83\u4f1a\u5c06\u81ea\u8eab\u5d4c\u5165\u5230 Windows \u6ce8\u518c\u8868\u4e2d\uff0c\u7279\u522b\u662f\u201cShell\u201d\u6216\u201cUserinit\u201d\u952e\u4e2d\u3002\u8fd9\u4e9b\u5bc6\u94a5\u5bf9\u4e8e\u64cd\u4f5c\u7cfb\u7edf\u7684\u6b63\u5e38\u8fd0\u884c\u81f3\u5173\u91cd\u8981\uff0c\u6076\u610f\u8f6f\u4ef6\u5229\u7528\u8fd9\u4e00\u70b9\u6765\u4fdd\u6301\u6301\u4e45\u6027\u3002<\/p>\n<p>\u4e00\u65e6\u7cfb\u7edf\u88ab\u611f\u67d3\uff0cPoweliks\u5c31\u4f1a\u5c06\u5176\u6709\u6548\u8d1f\u8f7d\u76f4\u63a5\u6ce8\u5165\u5230\u5408\u6cd5\u8fdb\u7a0b\uff08\u4f8b\u5982explorer.exe\uff09\u7684\u5185\u5b58\u4e2d\uff0c\u4ee5\u907f\u514d\u68c0\u6d4b\u3002\u8fd9\u79cd\u6280\u672f\u5141\u8bb8\u6076\u610f\u8f6f\u4ef6\u5728\u786c\u76d8\u9a71\u52a8\u5668\u4e0a\u4e0d\u7559\u4e0b\u4efb\u4f55\u660e\u663e\u75d5\u8ff9\u7684\u60c5\u51b5\u4e0b\u8fd0\u884c\uff0c\u4ece\u800c\u4f7f\u5176\u96be\u4ee5\u8bc6\u522b\u548c\u5220\u9664\u3002<\/p>\n<h2>Poweliks \u7684\u4e3b\u8981\u7279\u5f81\u5206\u6790\u3002<\/h2>\n<p>Poweliks \u62e5\u6709\u51e0\u4e2a\u4f7f\u5176\u6210\u4e3a\u6f5c\u5728\u5a01\u80c1\u7684\u5173\u952e\u7279\u5f81\uff1a<\/p>\n<ol>\n<li>\n<p><strong>\u65e0\u6587\u4ef6\u6267\u884c<\/strong>\uff1a\u4f5c\u4e3a\u4e00\u79cd\u65e0\u6587\u4ef6\u6076\u610f\u8f6f\u4ef6\uff0cPoweliks \u4e0d\u4f9d\u8d56\u4e8e\u4f20\u7edf\u7684\u53ef\u6267\u884c\u6587\u4ef6\uff0c\u56e0\u6b64\u5f88\u96be\u4f7f\u7528\u4f20\u7edf\u7684\u57fa\u4e8e\u7b7e\u540d\u7684\u9632\u75c5\u6bd2\u89e3\u51b3\u65b9\u6848\u8fdb\u884c\u68c0\u6d4b\u3002<\/p>\n<\/li>\n<li>\n<p><strong>\u9690\u79d8\u7684\u575a\u6301<\/strong>\uff1a\u901a\u8fc7\u5c06\u81ea\u8eab\u5d4c\u5165\u5230\u5173\u952e\u7684 Windows \u6ce8\u518c\u8868\u9879\u4e2d\uff0cPoweliks \u786e\u4fdd\u5b83\u5728\u7cfb\u7edf\u91cd\u65b0\u542f\u52a8\u540e\u4ecd\u7136\u5b58\u5728\uff0c\u4ece\u800c\u4fdd\u8bc1\u8fde\u7eed\u8fd0\u884c\u548c\u6570\u636e\u88ab\u76d7\u7684\u673a\u4f1a\u3002<\/p>\n<\/li>\n<li>\n<p><strong>\u5185\u5b58\u6ce8\u5165<\/strong>\uff1a\u6076\u610f\u8f6f\u4ef6\u5c06\u5176\u6076\u610f\u4ee3\u7801\u6ce8\u5165\u5408\u6cd5\u8fdb\u7a0b\uff0c\u9690\u85cf\u5176\u5728\u7cfb\u7edf\u5185\u5b58\u4e2d\u7684\u5b58\u5728\u3002<\/p>\n<\/li>\n<li>\n<p><strong>\u89c4\u907f\u6280\u5de7<\/strong>\uff1aPoweliks \u914d\u5907\u4e86\u53cd\u5206\u6790\u548c\u89c4\u907f\u673a\u5236\uff0c\u8fd9\u4f7f\u5f97\u5b89\u5168\u7814\u7a76\u4eba\u5458\u7814\u7a76\u5176\u884c\u4e3a\u5e76\u5236\u5b9a\u5bf9\u7b56\u5177\u6709\u6311\u6218\u6027\u3002<\/p>\n<\/li>\n<\/ol>\n<h2>\u5199\u51fa