Isingeniso:
Amafayela asebenzisekayo ayingxenye ebalulekile yomhlaba wamakhompiyutha, njengoba avumela izinhlelo ezakhiwe abahleli bezinhlelo ukuthi zisebenze kukhompyutha. isistimu esebenzayo ezithile. Lawa mafayela aqukethe ikhodi echaza imiyalo nemisebenzi yohlelo, futhi abalulekile ekusebenzeni kwalo okulungile. Kulesi sihloko, sizohlola futhi ukuthi ayini amafayela asebenzisekayo nokuthi asebenzisana kanjani nawo uhlelo lokusebenza.
Ayini amafayela asebenzisekayo:
Amafayela asebenzisekayo yilawo aqukethe ikhodi kanambambili yohlelo oluthile. Lawa mafayela akhiqizwa kusukela enqubweni yokuhlanganisa, lapho ulimi lokuhlela olusetshenziswa unjiniyela luhunyushwa kukhodi yomshini eqondakala isistimu yokusebenza. Amafayela asebenzisekayo ngokuvamile anezandiso ezifana ne-.exe kumasistimu e-Windows noma asikho isandiso ezinhlelweni ze-Unix/Linux.
Indlela ifayela elisebenzisekayo elisebenza ngayo:
Ifayela elisebenzisekayo Ngokuyinhloko yakhiwe izigaba ezimbili: ingxenye yesihloko kanye nesigaba sekhodi. Isigaba sikanhlokweni siqukethe ulwazi oludingekayo lwesistimu yokusebenza, njengekheli lokuqala, usayizi wefayela, kanye nesakhiwo sokucubungula. Ngokolunye uhlangothi, isigaba sekhodi Iqukethe imiyalelo nedatha edingekayo ukuze uhlelo lusebenze ngendlela efanele. Le miyalo itolikwa isistimu yokusebenza futhi yenza izenzo ezihambisanayo.
Ukusebenzisana kwamafayela asebenzisekayo nohlelo lokusebenza:
Uma umsebenzisi efuna ukuqalisa uhlelo, isistimu yokusebenza ilayisha ifayela elisebenzisekayo ekhanda bese iqala ukuhumusha imiyalelo yalo. Le nqubo yenziwa ngokulandela isakhiwo esichazwe ngaphambilini, esivumela isistimu yokusebenza ukuthi yazi ukuthi uhlelo kufanele lwenziwe kanjani nokuthi luxhumana kanjani nehadiwe engaphansi. Njengoba uhlelo lukhula, isistimu yokusebenza inikezela ngezinsiza ezidingekayo, njengememori ne-CPU, ukuze isebenze kahle.
Sengiphetha, amafayela asebenzisekayo abalulekile ukuze uhlelo luqhubeke uhlelo lokusebenza. Ukukhiqizwa nokusebenza kwayo okulungile kubalulekile ukuze kuqinisekiswe ukuthuthukiswa nokusebenza okufanele kwezinhlelo zokusebenza. Ezigabeni ezilandelayo sizohlola ngokuningiliziwe izici ezihlukene zamafayela asebenzisekayo nemiqondo ehlobene.
1. Isingeniso Samafayela Asebenzisekayo
Amafayela asebenzisekayo ziwuhlobo lwefayela lekhompuyutha eliqukethe imiyalelo ethile yesistimu yokusebenza ezokwenziwa. Lawa mafayela abalulekile ekusebenzeni kwanoma yiluphi uhlelo noma isofthiwe, njengoba aqukethe ikhodi edingekayo ukuze imiyalelo ihunyushwe uhlelo. Amafayela asebenzisekayo angatholakala kokuthi amafomethi ahlukene, njenge-.exe kumasistimu e-Windows, .uhlelo lokusebenza kumasistimu e-Mac noma i-apk kumadivayisi we-Android.
