Forum Home
Press F1
 
Thread ID: 39962 2003-11-23 04:02:00 dumprep O -k veterannz (960) Press F1
Post ID Timestamp Content User
194143 2003-11-23 04:02:00 Looking thru my start up I found this (dumprep O -k). When I had a look in google it said it was a worm, .IRC-Worm.Fagot
Does anyone know anything about it. What is it? Have I got it and how do you get rid of it if I have
veterannz (960)
194144 2003-11-23 04:46:00 This worm does so much damage that it usually needs the system reinstalled.
www.f-secure.com
Jim B (153)
194145 2003-11-23 04:48:00 www.f-secure.fi godfather (25)
194146 2003-11-23 04:49:00 snap! godfather (25)
194147 2003-11-23 04:50:00 I just did a virus scan but that didn't indicate anything veterannz (960)
194148 2003-11-23 05:28:00 Does your anti virus have the latest virus definitions installed? Fire-and-Ice (3910)
194149 2003-11-23 07:01:00 In the Start up the command line says %systemroot%\system32]dumprep o -k while the location says

hklm\sofftwar\MSoft\windows\currentversion\run.

when I go to the registry I read
KernelFault Check
type Reg_Expand_sz
data %system root%\systm32....... etc etc as above.

My Norton virus definitions are current and I used Trend housecall and after a scan with both nothing is detected.
I went looking in the registry as advised by Symantic for MsMon32=MsMon32exe but there is no sign of it.
On top of this my PC is going well.
When you refer to a reinstall do you mean install over the top or what...

my OS is XP home
veterannz (960)
194150 2003-11-23 07:17:00 Nothing on here applies to me that I can see. Nor have I had any suspicious files sent


www.f-secure.com
veterannz (960)
194151 2003-11-23 09:09:00 I have just checked this at Pacs-Portal (www.pacs-portal.co.uk) and it appears to be legitimate in your case. It says:

dumprep 0 -k or dumprep 0 -u

Used in connection with memory dumps - you can disable these by - right clicking on My Computer, selecting Properties and then the Advanced tab. Click on the Settings button in 'Startup and Recovery'. In the bottom pane - under 'Write debugging information' - click on the down arrow and then select 'None' - OK your way out.

As you can see it is not a necessary application so you can disable it.
Fire-and-Ice (3910)
194152 2003-11-23 09:19:00 Just realised what this is actually related to.

I thought you were concerned that you had the virus.

Dumprep is a generic file (a memory dump resulting from an error, to allow debugging later).

It has many many causes, of which one COULD BE a virus.

Not because the cause WAS a virus.

Ignore it, you are just boxing shadows really, the Google search gave you one possible explanation. You have taken that as the only explanation.
godfather (25)
1