Powelik \u5b58\u5728\u54ea\u4e9b\u7c7b\u578b\u3002\u4f7f\u7528\u8868\u683c\u548c\u5217\u8868\u6765\u5199\u4f5c\u3002<\/h2>\n<p>Poweliks \u6709\u591a\u79cd\u53d8\u4f53\u548c\u8fed\u4ee3\uff0c\u6bcf\u79cd\u90fd\u6709\u5176\u72ec\u7279\u7684\u7279\u6027\u548c\u529f\u80fd\u3002\u4e00\u4e9b\u8457\u540d\u7684 Powelik \u7c7b\u578b\u5305\u62ec\uff1a<\/p>\n<table>\n<thead>\n<tr>\n<th>Poweliks \u7c7b\u578b<\/th>\n<th>\u63cf\u8ff0<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>\u9c8d\u97e6\u5229\u514b\u65af<\/td>\n<td>\u539f\u59cb\u53d8\u79cd\u4e8e 2014 \u5e74\u53d1\u73b0\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u9c8d\u97e6\u5229\u514b\u65af<\/td>\n<td>\u5177\u6709\u589e\u5f3a\u89c4\u907f\u6280\u672f\u7684\u66f4\u65b0\u7248\u672c\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u9c8d\u97e6\u5229\u514b\u65af<\/td>\n<td>\u5177\u6709\u591a\u6001\u6027\u529f\u80fd\u7684\u66f4\u590d\u6742\u7684\u53d8\u4f53\uff0c\u4f7f\u5176\u66f4\u96be\u4ee5\u68c0\u6d4b\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u9c8d\u97e6\u5229\u514b\u65af<\/td>\n<td>\u4e13\u6ce8\u4e8e\u6570\u636e\u6cc4\u9732\u548c\u952e\u76d8\u8bb0\u5f55\u529f\u80fd\u3002<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>Poweliks\u7684\u4f7f\u7528\u65b9\u6cd5\u3001\u4f7f\u7528\u8fc7\u7a0b\u4e2d\u9047\u5230\u7684\u95ee\u9898\u53ca\u89e3\u51b3\u65b9\u6cd5\u3002<\/h2>\n<p>\u9700\u8981\u6f84\u6e05\u7684\u662f\uff0cPoweliks \u662f\u4e00\u79cd\u6076\u610f\u8f6f\u4ef6\uff0c\u5176\u4f7f\u7528\u4e25\u683c\u9650\u4e8e\u975e\u6cd5\u548c\u4e0d\u9053\u5fb7\u7684\u6d3b\u52a8\uff0c\u4f8b\u5982\u6570\u636e\u76d7\u7a83\u3001\u91d1\u878d\u6b3a\u8bc8\u548c\u7cfb\u7edf\u5229\u7528\u3002\u5408\u6cd5\u4e14\u5408\u4e4e\u9053\u5fb7\u7684\u8f6f\u4ef6\u4f7f\u7528\u7edd\u4e0d\u5e94\u6d89\u53ca Poweliks \u6216\u4efb\u4f55\u5176\u4ed6\u6076\u610f\u8f6f\u4ef6\u3002<\/p>\n<p>\u5bf9\u4e8e\u9762\u4e34 Poweliks \u5a01\u80c1\u7684\u7528\u6237\u548c\u7ec4\u7ec7\u6765\u8bf4\uff0c\u91c7\u7528\u4e3b\u52a8\u5b89\u5168\u63aa\u65bd\u81f3\u5173\u91cd\u8981\u3002\u9632\u8303 Poweliks \u548c\u7c7b\u4f3c\u5a01\u80c1\u7684\u4e00\u4e9b\u6700\u4f73\u5b9e\u8df5\u5305\u62ec\uff1a<\/p>\n<ol>\n<li>\n<p><strong>\u5b9a\u671f\u66f4\u65b0<\/strong>\uff1a\u4fdd\u6301\u64cd\u4f5c\u7cfb\u7edf\u548c\u8f6f\u4ef6\u6700\u65b0\u6709\u52a9\u4e8e\u4fee\u8865\u6076\u610f\u8f6f\u4ef6\u53ef\u4ee5\u5229\u7528\u7684\u5df2\u77e5\u6f0f\u6d1e\u3002<\/p>\n<\/li>\n<li>\n<p><strong>\u9632\u75c5\u6bd2\u548c\u53cd\u6076\u610f\u8f6f\u4ef6<\/strong>\uff1a\u90e8\u7f72\u5305\u62ec\u57fa\u4e8e\u884c\u4e3a\u7684\u68c0\u6d4b\u7684\u53ef\u9760\u5b89\u5168\u89e3\u51b3\u65b9\u6848\u53ef\u4ee5\u5e2e\u52a9\u8bc6\u522b\u548c\u7f13\u89e3 