Encounter a bunch of Trojan. psw. win32.onlinegames/* door0.dll, etc. 2
EndurerOriginal
1Version
Send Dr. Web cureit! Scanned logs.
BTW, Dr. Web cureit! Now integrated with the simplified Chinese Language Pack, the runtime interface automatically uses Simplified Chinese, and the log is also Chinese, so there is no need to worry about E.
========================================================== ============================================
Dr. Web (r) scanner for Windows v4.33.2 (4.33.2.10067)
Copyright (c) Igor Daniloff, 1992-2006
Log generation time:, 12:30:01 [administrator]
Command line: "D:/temp/rarsfx0/cureit.exe"/LNG: zh-cn-cureit.dwl/INI: cureit_xp.ini
Operating System: Windows XP Professional x86 (build 2600), Service Pack 2
========================================================== ============================================
Engine versions: 4.33 (4.33.5.10110)
Engine API version: 2.01
C:/Windows/system32/dadoor0.dll has been infected:Trojan. PWS. gamania.3488-Will be repaired after restart
C:/Windows/system32/fydoor0.dll has been infected:Trojan. PWS. gamania.3400-Will be repaired after restart
C:/Windows/system32/jtdoor0.dll has been infected:Trojan. PWS. gamania.3399-Will be repaired after restart
C:/Windows/system32/mhdoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/mydoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/qhdoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/qjdoor0.dll has been infected:Trojan. downloader.30272-Will be repaired after restart
C:/Windows/system32/rxdoor0.dll has been infected:Trojan. PWS. wsgame.1102-Will be repaired after restart
C:/Windows/system32/tldoor0.dll has been infected:Trojan. PWS. wsgame.1100-Will be repaired after restart
C:/Windows/system32/wddoor0.dll has been infected:Trojan. PWS. wsgame.1099-Will be repaired after restart
C:/Windows/system32/wgdoor0.dll has been infected:Trojan. PWS. gamania.3397-Will be repaired after restart
C:/Windows/system32/wldoor0.dll has been infected:Trojan. PWS. wsgame.1098-Will be repaired after restart
C:/Windows/system32/wmdoor0.dll has been infected:Trojan. PWS. wsgame.1097-Will be repaired after restart
C:/Windows/system32/wodoor0.dll has been infected:Trojan. PWS. gamania.3396-Will be repaired after restart
C:/Windows/system32/ztdoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/3sak0. dll has been infected:Trojan. PWS. gamania.3002-Deleted
C:/Windows/system32/x6dd0. dll has been infected:Trojan. PWS. wsgame-Deleted
C:/Windows/system32/xk0s0. dll has been infected:Trojan. PWS. wsgame-Deleted
C:/Windows/system32/6asx0. dll has been infected:Trojan. PWS. wsgame.1065-Deleted
C:/Windows/system32/xdxs0.dll has been infected:Trojan. PWS. gamania.3001-Deleted
C:/Windows/system32/xk8s0. dll has been infected:Trojan. PWS. wsgame-Deleted
C:/Windows/system32/hj8b0. dll has been infected:Trojan. PWS. gamania.2999-Deleted
C:/Windows/system32/ls2o0. dll has been infected:Trojan. PWS. gamania.2999-Deleted
C:/Windows/system32/as1x0. dll has been infected:Trojan. PWS. gamania.3004-Deleted
C:/Windows/system32/88xk0. dll has been infected:Trojan. PWS. gamania.3006-Deleted
C:/Windows/system32/9fdk0. dll has been infected:Trojan. PWS. gamania.2995-Deleted
C:/Windows/system32/6ksx0. dll has been infected:Trojan. PWS. gamania.3000-Deleted
C:/Windows/system32/ax1o0. dll has been infected:Trojan. PWS. wsgame-Deleted
C:/Windows/system32/xk1s1. dll has been infected:Trojan. PWS. gamania.3396-Deleted
C:/Windows/system32/9kxk1. dll has been infected:Trojan. PWS. gamania.3005-Deleted
C:/Windows/system32/as1x1. dll has been infected:Trojan. PWS. gamania.3004-Deleted
C:/Windows/system32/3x6s0. dll has been infected:Trojan. PWS. wsgame-Deleted
C:/Windows/system32/9kxk0. dll has been infected:Trojan. PWS. gamania.3005-Deleted
C:/Windows/system32/dadoor0.dll has been infected:Trojan. PWS. gamania.3488-Will be repaired after restart
C:/Windows/system32/wddoor0.dll has been infected:Trojan. PWS. wsgame.1099-Will be repaired after restart
C:/Windows/system32/wmdoor0.dll has been infected:Trojan. PWS. wsgame.1097-Will be repaired after restart
C:/Windows/system32/tldoor0.dll has been infected:Trojan. PWS. wsgame.1100-Will be repaired after restart
C:/Windows/system32/qjdoor0.dll has been infected:Trojan. downloader.30272-Will be repaired after restart
C:/Windows/system32/wgdoor0.dll has been infected:Trojan. PWS. gamania.3397-Will be repaired after restart
C:/Windows/system32/rxdoor0.dll has been infected:Trojan. PWS. wsgame.1102-Will be repaired after restart
C:/Windows/system32/jtdoor0.dll has been infected:Trojan. PWS. gamania.3399-Will be repaired after restart
C:/Windows/system32/wodoor0.dll has been infected:Trojan. PWS. gamania.3396-Will be repaired after restart
C:/Windows/system32/mydoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/fydoor0.dll has been infected:Trojan. PWS. gamania.3400-Will be repaired after restart
C:/Windows/system32/mhdoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/wldoor0.dll has been infected:Trojan. PWS. wsgame.1098-Will be repaired after restart
C:/Windows/system32/qhdoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/ztdoor0.dll may have been infected: Backdoor. Trojan
