Drivers are system files that are employing in kernel mode to perform system code. Rootkits make use of a driver (.sys) file to demoralize the Windows kernel as well as hide their existence in the system. New rootkits have begin packing and/or encrypting their driver files to create them harder to identify.

The Packed Driver Detector application was intended to be a tiny tool that makes out packed driver files. On an uninfected system there must be no packed driver files. Make use of this tool to recognize every packed driver files on your system.

Name:  7.jpg
Views: 55
Size:  24.2 KB