我虽然没有扫日志,但跟这个大大的日志很类似
http://forum.ikaka.com/topic.asp?board=28&artid=8320438&page=1
尤其是这部分
<mhsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\mhso.exe> [N/A]
<fysa><C:\DOCUME~1\Owner\LOCALS~1\Temp\fyso.exe> [N/A]
<jtsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\jtso.exe> [N/A]
<wlsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\wlso.exe> [N/A]
<wgsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\wgso.exe> [N/A]
<wmsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\wmso.exe> [N/A]
<qjsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\qjso.exe> [N/A]
<rxsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\rxso.exe> [N/A]
<wdsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\wdso.exe> [N/A]
<tlsa><C:\DOCUME~1\Owner\LOCALS~1\Temp\tlso.exe> [N/A]
<dasa><C:\DOCUME~1\Owner\LOCALS~1\Temp\daso.exe> [N/A]