Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Desktop blockiert mit weissem Bildschirm und Meldung "Internetverbindung ist nicht vorhanden" (https://www.trojaner-board.de/108901-desktop-blockiert-weissem-bildschirm-meldung-internetverbindung-vorhanden.html)

Zan 02.02.2012 23:10

hier die fix.log

========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\1SjOutZRnOxGgdc deleted successfully.
Registry value HKEY_USERS\Mahnaz_ON_C\Software\Microsoft\Windows\CurrentVersion\Run\\1SjOutZRnOxGgdc deleted successfully.
Registry value HKEY_USERS\LocalService_ON_C\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
C:\Windows\System32\mctadmin.exe moved successfully.
Registry value HKEY_USERS\Mahnaz_ON_C\Software\Microsoft\Windows\CurrentVersion\RunOnce\\JavaInstallRetry deleted successfully.
C:\Users\Mahnaz\AppData\LocalLow\Sun\Java\JRERunOnce.exe moved successfully.
Registry value HKEY_USERS\NetworkService_ON_C\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
File C:\Windows\System32\mctadmin.exe not found.
Registry value HKEY_USERS\Mahnaz_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDesktop deleted successfully.
Registry value HKEY_USERS\Mahnaz_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableTaskMgr deleted successfully.
Registry value HKEY_USERS\Mahnaz_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Users\Mahnaz\AppData\Roaming\e5su745fss.exe deleted successfully.
Registry value HKEY_USERS\Mahnaz_ON_C\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Users\Mahnaz\AppData\Roaming\e5su745fss.exe deleted successfully.

OTLPE by OldTimer - Version 3.1.48.0 log created on 02022012_170244

Zan 02.02.2012 23:14

ich versuch jetzt mal neustart.

Zan 03.02.2012 05:22

hmmm, immer noch dasselbe Problem! Schade!

Chris4You 03.02.2012 07:27

Hi,

das ist ungewöhnlich, es sieht so aus, als ob eine automatische Wiederherstellung stattfindet...

Mit Dr. Web Live-CD weitermachen...

chris


Alle Zeitangaben in WEZ +1. Es ist jetzt 01:38 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131