Poweliks \u7b49\u65e0\u6587\u4ef6\u6076\u610f\u8f6f\u4ef6\u3002<\/p>\n<\/li>\n<li>\n<p><strong>\u5458\u5de5\u6559\u80b2<\/strong>\uff1a\u5bf9\u5458\u5de5\u8fdb\u884c\u6709\u5173\u7f51\u7edc\u9493\u9c7c\u6280\u672f\u548c\u5b89\u5168\u6d4f\u89c8\u5b9e\u8df5\u7684\u6559\u80b2\u53ef\u4ee5\u9632\u6b62\u6700\u521d\u7684\u611f\u67d3\u5a92\u4ecb\u3002<\/p>\n<\/li>\n<li>\n<p><strong>\u7f51\u7edc\u5206\u6bb5<\/strong>\uff1a\u5b9e\u65bd\u7f51\u7edc\u5206\u6bb5\u53ef\u4ee5\u5e2e\u52a9\u904f\u5236\u6076\u610f\u8f6f\u4ef6\u611f\u67d3\u5e76\u9650\u5236\u7f51\u7edc\u5185\u7684\u6a2a\u5411\u79fb\u52a8\u3002<\/p>\n<\/li>\n<\/ol>\n<h2>\u4ee5\u8868\u683c\u548c\u5217\u8868\u7684\u5f62\u5f0f\u5217\u51fa\u4e3b\u8981\u7279\u5f81\u4ee5\u53ca\u4e0e\u7c7b\u4f3c\u672f\u8bed\u7684\u5176\u4ed6\u6bd4\u8f83\u3002<\/h2>\n<p>\u4ee5\u4e0b\u662f Poweliks \u4e0e\u4f20\u7edf\u7684\u57fa\u4e8e\u6587\u4ef6\u7684\u6076\u610f\u8f6f\u4ef6\u4e4b\u95f4\u7684\u6bd4\u8f83\uff1a<\/p>\n<table>\n<thead>\n<tr>\n<th>\u7279\u5f81<\/th>\n<th>Poweliks\uff08\u65e0\u6587\u4ef6\u6076\u610f\u8f6f\u4ef6\uff09<\/th>\n<th>\u4f20\u7edf\u7684\u57fa\u4e8e\u6587\u4ef6\u7684\u6076\u610f\u8f6f\u4ef6<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>\u575a\u6301<\/td>\n<td>\u57fa\u4e8e\u6ce8\u518c\u8868\u3001\u9a7b\u7559\u5728\u5185\u5b58\u4e2d<\/td>\n<td>\u57fa\u4e8e\u6587\u4ef6\uff0c\u5728\u78c1\u76d8\u4e0a\u53ef\u6267\u884c<\/td>\n<\/tr>\n<tr>\n<td>\u68c0\u6d4b<\/td>\n<td>\u89c4\u907f\u4f20\u7edf\u7684\u57fa\u4e8e\u7b7e\u540d\u7684\u53cd\u75c5\u6bd2\u8f6f\u4ef6<\/td>\n<td>\u53ef\u901a\u8fc7\u57fa\u4e8e\u7b7e\u540d\u7684 AV \u8fdb\u884c\u68c0\u6d4b<\/td>\n<\/tr>\n<tr>\n<td>\u79fb\u52a8<\/td>\n<td>\u7531\u4e8e\u7f3a\u4e4f\u6587\u4ef6\u800c\u5177\u6709\u6311\u6218\u6027<\/td>\n<td>\u57fa\u4e8e\u6587\u4ef6\u7684\u8ddf\u8e2a\u66f4\u5bb9\u6613<\/td>\n<\/tr>\n<tr>\n<td>\u5206\u914d<\/td>\n<td>\u7535\u5b50\u90ae\u4ef6\u9644\u4ef6\u3001\u53d7\u611f\u67d3\u7684\u7f51\u7ad9<\/td>\n<td>\u4e0b\u8f7d\u3001\u53d7\u611f\u67d3\u7684\u5a92\u4f53\u7b49\u3002<\/td>\n<\/tr>\n<tr>\n<td>\u611f\u67d3\u5f71\u54cd<\/td>\n<td>\u5185\u5b58\u6ce8\u5165\u3001\u9690\u79d8\u64cd\u4f5c<\/td>\n<td>\u6587\u4ef6\u611f\u67d3\u3001\u53ef\u89c1\u6587\u4ef6<\/td>\n<\/tr>\n<tr>\n<td>\u5206\u6790\u590d\u6742\u6027<\/td>\n<td>\u7531\u4e8e\u57fa\u4e8e\u8bb0\u5fc6\u7684\u6d3b\u52a8\u800c\u56f0\u96be<\/td>\n<td>\u6587\u4ef6\u6837\u672c\u66f4\u5bb9\u6613<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>\u4e0e