Isici esiyinhloko samafayela asebenzisekayo ukuthi zingenziwa ngokuqondile isistimu yokusebenza, ngaphandle kwesidingo sohlelo lomlamuli oluzihumushayo. Lokhu kusho ukuthi umsebenzisi angavele achofoze kabili ifayela elisebenzisekayo futhi isistimu yokusebenza izoliqhuba ngokuzenzakalelayo. Kubalulekile ukuqaphela ukuthi amafayela asebenzisekayo angaqukatha kokubili ikhodi esebenzisekayo kanye nedatha edingekayo ekusebenzeni kohlelo.
Enye yezinzuzo zamafayela asebenzisekayo amandla abo okuphatheka, okungukuthi, angadluliswa futhi abulawe ezinhlelweni ezahlukene ukusebenza ngaphandle kokudinga ukulungiswa okukhulu. Lokhu kungenxa yokuthi amafayela asebenzisekayo abhalwe ngezilimi zokuhlela ezisezingeni eliphezulu, ezizimele ku-hardware kanye nesistimu yokusebenza. Nokho, kubalulekile ukuqaphela ukuthi ezinye izinhlelo zingase zibe nezidingo ezithile zesistimu, ngakho-ke zingase zingasebenzi kuwo wonke amasistimu okusebenza.
2. Izinhlobo Zamafayela Asebenzisekayo nezici zawo ezihlukile
Emhlabeni wekhompuyutha, the amafayela asebenzisekayo Lawa mafayela aqukethe imiyalelo ngolimi lokuhlela oluqondwa amakhompyutha futhi avumela izinhlelo ukuthi zisebenze kumasistimu wokusebenza athile. Kunezinhlobo ezahlukene zamafayela asebenzisekayo, ngalinye elinezici ezihlukile eziwahlukanisayo kwelinye.
Enye yezinhlobo ezivame kakhulu zamafayela asebenzisekayo yi .exe ifayela, okungokwakho uhlelo lokusebenza IWindows. Lawa mafayela aqukethe ikhodi esebenzisekayo yezinhlelo ezikufomethi kanambambili. Zisetshenziselwa ukufaka izinhlelo zokusebenza nesofthiwe kukhompuyutha ye-Windows futhi zibonakala ngesandiso sazo se-.exe. Lawa mafayela ahambisana ne-Windows kuphela futhi awakwazi ukusebenza kwezinye izinhlelo zokusebenza, njenge-MacOS noma i-Linux.
Olunye uhlobo lwefayela elisebenzisekayo elisetshenziswa kakhulu yi- archivo .dmg. Le fomethi ijwayelekile uhlelo lokusebenza lwe-macOS futhi isetshenziselwa ukusabalalisa izinhlelo zokusebenza kule ndawo. Amafayela .dmg ayizithombe zediski eziqukethe yonke idatha edingekayo ukuze kufakwe futhi kusebenze uhlelo lokusebenza Ayifani nge-MacOS futhi ayikwazi ukusebenza kumasistimu wokusebenza ahlukene.
Ngamafuphi, i amafayela asebenzisekayo Zibalulekile ekufakeni nasekuqhubeni izinhlelo kumasistimu okusebenza ahlukene. Izinhlobo ezihlukene zamafayela asebenzisekayo, njengamafayela we-.exe kanye ne-.dmg, anezici ezihlukile ezenza asebenzisane kuphela nezinhlelo zokusebenza ezithile. Kubalulekile ukuqonda izici zohlobo ngalunye lwefayela elisebenzisekayo ukuze uqinisekise ukufakwa ngempumelelo nokusebenza kwesofthiwe kusistimu yokusebenza efanele.
3. Ukubaluleka kokuvikeleka kokuthi Amafayela Asebenzisekayo
Kubalulekile ukuqinisekisa ubuqotho nokugcinwa kuyimfihlo kwamasistimu ekhompyutha. Amafayela asebenzisekayo izinhlelo noma izinhlelo zokusebenza eziqukethe imiyalelo ethile yokwenza imisebenzi eyahlukene ohlelweni lokusebenza.
Esinye sezici ezibaluleke kakhulu ukuphepha kumafayela asebenzisekayo ukuvimbela ukwenziwa kwe izinhlelo ezinonya noma ikhodi enonya. A programa malicioso Kungaba yinoma iyiphi isofthiwe eyenza izenzo ezingagunyaziwe noma eziyingozi ohlelweni, njengokweba ulwazi oluyimfihlo, ukuvimba ukufinyelela kumafayela, noma ukulimaza ihadiwe.
