Are Your Windows Device Drivers Wacked Or Hacked?

ZOverLord

Junior Member
Jul 15, 2005
14
0
0
Suggestion.

Besides running scans it is also a good thing to run "sigverif". This will create a list of ALL drivers on your system, signed and unsigned. The output is located in your C:\Windows\sigverif.txt file.

It surprised me most people do not do this. Many trojans mask themselves as drivers on your system, and most if not all are never signed.

Be careful however, some unsigned drivers are valid, especially video drivers.

To make it easier to run and check your drivers, so you can compare from to time if you think you may be infected, here are some instructions to do this check.

I would save the file somewhere, so when you run it again, you can compare any differences.

Click Start | Run and in the box, type sigverif and then click OK.

In the File Signature Verification dialog box, click the Advanced button.

On the Search tab, click Notify me of any system files that are not digitally signed.

Click OK, then click the start button.

The tool will display a list of any unsigned system drivers you have installed on your computer.

This is a good first step in troubleshooting driver-related problems.

You can remove the unsigned driver(s) that you think may be causing the problem (it is recommended that, rather than deleting them, you move them to a different location, so you can move them back if the removal causes problems).

Note that video drivers are often unsigned, but you usually shouldn't remove them since you may not be able to display anything on your computer if you do.

To view the output of all system drivers open the C:\Windows\sigverif.txt file.
 

XBoxLPU

Diamond Member
Aug 21, 2001
4,249
1
0
If I have installed a driver (signed or unsigned) on my PC, I know that it doesn't contain some "trojan" (omg).
 

ZOverLord

Junior Member
Jul 15, 2005
14
0
0
Originally posted by: XBoxLPU
If I have installed a driver (signed or unsigned) on my PC, I know that it doesn't contain some "trojan" (omg).

You used Two Magic Words here If I.

Sometimes when installing software from non-secure source(s) addtional items may be installed as well, such as Drivers which can/could be Trojans.

This is a method to maintain a list of what Drivers you have, so that if there are any questions about if they should be there, should they be signed, you can compare from time to time.

 

XBoxLPU

Diamond Member
Aug 21, 2001
4,249
1
0
Originally posted by: ZOverLord
Originally posted by: XBoxLPU
If I have installed a driver (signed or unsigned) on my PC, I know that it doesn't contain some "trojan" (omg).

You used Two Magic Words here If I.

Sometimes when installing software from non-secure source(s) addtional items may be installed as well, such as Drivers which can/could be Trojans.

This is a method to maintain a list of what Drivers you have, so that if there are any questions about if they should be there, should they be signed, you can compare from time to time.

Nvidia, Winfast and Logitech are the only drivers I need installed and them being signed or unsigned doesnt really matter (at least as "spyware" goes) . I am not some "average idiot" who thinks everything is spyware/trojan.

 

ZOverLord

Junior Member
Jul 15, 2005
14
0
0
Originally posted by: XBoxLPU
Originally posted by: ZOverLord
Originally posted by: XBoxLPU
If I have installed a driver (signed or unsigned) on my PC, I know that it doesn't contain some "trojan" (omg).

You used Two Magic Words here If I.

Sometimes when installing software from non-secure source(s) addtional items may be installed as well, such as Drivers which can/could be Trojans.

This is a method to maintain a list of what Drivers you have, so that if there are any questions about if they should be there, should they be signed, you can compare from time to time.

Nvidia, Winfast and Logitech are the only drivers I need installed and them being signed or unsigned doesnt really matter (at least as "spyware" goes) . I am not some "average idiot" who thinks everything is spyware/trojan.

Maybe you are missing my point.

If a file was infected, a non-driver download, it could/can also in the backround install a BOGUS driver.

I also am Not an Idiot and can assure you that site admins, can from time to time forget to scan a file prior to allowing it to be downloaded. Just this accident is enough to cause many people problems prior to being isolated.

So, if you feel that you are so smart that you are above this ever happening, then please at least let the others here who don't have your EGO attempt to have another method to help them protect their systems.

Thanks

 

ampsarus

Junior Member
Jun 22, 2005
7
0
0
Files found: 731 Signed files: 688 Unsigned files: 15 Files not scanned: 28

It's the 28 not scanned that scares me. lol