Poweliks \u76f8\u5173\u7684\u672a\u6765\u524d\u666f\u548c\u6280\u672f\u3002<\/h2>\n<p>\u5305\u62ec Poweliks \u5728\u5185\u7684\u6076\u610f\u8f6f\u4ef6\u7684\u672a\u6765\u9884\u8ba1\u5c06\u5728\u89c4\u907f\u6280\u672f\u548c\u4eba\u5de5\u667a\u80fd\u9a71\u52a8\u653b\u51fb\u7684\u4f7f\u7528\u65b9\u9762\u66f4\u52a0\u590d\u6742\u3002\u6076\u610f\u8f6f\u4ef6\u521b\u5efa\u8005\u53ef\u80fd\u4f1a\u91c7\u7528\u5148\u8fdb\u7684\u65b9\u6cd5\u6765\u907f\u514d\u68c0\u6d4b\u5e76\u66f4\u6709\u6548\u5730\u611f\u67d3\u76ee\u6807\u3002\u4e13\u6ce8\u4e8e\u57fa\u4e8e\u884c\u4e3a\u7684\u68c0\u6d4b\u548c\u5b9e\u65f6\u5a01\u80c1\u60c5\u62a5\u7684\u5b89\u5168\u89e3\u51b3\u65b9\u6848\u7684\u5f00\u53d1\u5bf9\u4e8e\u5e94\u5bf9\u8fd9\u4e9b\u4e0d\u65ad\u53d8\u5316\u7684\u5a01\u80c1\u81f3\u5173\u91cd\u8981\u3002<\/p>\n<h2>\u5982\u4f55\u4f7f\u7528\u4ee3\u7406\u670d\u52a1\u5668\u6216\u5982\u4f55\u5c06\u4ee3\u7406\u670d\u52a1\u5668\u4e0e Poweliks \u5173\u8054\u3002<\/h2>\n<p>\u4ee3\u7406\u670d\u52a1\u5668\u53ef\u80fd\u4f1a\u4e0e Poweliks \u4e00\u8d77\u88ab\u6ee5\u7528\uff0c\u4ee5\u9690\u85cf\u6076\u610f\u8f6f\u4ef6\u4e0e\u547d\u4ee4\u548c\u63a7\u5236 (C&amp;C) \u670d\u52a1\u5668\u7684\u901a\u4fe1\u3002\u901a\u8fc7\u901a\u8fc7\u4ee3\u7406\u670d\u52a1\u5668\u8def\u7531\u6d41\u91cf\uff0c\u7f51\u7edc\u72af\u7f6a\u5206\u5b50\u53ef\u4ee5\u6df7\u6dc6\u901a\u4fe1\u6765\u6e90\uff0c\u5e76\u4f7f\u8ffd\u8e2a\u53d7\u611f\u67d3\u7cfb\u7edf\u53d8\u5f97\u66f4\u52a0\u56f0\u96be\u3002\u7136\u800c\uff0c\u9700\u8981\u5f3a\u8c03\u7684\u662f\uff0c\u5408\u6cd5\u7684\u4ee3\u7406\u670d\u52a1\u5668\u63d0\u4f9b\u5546\uff08\u5982 OneProxy\uff09\u9075\u5b88\u4e25\u683c\u7684\u653f\u7b56\uff0c\u53cd\u5bf9\u4e3a\u975e\u6cd5\u6d3b\u52a8\u63d0\u4f9b\u4fbf\u5229\uff0c\u5e76\u786e\u4fdd\u8d1f\u8d23\u4efb\u5730\u4f7f\u7528\u5176\u670d\u52a1\u3002<\/p>\n<h2>\u76f8\u5173\u94fe\u63a5<\/h2>\n<p>\u6709\u5173 Poweliks \u548c\u7f51\u7edc\u5b89\u5168\u6700\u4f73\u5b9e\u8df5\u7684\u66f4\u591a\u4fe1\u606f\uff0c\u8bf7\u53c2\u9605\u4ee5\u4e0b\u8d44\u6e90\uff1a<\/p>\n<ul>\n<li><a href=\"https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Trojan%3AWin32%2FPoweliks\" target=\"_new\" rel=\"noopener nofollow\">\u5fae\u8f6f\u5b89\u5168\u60c5\u62a5\u62a5\u544a<\/a> \u7531\u5fae\u8f6f\u5a01\u80c1\u60c5\u62a5\u4e2d\u5fc3\u63d0\u4f9b<\/li>\n<li><a