
Kernel Fault Check On My Hijackthis Log
#1
Posted 03 April 2007 - 09:54 AM
Register to Remove
#2
Posted 03 April 2007 - 05:57 PM
kernel fault check: Not Malware
Used in connection with memory dumps - you can disable these by - right clicking on My Computer, selecting Properties and then the Advanced tab. Click on the Settings button in 'Startup and Recovery'. In the bottom pane - under 'Write debugging information' - click on the down arrow and then select 'None' - OK your way out.
You could also have HJT fix the entry. HJT log looks clean. Let me know if you have any other questions.
Hope that helps.
Dave
The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
#3
Posted 04 April 2007 - 12:55 AM
#4
Posted 04 April 2007 - 06:45 AM
Run HijackThis. Hit None of the above, Click Do a System Scan Only. Put a Check in the box on the left side on this:
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
Then close all windows except this one and press Fix checked.
The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
#5
Posted 04 April 2007 - 09:03 AM
#6
Posted 04 April 2007 - 09:31 AM

The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
#7
Posted 04 April 2007 - 09:49 AM
#8
Posted 04 April 2007 - 10:21 AM
http://www.cimweb.co...h@tkeysh@@k.htm
Have you or do you use a game trainer?
Trendmicro also has some information on it:
http://www.trendmicr...c...2EA&VSect=P
To check for a rootkit:
Download and Save blacklight to your desktop.
F-Secure Blacklight: https://europe.f-sec...light/try.shtml
Double-click blbeta.exe then accept the agreement.
click > scan then > next,
You'll see a list of all items found.
Don't choose for rename yet! I want to see the log first, because legit items can also be present there...
There must be also a log on your desktop with the name fsbl.xxxxxxx.log (the xxxxxxx stand for numbers)
Post the contents of the log in your next reply.
The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
#9
Posted 04 April 2007 - 10:48 AM
#10
Posted 04 April 2007 - 12:12 PM
- Download avz4en.zip here
- Unzip it to a folder on your desktop
- Double click on AVZ.exe
- Click on the webupdate icon
- Click on the start button.
- Wait for the update to finish
- You will get a message that says "Automatic update completed successfully. Update has been successfully downloaded and installed"
- Click OK
- Under the search parameter tab, change the heuristic analysis mode to "Maximum heuristics level" and tick the box next to "Extended analysis
- Make sure that the following options are selected
- Detect API hooks and rootkits
- Check SPI / LSP settings
- Search for keyloggers
- Search for TCP/UDP ports used by trojan horses
- Make sure the following options are not selected
- Block user-mode rootkits
- Block kernel-mode rootkits
- Automatically correct SPI/LSP errors
- Perform healing
- Under the file types tab select all files
- Under the search range tab, select the following options
- Check running processes
- Heuristic system check
- Make sure that all the Disks listed are selected
- Click start and wait for the scan to finish
- When the scan has finished click on the save
icon
- Leave the default name of avz_log and save it to your desktop
- This will put the file avz_log.txt on your desktop, please post the contents of that file
The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
Register to Remove
#11
Posted 05 April 2007 - 07:32 AM
#12
Posted 05 April 2007 - 08:05 AM

The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
#13
Posted 06 April 2007 - 07:20 AM
#14
Posted 06 April 2007 - 08:47 AM
The help you receive here is free, but if you would like to help me continue the fight against Malware then

Logs will be closed if you haven't replied within 5 days
Proud Graduate of TC/WTT Classroom
"To find perfect composure in the midst of change is to find ourselves in nirvana."
Suzuki Roshi
#15
Posted 06 April 2007 - 09:59 AM
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users