Ngaphandle kwalokho, qinisekisa ubuqiniso bamafayela asebenzisekayo Ibalulekile futhi. Lokhu kuhilela ukuqinisekisa ukuthi amafayela awashintshiwe noma awasetshenziswanga kusukela ekudalweni kwawo kwasekuqaleni noma ukusatshalaliswa kwawo. Ukuqinisekisa amafayela asebenzisekayo kusiza ekuvimbeleni ukusetshenziswa kwezinguqulo ezishintshiwe noma ezonakalisiwe zesofthiwe, ezingase ziqukathe izicabha ezingemuva noma ikhodi enonya engeziwe.
4. Indlela yokuhlaziya nokuhlola Amafayela Asebenzisekayo wohlelo olungayilungele ikhompuyutha
Ukuhlaziywa nokuqinisekiswa kwamafayela asebenzisekayo kuwumsebenzi obalulekile ukuthola nokuvimbela ukuba khona kwe-malware ohlelweni lwethu. Amafayela asebenzisekayo yilawo aqukethe imiyalelo ngolimi lomshini nokuthi, lapho esetshenziswa, enze izenzo ezithile kusistimu yokusebenza. Izigebengu ze-inthanethi zisebenzisa lawa mafayela ukwethula uhlelo olungayilungele ikhompuyutha kumasistimu futhi zenze izenzo ezinonya.
Ukuze uskene futhi uhlole amafayela asebenzisekayo we-malware, kubalulekile ukulandela uchungechunge lwezinyathelo futhi usebenzise amathuluzi athile. Okokuqala, kufanele siqinisekise ukuthi sinendawo ephephile nehlukanisiwe lapho senza ukuhlaziya. Inketho evamile ukusebenzisa umshini obonakalayo, osivumela ukuthi siqhube izinhlelo ezihlukanisiwe nesistimu yokusebenza eyinhloko.
Uma sesinendawo ephephile, singaqhubeka nokuhlaziya ifayela elisebenzisekayo. Esinye sezenzo zokuqala okufanele zenziwe ukuqinisekisa isiginesha yedijithali yefayela. Lokhu kusivumela ukuthi siqinisekise ukuthi ifayela lidalwe unjiniyela othembekile futhi alikakashintshwa. Uma ifayela lingenayo isiginesha yedijithali evumelekile, lokhu kuyinkomba yokuthi lingase libe ne-malware. Ukwengeza, kubalulekile ukuhlola usayizi nendawo yefayela, ukuze uqiniseke ukuthi liyahambisana nenjongo yalo. Esimeni sokusolisa, singasebenzisa i-antivirus kanye namathuluzi e-antimalware ukuze senze ukuskena okuphelele futhi sithole izinsongo ezingaba khona.
5. Izindlela Ezinhle Kakhulu Zokuqinisekisa Ubuqotho Bamafayela Asebenzisekayo
Enkathini yedijithali yanamuhla, amafayela asebenzisekayo Bamele umgogodla wanoma iyiphi isistimu yekhompyutha. Lawa mafayela anesibopho sokusebenzisa izinhlelo nokwenza imisebenzi. kukhompyutha. Nokho, i ubuqotho Amanye alawa mafayela angahle abe sengozini ngenxa yezinsongo eziningi ze-inthanethi, ezifana nohlelo olungayilungele ikhompuyutha, amagciwane, nokuhlaselwa kwe-hacker. Ukuqinisekisa ukuvikeleka nokusebenza okulungile kwamafayela asebenzisekayo, kubalulekile ukusebenzisa uchungechunge lwa imikhuba emihle kakhulu.