href=\"https:\/\/us-cert.cisa.gov\/ncas\/alerts\/TA17-117A\" target=\"_new\" rel=\"noopener nofollow\">\u7f8e\u56fd\u8ba1\u7b97\u673a\u7d27\u6025\u54cd\u5e94\u5c0f\u7ec4 (US-CERT) \u8b66\u62a5<\/a> \u5173\u4e8e Hidden Cobra \u2013 \u671d\u9c9c\u8fdc\u7a0b\u8bbf\u95ee\u5de5\u5177\uff1aFALLCHILL<\/li>\n<li><a href=\"https:\/\/www.sans.org\/security-awareness-training\/resources\/file\/poweliks-fileless-malware\" target=\"_new\" rel=\"noopener nofollow\">SANS\u7814\u7a76\u6240<\/a> Poweliks \u65e0\u6587\u4ef6\u6076\u610f\u8f6f\u4ef6\u8d44\u6e90<\/li>\n<\/ul>","protected":false},"featured_media":478487,"menu_order":0,"template":"","meta":{"_acf_changed":false,"content-type":"","inline_featured_image":false,"footnotes":""},"class_list":["post-478486","wiki","type-wiki","status-publish","has-post-thumbnail","hentry"],"acf":{"faq_title":"Frequently Asked Questions about <mark>Poweliks: A Comprehensive Overview<\/mark>","faq_items":[{"question":"What is Poweliks?","answer":"<p>Poweliks is a type of fileless malware that resides in the Windows registry, making it difficult to detect and remove. Unlike traditional malware, Poweliks does not rely on files and instead operates solely in memory, making it stealthy and evasive.<\/p>"},{"question":"How did Poweliks originate?","answer":"<p>The exact origins of Poweliks are unclear, but it was first discovered in 2014 by security experts at Microsoft. It is believed to have been created by sophisticated cybercriminals aiming to exploit the stealth capabilities of fileless malware.<\/p>"},{"question":"How does Poweliks work?","answer":"<p>Poweliks embeds itself into critical Windows registry keys, such as \"Shell\" or \"Userinit,\" ensuring persistence across system reboots. It then injects its malicious code into legitimate processes, hiding its presence in the system's memory. This fileless execution technique evades traditional antivirus and anti-malware solutions.<\/p>"},{"question":"What are the key features of Poweliks?","answer":"<p>The key features of Poweliks include fileless execution, stealthy persistence through the registry, memory injection, and advanced evasion techniques. These characteristics make it a potent threat and difficult to detect or remove.<\/p>"},{"question":"What types of Poweliks exist?","answer":"<p>There are several variants of Poweliks, each with unique capabilities. Some notable types include Poweliks.A (the original variant), Poweliks.B (with enhanced evasion techniques), Poweliks.C (with polymorphic capabilities), and Poweliks.D (focused on data exfiltration and keylogging).