Cmd prompt return access denied

Solved/Closed
faizalDong Posts 8 Registration date Friday November 14, 2014 Status Member Last seen November 14, 2014 - Nov 14, 2014 at 02:43 AM
 Blocked Profile - Nov 21, 2014 at 08:42 AM


hello. anyone please help me. A few minutes ago, I plug in my pendrive into my friends laptop. After that all contains in my pendrive disappear. I try using cmd to retrieve my file(pendrive). but command prompt (cmd) return access denied. I try all code that available in cmd to retrieve my file. exmple:

attrib -r -a -s -h /s d/ f:\*.*

attrib -h -r -s /s /d f:\*.*

F:\>attrib -s -h *.* /s /d

8 responses

Ambucias Posts 47310 Registration date Monday February 1, 2010 Status Moderator Last seen February 15, 2023 11,162
Nov 14, 2014 at 06:09 AM
Hello,
# Download UsbFix on your computer, and launch it.
# It will start automatically, and a shortcut will be created on your desktop.
# Connect all your external data sources to your PC (Usb keys, external drives, etc...) Do not open them.
# Choose " Deletion " option.

#The computer will re-start, and it may be longer than usually.

# UsbFix will display a message at re-start.

# Click "OK" to start cleaning.
# Copy/paste the report here.

Tutorial : http://www.en.usbfix.net/2014/02/usbfix-tutorial-clean-option/
0
faizalDong Posts 8 Registration date Friday November 14, 2014 Status Member Last seen November 14, 2014
Nov 14, 2014 at 10:25 PM
sorry my mistakes. I already install the usbfix and used it. I get the report after cleaning process. Should I open my usb now?

--------------------------------------------------------------------------------------------

[b]############################## | UsbFix V 7.801 | [Clean][/b]

User: pejal (Administrator) # PEJAL-PC
Updated 11/11/2014 by El Desaparecido - SosVirus
Started at 11:23:55 | 15/11/2014

Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url]
Changelog : [url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/changelog/[/url]
Support : [url=http://www.sosvirus.net/]https://www.sosvirus.net/[/url]
Upload Malware : [url=http://www.sosvirus.net/upload_malware.php]http://www.sosvirus.net/upload_malware.php[/url]
Live detection : [url=http://how-to-remove.us/]http://ww25.how-to-remove.us/[/url]
Contact : [url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contact/[/url]

[b]################## | System information |[/b]

MB: Acer (Aspire 4741)
CPU: Intel(R) Pentium(R) CPU P6000 @ 1.87GHz
RAM -> [Total : 2805 Mo | Free : 1739 Mo]
Bios: Phoenix Technologies LTD
Boot: Normal boot

OS: Microsoft(TM) Windows 7 Ultimate (6.1.7601 32-Bit) Service Pack 1
WB: Internet Explorer : 11.00.9600.16428
WB: Google Chrome : 38.0.2125.111
WB: Mozilla Firefox : 31.0

[b]################## | Security Information |[/b]

AV: Microsoft Security Essentials [[b](!) Disabled[/b] |Updated]
AS: Microsoft Security Essentials [[b](!) Disabled[/b] |Updated]
AS: Windows Defender [[b](!) Disabled[/b] |Updated]
FW: Windows Firewall [[b](!) Disabled[/b]]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Fixed disk # 98 Gb (29 Gb free - 30%) [] # NTFS
D:\ -> Fixed disk # 368 Gb (349 Gb free - 95%) [] # NTFS
F:\ -> Removable disk # 4 Gb (2 Gb free - 41%) [014-8413277] # NTFS

[b]################## | Generic Research |[/b]

Deleted! F:\SecureBrowsing.lnk

(!) Temporary files deleted. (1704.64603900909 MB)

[b]################## | Registry |[/b]

Deleted! HKCU\Software\Hola

[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Facebook Update] "C:\Users\pejal\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
04 - HKLM\..\Run : [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1184603822-4111760499-879089656-1000\..\Run : [Facebook Update] "C:\Users\pejal\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe

[b]################## | UsbFix - Information |[/b]

Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut virus on flash disk (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut virus on flash disk, What is it ?[/url]
Live detection : [url=http://how-to-remove.us/]http://ww25.how-to-remove.us/[/url]

[b]################## | Hijack |[/b]


[b]################## | C:\ %SystemDrive% - Fixed drive (NTFS) |[/b]