Okokuqala, kubalulekile ukwenza ukuhlolwa kobuqotho amafayela asebenzisekayo avamile. Lokhu kuhlanganisa ukusebenzisa amathuluzi okuthola uhlelo olungayilungele ikhompuyutha kanye nezinhlelo zokuqapha ukuphepha ezisiza ukuhlonza noma yiziphi izinguquko ezingagunyaziwe kumafayela. Ukwengeza, isizindalwazi se-virus nesofthiwe yezokuphepha kudingeka sigcinwe sisesikhathini samanje ukuze kuqinisekiswe ukuthi zonke izinsongo ezingaba khona ziyatholakala futhi kuliwe ngempumelelo. ngesikhathi sangempela.
Omunye umkhuba omuhle wokuqinisekisa ubuqotho bamafayela asebenzisekayo ngu khawulela amalungelo yokufinyelela. Lokhu kusho ukuthi abasebenzisi abagunyaziwe kuphela abanemvume yokusebenzisa noma ukushintsha lawa mafayela. Ukwengeza, kubalulekile ukwabela ngokuyikho izimvume zokufunda, ukubhala nokwenza, ukwenqaba ukufinyelela kubantu abangagunyaziwe. Lokhu kuzosiza ukuvimbela ukuhlaselwa kwe-hacker futhi kuqinisekise ukuthi amafayela asebenzisekayo ahlala eqinile futhi evikelekile kunoma yiziphi izinsongo ezingaba khona.
6. Izinqubo Ezinconyiwe Zokusabalalisa Nokusebenzisa Amafayela Asebenzisekayo
1. Qinisekisa ubuqiniso bamafayela asebenzisekayo: Ngaphambi kokusabalalisa noma ukusebenzisa noma yiliphi ifayela elisebenzisekayo, kubalulekile ukuthi uqinisekise ubuqiniso balo ukuze uqinisekise ukuphepha kwamasistimu akho. Ukwenza lokhu, kunconywa ukusebenzisa isiginesha yedijithali noma amathuluzi okuqinisekisa i-hash. Ukwengeza, kubalulekile ukulanda kuphela amafayela asebenzisekayo emithonjeni ethembekile futhi uqinisekise ukuthi awashintshiwe noma awaphazanyiswanga.
2. Sebenzisa izinyathelo zokuphepha ekusabalaliseni: Lapho usabalalisa amafayela asebenzisekayo, kubalulekile ukuthatha izinyathelo zokuvimbela ukufinyelela okungagunyaziwe noma ukukhishwa kwamafayela anonya. Kunconywa ukusebenzisa amaphrothokholi okubethela ivikela ukudlulisa okusebenzisekayo, kanye nokusebenzisa izindlela zokuqinisekisa noma amaphasiwedi ukuze ufinyelele amafayela. Kuyatuseka futhi ukusebenzisa izinkundla zokusabalalisa ezivikelekile, njengezinqolobane zesofthiwe ezithenjwayo, ezinikeza ukuvikeleka okwengeziwe kumafayela anonya.
3. Yenza ukuhlola okubanzi ngaphambi kokusebenzisa ifayela: Ngaphambi kokusebenzisa noma yiliphi ifayela elisebenzisekayo, kufanele lihlolwe kahle ukuze kuqinisekiswe ukusebenza kwalo okulungile futhi kuqinisekiswe ukuthi ngeke lidale umonakalo kumasistimu noma idatha ekhona. Lokhu kuhlanganisa ukulingisa izimo nezimo ezahlukahlukene ukuze kuhlonzwe izinkinga ezingaba khona noma ukungahambisani. Ngaphezu kwalokho, ukuhlolwa kokuvikeleka kufanele kwenziwe ukuze kutholwe ubungozi obungaba khona noma. Kuyatuseka ukubhala futhi ubuyekeze imiphumela yokuhlolwa ngaphambi kokuqhubeka nokusetshenziswa kwefayela elisebenzisekayo.
Khumbula ukulandela lezi ngokuphephile futhi iyathembeka. Ukwehluleka ukuthatha izinyathelo zokuphepha ezifanele lapho usebenzisana namafayela asebenzisekayo kungase kubeke engcupheni ubuqotho nokuvikeleka kwezinhlelo.
