i saw today client infected again :( i paste it down side. i didn't paste all
Date and Time Risk Action Filename Risk Type Original Location Computer User Status Current Location Primary Action Secondary Action
06.07.2009 15:03:50 W32.Downadup.B Restart Required - Deleted hmdutoi.dll File c:\WINDOWS\system32\ BAY596 SYSTEM Deleted Deleted Restart Required - Delete Restart Required - Quarantine
05.07.2009 15:03:30 W32.Downadup.B Restart Required - Deleted hmdutoi.dll File c:\WINDOWS\system32\ BAY596 SYSTEM Deleted Deleted Restart Required - Delete Restart Required - Quarantine
04.07.2009 15:03:38 W32.Downadup.B Restart Required - Deleted hmdutoi.dll File c:\WINDOWS\system32\ BAY596 SYSTEM Deleted Deleted Restart Required - Delete Restart Required - Quarantine
03.07.2009 10:30:57 W32.Downadup.B Restart Processing hmdutoi.dll File c:\windows\system32\ BAY596 SYSTEM Infected c:\windows\system32\ Delete Leave alone (log only)
03.07.2009 10:30:57 W32.Downadup.B Restart Processing hmdutoi.dll File c:\windows\system32\ BAY596 SYSTEM Infected c:\windows\system32\ Delete Leave alone (log only)
03.07.2009 10:30:56 W32.Downadup.B Restart Processing hmdutoi.dll File c:\windows\system32\ BAY596 SYSTEM Infected c:\windows\system32\ Delete Leave alone (log only)
02.07.2009 12:02:32 W32.Downadup.B Restart Required - Partial (Non Critical Failure) hmdutoi.dll File c:\windows\system32\ BAY596 SYSTEM Infected c:\windows\system32\ Restart Required - Delete Restart Required - Quarantine
30.06.2009 12:02:32 W32.Downadup.B Restart Required - Partial (Non Critical Failure) hmdutoi.dll File c:\windows\system32\ BAY596 SYSTEM Infected c:\windows\system32\ Restart Required - Delete Restart Required - Quarantine
25.06.2009 12:17:44 W32.Downadup.B Restart Required - Partial (Non Critical Failure) hmdutoi.dll File c:\windows\system32\ BAY596 SYSTEM Infected c:\windows\system32\ Restart Required - Delete Restart Required - Quarantine
08.06.2009 13:35:48 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 11:55:15 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 07:50:58 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 07:37:34 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 06:09:03 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 05:26:45 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 05:14:17 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 04:23:04 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 04:20:26 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 03:26:45 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 03:15:39 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 00:50:20 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 00:21:53 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
08.06.2009 00:00:35 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 23:14:58 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 23:11:19 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 22:18:04 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 22:16:41 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 18:49:37 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 18:23:58 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 17:53:55 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 15:07:12 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 14:57:56 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 14:08:34 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 13:50:29 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 12:38:19 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 12:19:09 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 06:56:56 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 06:44:56 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 05:56:24 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 05:48:21 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 04:45:41 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 04:42:39 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 03:47:12 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 03:37:56 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 01:23:07 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 01:08:30 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
07.06.2009 00:09:46 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 23:11:19 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 23:09:49 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 22:13:11 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 21:57:21 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 15:55:07 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 15:38:48 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 14:35:11 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 12:14:29 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 11:40:16 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 09:41:17 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 08:57:31 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 08:31:02 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine
06.06.2009 07:39:37 W32.Downadup.B Cleaned by deletion hmdutoi.aw File C:\WINDOWS\system32\ BAY596 Administrator Deleted Deleted Clean security risk Quarantine