<\/p>"},{"question":"Can Poweliks be detected and removed?","answer":"<p>Poweliks is notoriously difficult to detect and remove due to its fileless nature. Traditional signature-based antivirus solutions may struggle to identify it. However, employing behavior-based detection and regular security updates can help mitigate the risk.<\/p>"},{"question":"How is Poweliks distributed?","answer":"<p>Poweliks is typically distributed through malicious email attachments, infected websites, or exploit kits. Users should exercise caution when interacting with suspicious emails or websites to avoid infection.<\/p>"},{"question":"What are the potential consequences of Poweliks infection?","answer":"<p>Once infected, Poweliks can engage in various malicious activities, including data theft, keylogging, and downloading additional harmful payloads onto the system.<\/p>"},{"question":"How can I protect my computer from Poweliks?","answer":"<p>To protect your computer from Poweliks and similar threats, follow these best practices:<\/p><ol><li>Keep your operating system and software up-to-date to patch known vulnerabilities.<\/li><li>Use reliable antivirus and anti-malware software with behavior-based detection capabilities.<\/li><li>Educate yourself and your employees about phishing techniques and safe browsing practices.<\/li><li>Implement network segmentation to contain infections and limit their spread.<\/li><\/ol>"},{"question":"Can proxy servers be linked to Poweliks?","answer":"<p>Proxy servers can potentially be misused by cybercriminals to conceal Poweliks' communication with command-and-control servers. However, legitimate proxy server providers, like OneProxy, have strict policies against supporting illegal activities and promote responsible use of their services.<\/p>"}]},"_links":{"self":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/wiki\/478486","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/wiki"}],"about":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/types\/wiki"}],"version-history":[{"count":0,"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/wiki\/478486\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/media\/478487"}],"wp:attachment":[{"href":"https:\/\/oneproxy.pro\/cn\/wp-json\/wp\/v2\/media?parent=478486"}],"curies":[{"name":"\u53ef\u6e7f\u6027\u7c89\u5242","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}