7. Amathuluzi awusizo okukhwabanisa nokuhlaziya Amafayela Asebenzisekayo
Amafayela Asebenzisekayo
Amathuluzi okukhohlisa nokuhlaziya amafayela asebenzisekayo
Ukukhohliswa nokuhlaziywa kwamafayela asebenzisekayo kuwumsebenzi obalulekile wonjiniyela, abacwaningi bezokuphepha, kanye nezingcweti emkhakheni wobunjiniyela obuhlehlayo. Ukuze wenze le misebenzi ngempumelelo, ukusetshenziswa kwamathuluzi akhethekile ahlukahlukene kuyadingeka. Kulesi sigaba, amanye amathuluzi awusizo kakhulu wokukhohlisa nokuhlaziya amafayela asebenzisekayo azokwethulwa.
I-IDA Pro: Iyindawo yokuthuthukisa esebenzisanayo enamandla edizayinelwe ngokuqondile ukuhlaziya ikhodi kanye nokulungisa iphutha lohlelo. Ngohlelo olubonakalayo lomsebenzisi nezici ezithuthukile, i-IDA Pro isetshenziswa kakhulu ngochwepheshe nabathuthukisi be-cybersecurity ukuhlaziya amafayela asebenzisekayo ezinkundleni ezihlukene Ikuvumela ukuthi wenze ubunjiniyela obuhlanekezelwe, ubone ngeso lengqondo ikhodi yokuhlanganisa, uhlonze imisebenzi nezakhiwo, nokunye okuningi .
I-OllyDbg: Le Windows isilungisi sephutha sekhodi izibeke njengenye amathuluzi adume kakhulu okuhlaziya okuguquguqukayo kwamafayela asebenzisekayo. I-OllyDbg ikuvumela ukuthi uhlaziye ukugeleza kokwenziwa kohlelo, ukulandele igxathu negxathu, uguqule indlela yokusebenza yohlelo lokusebenza ngesikhathi sokusebenza futhi wenze ubunjiniyela obuhlanekezelwe ezingeni lomhlanganisi. Isixhumi esibonakalayo esisebenziseka kalula, ukusekelwa kwama-plugin, nezici zokubhala kukwenza kube ukukhetha okuhle kulabo abasha ukuhlaziya amafayela asebenzisekayo.
Ghidra: Ithuthukiswe yi-National Security Agency (NSA) futhi yakhishelwa umphakathi ngo-2019, i-Ghidra isidume kakhulu emphakathini wokuhlaziya i-cybersecurity kanye ne-malware. Leli thuluzi elinamandla lobunjiniyela obuhlanekezelwe kanye nekhodi yokuqaqa liyinkundla futhi lingenziwa ngendlela oyifisayo kakhulu. Ikuvumela ukuthi uhlaziye amafayela asebenzisekayo, uhlonze imisebenzi, izakhiwo nedatha, futhi uhlukanise futhi uhlanganise kabusha ikhodi ezakhiweni ezahlukene. I-Ghidra futhi inezici zokuhlaziya uhlelo olungayilungele ikhompuyutha, njengokuthola amaphethini okuziphatha okusolisayo.
Lawa ngamathuluzi ambalwa kwabaningi atholakalayo okukhwabanisa nokuhlaziya amafayela asebenzisekayo. Ithuluzi ngalinye linamandla nobuthakathaka balo, ngakho-ke kubalulekile ukukhetha elifaneleka kakhulu emsebenzini ngamunye. Ngala mathuluzi onawo, ochwepheshe bezokuphepha nokuthuthukiswa kwesofthiwe bangakwazi ukwenza uphenyo olusebenza ngempumelelo, bathuthukise ikhwalithi yemikhiqizo yabo, futhi bavikele amasistimu ezinsongweni ezingaba khona.
Ngingu-Sebastián Vidal, unjiniyela wekhompyutha ozifelayo ngobuchwepheshe kanye ne-DIY. Ngaphezu kwalokho, ngingumdali we tecnobits.com, lapho ngabelana khona ngezifundo zokwenza ubuchwepheshe bufinyeleleke kakhudlwana futhi buqonde wonke umuntu.