[11/06/2009 - 05:42:20 | A | 0 Ko] - C:\config.sys
[15/11/2014 - 09:20:38 | ASH | 2153860 Ko] - C:\hiberfil.sys
[15/11/2014 - 09:20:42 | ASH | 2871816 Ko] - C:\pagefile.sys
[11/05/2014 - 15:48:01 | A | 6 Ko] - C:\ytlDriverInstaller.log
[12/10/2014 - 11:45:39 | SHD] - C:\$Recycle.Bin
[21/05/2014 - 22:10:23 | A | 0 Ko] - C:\AUTOEXEC.BAT
[14/07/2009 - 10:37:05 | D] - C:\PerfLogs
[14/07/2009 - 12:53:55 | SHD] - C:\Documents and Settings
[01/05/2014 - 22:53:28 | SHD] - C:\Recovery
[02/05/2014 - 00:31:27 | D] - C:\Intel
[03/05/2014 - 09:54:20 | D] - C:\Valve
[03/05/2014 - 23:23:15 | RHD] - C:\MSOCache
[11/05/2014 - 15:48:09 | D] - C:\temp
[23/06/2014 - 21:21:15 | RD] - C:\Users
[15/09/2014 - 19:53:38 | D] - C:\westwood
[25/09/2014 - 15:46:26 | D] - C:\adt-bundle
[31/10/2014 - 00:54:52 | HD] - C:\ProgramData
[31/10/2014 - 01:24:00 | RD] - C:\Program Files
[31/10/2014 - 20:47:33 | D] - C:\Windows
[15/11/2014 - 01:58:01 | SHD] - C:\System Volume Information
[15/11/2014 - 11:20:37 | D] - C:\UsbFix

[b]################## | D:\ - Fixed drive (NTFS) |[/b]

[11/05/2014 - 15:58:58 | A | 79 Ko] - D:\sequence diagram back up.zip
[24/05/2013 - 21:14:52 | N | 1 Ko] - D:\pesan Rasullulah.txt
[27/05/2014 - 22:49:47 | A | 3 Ko] - D:\contoh insert data.txt
[11/05/2014 - 22:08:48 | A | 60 Ko] - D:\sequence diagram back up.rar
[14/11/2014 - 15:39:04 | A | 12 Ko] - D:\cmd.png
[15/11/2014 - 09:31:07 | A | 203 Ko] - D:\off antivirus.png
[15/11/2014 - 09:32:29 | A | 101 Ko] - D:\off firewall.png
[15/11/2014 - 11:15:15 | A | 217 Ko] - D:\usbfix.png
[01/10/2014 - 21:58:03 | A | 104 Ko] - D:\payment receipt Hitachi.pdf
[01/10/2014 - 21:59:38 | A | 69 Ko] - D:\payment receipt Hitachi(2).pdf
[18/10/2014 - 01:48:22 | A | 1056 Ko] - D:\permohonan hadiah IPT Selangor.pdf
[01/03/2011 - 16:50:34 | A | 318 Ko] - D:\DSC03228.jpg
[05/08/2014 - 19:07:33 | A | 89 Ko] - D:\damn Israel.jpg
[28/05/2014 - 19:01:23 | A | 17 Ko] - D:\View_PoliceOfficer_all.html
[22/10/2014 - 22:00:35 | A | 44 Ko] - D:\A cryptographic protocol is defined as a series of steps and message.docx
[12/10/2014 - 11:45:39 | SHD] - D:\$RECYCLE.BIN
[02/01/2014 - 22:37:44 | D] - D:\its 472
[10/03/2014 - 01:06:55 | D] - D:\mcm document uni
[01/06/2014 - 12:26:13 | D] - D:\cara solat jenazah-ringkas
[06/06/2014 - 16:01:26 | D] - D:\kesalahan ibubapa dlm mendidik anak2
[23/06/2014 - 20:50:48 | SHD] - D:\System Volume Information
[26/06/2014 - 22:01:47 | D] - D:\padil
[17/07/2014 - 21:01:18 | D] - D:\achb resources
[12/10/2014 - 13:25:02 | D] - D:\AHB TERAS BINA
[30/10/2014 - 22:03:25 | D] - D:\eclipse-jee-juno-SR1-win32
[30/10/2014 - 22:19:50 | D] - D:\group project

[b]################## | F:\ - Removable drive (NTFS) |[/b]

[29/06/2014 - 13:45:04 | SHD] - F:\System Volume Information
[09/10/2014 - 10:44:40 | RD] - F:\RECYCLER
[14/11/2014 - 14:21:52 | RD] - F:\RMT_Core
[14/11/2014 - 14:21:58 | RD] - F:\RMT_UserData

[b]################## | Vaccin |[/b]

C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
F:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)

[b]################## | E.O.F | [url=http://www.sosvirus.net/]https://www.sosvirus.net/[/url] | [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[/b]
0
faizalDong Posts 8 Registration date Friday November 14, 2014 Status Member Last seen November 14, 2014
Nov 14, 2014 at 10:29 PM
sir, I already open my usb, but my file still disappear :|
0