Virus

tnanoha

New member
Local time
6:15 AM
Messages
10
Hi everyone,

my com just got infected with a virus, the main thing this virus does is whenever i plug in a thumbdrive it immediately shows shortcuts of my document, music, pics etc when i didn't even put them in myself and my old files inside are inaccessible.

I found the name of this virus i can see it in my processors on my task manager.

It is called vaooki.exe and vaookie.exe, can anyone help in getting rid of it.
 

My Computer

Computer Manufacturer/Model Number
nf
OS
window 7
CPU
nf
Motherboard
htf
hi.........
what av do you use?

d/l and scan with...
hitman pro
mbam
 

My Computer

OS
windows 7 ultimate 64 bit,Windows 7 ultimate 32 bit,Windows XP sp3 home
I can't recommend hitman pro, because I've never used it, but MBAM can be quit useful. Remember, after you get rid of the virus, empty you system restore by turning it off and back on. Do you have a regular AV program. Microsoft Security Essentials is really good and it is free to all Windows users.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
Hi everyone,

my com just got infected with a virus, the main thing this virus does is whenever i plug in a thumbdrive it immediately shows shortcuts of my document, music, pics etc when i didn't even put them in myself and my old files inside are inaccessible.

I found the name of this virus i can see it in my processors on my task manager.

It is called vaooki.exe and vaookie.exe, can anyone help in getting rid of it.

[FONT=&quot]VIRUS and MALWARE REMOVAL / PROTECTION[/FONT]
1. Download MalwareBytes. Malwarebytes
2. Disconnect from the Internet.
3. Disable your present antivirus software and firewall.
4. Remove your present antivirus software and firewall.
5. Install and run the MalwareBytes Quick Scan (remove any bad guys). 3min 29secs on my laptop.
6. Reconnect to Internet.
7. Update MalwareBytes.
8. Run malwarebytes quick scan again.(remove any bad guys). 3min 38secs on my laptop.
9. Run MalwareBytes full scan. 16min 8secs on my laptop. With large,full disk ~2hours.
A. Disable your present antivirus software and firewall
B. Remove your present antivirus software
C. Download Microsoft Security Essentials.
http://www.microsoft.com/security_essentials/
D. Run Microsoft Security Essentials. Quick Scan - ~8 min on my laptop.
E. Run Microsoft Security Essentials. Full Scan - ~ 1hr 50 min on my laptop.
Now I advise you to uninstall MalwareBytes and only install again when and if you need it.
Why?, you ask. Leaving MalwareBytes installed slowed my system. AutoRuns showed MalwareBytes processes running even after exiting from MalwareBytes.
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
@ karlsnooks, You can set MBam to "manual" in Services. When you need it, just restart it.
 

Attachments

  • MBam.jpg
    MBam.jpg
    2.4 KB · Views: 5

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Strange.
When I run sevices.msc, there is no mbam.

Autoruns does show entries in the Logon and Explorer tabs.

And this after exiting from malwarebytes.

Please clarify.
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
@karlsnooks

Although I recommend MBAM, I do not recommend scanning prior to updating nor do I recommend uninstalling the resident antivirus and firewall software to install MSE.

First, it is always best practice to scan with the most up-to-date definitions. Definitions are updated frequently so it is important to get the very latest when dealing with an infection.

Next, ad hoc removal of antivirus software and firewall is not a reasonable recommendation merely to scan with MSE, which in any case does not include a software firewall.

Hi everyone,

my com just got infected with a virus, the main thing this virus does is whenever i plug in a thumbdrive it immediately shows shortcuts of my document, music, pics etc when i didn't even put them in myself and my old files inside are inaccessible.

I found the name of this virus i can see it in my processors on my task manager.

It is called vaooki.exe and vaookie.exe, can anyone help in getting rid of it.

Hi, tnanoha.

It appears that vaooki.exe is a random file name. I suggest two things. First MBAM, with the following instructions:

Please download Malwarebytes' Anti-Malware to your desktop.


  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, be sure Quick scan is selected, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, EXCEPT items in System Restore as shown in this sample:
    MBAM_SR.png
  • Click Remove Selected.
  • When completed, a log will open in Notepad. Please save it to a convenient location. The log can also be found here on Windows XP: C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt and C:\Users\UserName\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt on Windows Vista and Windows 7.
  • Please post contents of that file in your next reply.


Second, as you may have a flash drive infection which, when connected to other machines, may spread the infection.

  • Please download Flash_Disinfector.exe by sUBs and save it to your desktop.
  • Double-click Flash_Disinfector.exe to run it and follow any prompts that may appear.
    Note: Some security programs will flag Flash_Disinfector as being some sort of malware, you can safely ignore these warnings
  • The utility may ask you to insert your flash drive and/or other removable drives including your mobile phone. Please do so and allow the utility to clean up those drives as well.
  • Wait until it has finished scanning and then exit the program.
  • Reboot your computer when done.

Note: Flash_Disinfector will create a hidden folder named autorun.inf in each partition and every USB drive plugged in when you ran it. Don't delete this folder. It will help protect your drives from future infection.
 

My Computer

OS
Windows 7 & Windows Vista Ultimate
wow, thanks so much for all the replies everyone, i am currently scanning my com with Malwarebytes.
 

My Computer

Computer Manufacturer/Model Number
nf
OS
window 7
CPU
nf
Motherboard
htf
Good luck, and let us know how it goes.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
whoa, this is weird i finished scanning my com with Malwarebytes and i found nothing and also i checked my processes and that vaooki.exe things was not there anymore, then i formatted my thumbdrive and decided to plug it in my com for a check and it was working perfectly.

This is kinda weird it is as if the virus just disappeared when i shutdown my com and turned it on again this morning. And also thanks for the people for the advices you gave me.
 

My Computer

Computer Manufacturer/Model Number
nf
OS
window 7
CPU
nf
Motherboard
htf
Hi, tnanoha.

Thanks for letting us know that your computer is back to normal.
 

My Computer

OS
Windows 7 & Windows Vista Ultimate
whoa, this is weird i finished scanning my com with Malwarebytes and i found nothing and also i checked my processes and that vaooki.exe things was not there anymore, then i formatted my thumbdrive and decided to plug it in my com for a check and it was working perfectly.

This is kinda weird it is as if the virus just disappeared when i shutdown my com and turned it on again this morning. And also thanks for the people for the advices you gave me.

Glad that we could have been of assistance.

Many thanks for getting back with the results.
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
Back
Top