Solved

chkdsk dump

Posted on 2006-11-03
6
583 Views
Last Modified: 2013-12-04
i believe there has been some disk corruption while fixing for rootkits. on bootup chkdsk /f throws a lot of text. how can i save the demped text to put for further analysis?
0
Comment
Question by:drmanno
  • 3
  • 2
6 Comments
 
LVL 15

Expert Comment

by:mattisflones
ID: 17870483
You cant!
There is no way a pre boot program can save the file to the disk.
0
 
LVL 23

Accepted Solution

by:
phototropic earned 125 total points
ID: 17870494
Start - Control Panel - Administrative Tools - Event Viewer - Application
Look for the most recent example of "winlogon" under the "source" column. Double click it to see results...
0
 

Author Comment

by:drmanno
ID: 17870543
phototropic, right on the dot. the log had complete text that i barely read when it was flying off the screen. thanks a lot.
0
What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

 
LVL 15

Expert Comment

by:mattisflones
ID: 17870564
Ah.. that text..
:-)
0
 

Author Comment

by:drmanno
ID: 17870726
never mind, mattisflones, it evades all of us, sometimes. have a great one.
0
 
LVL 15

Expert Comment

by:mattisflones
ID: 17870927
:-) Right back at ya..
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

Many people tend to confuse the function of a virus with the one of adware, this misunderstanding of the basic of what each software is and how it operates causes users and organizations to take the wrong security measures that would protect them ag…
In a recent article here at Experts Exchange (http://www.experts-exchange.com/articles/18880/PaperPort-14-in-Windows-10-A-First-Look.html), I discussed my nine-month sandbox testing of the Windows 10 Technical Preview, specifically with respect to r…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now