C:/Windows/system32/zxdoor1.dll has been infected:Trojan. PWS. wsgame.1095-Deleted
C:/Windows/system32/rxdoor1.dll has been infected:Trojan. PWS. wsgame.1102-Deleted
C:/Windows/system32/qhdoor1.dll has been infected:Trojan. PWS. wsgame.1103-Deleted
C:/Windows/system32/xk1s0. dll has been infected:Trojan. PWS. gamania.3396-Deleted
C:/Windows/system32/jtdoor1.dll has been infected:Trojan. PWS. gamania.3399-Deleted
C:/Windows/system32/tldoor1.dll has been infected:Trojan. PWS. wsgame.1100-Deleted
C:/Windows/system32/dadoor0.dll. DEL has been infected:Trojan. PWS. gamania.3488-Will be repaired after restart
C:/Windows/system32/wddoor0.dll. DEL has been infected:Trojan. PWS. wsgame.1099-Will be repaired after restart
C:/Windows/system32/fydoor0.dll. DEL has been infected:Trojan. PWS. gamania.3400-Will be repaired after restart
C:/Windows/system32/qjdoor0.dll. DEL has been infected:Trojan. downloader.30272-Will be repaired after restart
C:/Windows/system32/mydoor0.dll. Del may have been infected: Backdoor. Trojan
C:/Windows/system32/tldoor0.dll. DEL has been infected:Trojan. PWS. wsgame.1100-Will be repaired after restart
C:/Windows/system32/rxdoor0.dll. DEL has been infected:Trojan. PWS. wsgame.1102-Will be repaired after restart
C:/Windows/system32/wmdoor0.dll. DEL has been infected:Trojan. PWS. wsgame.1097-Will be repaired after restart
C:/Windows/system32/qhdoor0.dll. Del may have been infected: Backdoor. Trojan
C:/Windows/system32/wgdoor0.dll. DEL has been infected:Trojan. PWS. gamania.3397-Will be repaired after restart
C:/Windows/system32/wldoor0.dll. DEL has been infected:Trojan. PWS. wsgame.1098-Will be repaired after restart
C:/Windows/system32/jtdoor0.dll. DEL has been infected:Trojan. PWS. gamania.3399-Will be repaired after restart
C:/Windows/system32/ztdoor0.dll. Del may have been infected: Backdoor. Trojan
C:/Windows/system32/wodoor0.dll. DEL has been infected:Trojan. PWS. gamania.3396-Will be repaired after restart
C:/Windows/system32/mhdoor0.dll. Del may have been infected: Backdoor. Trojan
> C:/Windows/system32/vbsdaas2.exe. DEL has been infected:Trojan. PWS. gamania.3396-Deleted
> C:/Windows/system32/eksdlfs5.exe. DEL has been infected:Trojan. muldrop.7974-Deleted
> C:/Windows/system32/dsfids6.exe. DEL has been infected:Trojan. PWS. wsgame-Deleted
> C:/Windows/system32/fsfjasj8.exe. DEL has been infected:Trojan. PWS. wsgame-Deleted
> C:/Windows/system32/ogdflsd1.exe. DEL has been infected:Trojan. PWS. wsgame.1065-Deleted
C:/Windows/system32/ls2o1. dll has been infected:Trojan. PWS. gamania.2999-Deleted
> C:/program files/common files/relive. dll. DEL has been infected:Win32.hllw. autoruner.175-Deleted
> C:/program files/common files/real/CNNIC/setup-real.exe is an advertising software program adware. CDN
> C:/program files/Internet Explorer/msvcrt. dll has been infected:Trojan. PWS. gamania.3215-Will be repaired after restart
C:/program files/Internet Explorer/rksldk. Bak. DEL has been infected:Win32.hllw. autoruner.175-Will be repaired after restart
C:/program files/Internet Explorer/romdrivers. Bak has been infected:Win32.hllw. autoruner.157-Deleted
> C:/program files/Internet Explorer/msvcrt. dll. DEL has been infected:Win32.hllw. autoruner.175-Deleted
C:/program files/Internet Explorer/msvcrt. Bak has been infected:Win32.hllw. autoruner.175-Deleted
> C:/program files/WOM/optimization master. Exec:/program files/starsoftcomm/starcenter/ierepair. dll may have been infected: stpage. Trojan
-
C:/Windows/system32/mhdoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/mydoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/qhdoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/ztdoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/mydoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/mhdoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/qhdoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/ztdoor0.dll-unrecoverable-will be deleted after restart
C:/Windows/system32/mydoor0.dll. Del-unrecoverable-will be deleted after restart
C:/Windows/system32/qhdoor0.dll. Del-unrecoverable-will be deleted after restart
C:/Windows/system32/ztdoor0.dll. Del-unrecoverable-will be deleted after restart
C:/Windows/system32/mhdoor0.dll. Del-unrecoverable-will be deleted after restart
C:/program files/common files/real/CNNIC/setup-real.exe-unrecoverable-Deleted
C:/program files/starsoftcomm/starcenter/ierepair. dll-unrecoverable-Deleted
========================================================== ============================================
Comprehensive statistics
========================================================== ============================================
Scanned object: 102157
Infected objects found: 69
Infected with variant: 0
Suspicious objects found: 13
Ad discovery software program: 1
Dialing software program found: 0
Joke program found: 0
Risk detection procedure: 0
Hacker tool programs found: 0
Repaired objects: 0
Deleted objects: 48
Renamed object: 0
Moved object: 0
Ignored object: 0
Scan speed: 1754 kb/s
Scan time: 00:28:18
========================================================== ============================================