Eccomi Qua Lucass allora i file anche provando a visualizzare quelli nascosti non li ho trovati..

Veniamo alla seconda prova.. lanciato L2mfix selezionato2 il pc rebotta ma non parte nulla... tutto riparte normale come se niente fosse stato fatto.. booo allora dalla cartella del programma ho letto il readme che diceva nel caso non partisse lo scan di lanciare il file SECOND e infatti lanciandolo parte uno scanning scompaiono le icone e mi si apre il notepad con il log.. lo allego ;.. nella speranza possa essere utile...


Prima parte

L2Mfix 1.04a

Running From:
C:\Documents and Settings\Andrea Borsari\Desktop\l2mfix\l2mfix



RegDACL 5.1 - Permissions Manager for Registry keys for Windows NT 4 and above
Copyright (c) 1999-2001 Frank Heyne Software (http://www.heysoft.de)
This program is Freeware, use it on your own risk!

Access Control List for Registry key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify:
(NI) ALLOW Full access NT AUTHORITY\SYSTEM
(IO) ALLOW Full access NT AUTHORITY\SYSTEM
(NI) ALLOW Full access NT AUTHORITY\SYSTEM
(IO) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-NI) ALLOW Read BUILTIN\Users
(ID-IO) ALLOW Read BUILTIN\Users
(ID-NI) ALLOW Read BUILTIN\Power Users
(ID-IO) ALLOW Read BUILTIN\Power Users
(ID-NI) ALLOW Full access BUILTIN\Administrators
(ID-IO) ALLOW Full access BUILTIN\Administrators
(ID-NI) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-IO) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-IO) ALLOW Full access CREATOR OWNER



Setting registry permissions:


RegDACL 5.1 - Permissions Manager for Registry keys for Windows NT 4 and above
Copyright (c) 1999-2001 Frank Heyne Software (http://www.heysoft.de)
This program is Freeware, use it on your own risk!


Denying C(CI) access for predefined group "Administrators"
- adding new ACCESS DENY entry


Registry Permissions set too:

RegDACL 5.1 - Permissions Manager for Registry keys for Windows NT 4 and above
Copyright (c) 1999-2001 Frank Heyne Software (http://www.heysoft.de)
This program is Freeware, use it on your own risk!

Access Control List for Registry key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify:
(CI) DENY --C------- BUILTIN\Administrators
(NI) ALLOW Full access NT AUTHORITY\SYSTEM
(IO) ALLOW Full access NT AUTHORITY\SYSTEM
(NI) ALLOW Full access NT AUTHORITY\SYSTEM
(IO) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-NI) ALLOW Read BUILTIN\Users
(ID-IO) ALLOW Read BUILTIN\Users
(ID-NI) ALLOW Read BUILTIN\Power Users
(ID-IO) ALLOW Read BUILTIN\Power Users
(ID-NI) ALLOW Full access BUILTIN\Administrators
(ID-IO) ALLOW Full access BUILTIN\Administrators
(ID-NI) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-IO) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-IO) ALLOW Full access CREATOR OWNER



Setting up for Reboot


Starting Reboot!

Setting Directory
C:\Documents and Settings\Andrea Borsari\Desktop\l2mfix\l2mfix
System Rebooted!

Running From:
C:\Documents and Settings\Andrea Borsari\Desktop\l2mfix\l2mfix

killing explorer and rundll32.exe

Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 428 'explorer.exe'
Killing PID 428 'explorer.exe'

Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 1644 'rundll32.exe'
Killing PID 1328 'rundll32.exe'

Scanning First Pass. Please Wait!

First Pass Completed

Second Pass Scanning

Second pass Completed!
Backing Up: C:\WINDOWS\system32\lv2609fse.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\m6julg1916.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\matscax.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\mbaatext.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\mjxml3.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\mxrddm.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\rxipxmib.dll
1 file copiati.
Backing Up: C:\WINDOWS\system32\guard.tmp
1 file copiati.
deleting: C:\WINDOWS\system32\lv2609fse.dll
Successfully Deleted: C:\WINDOWS\system32\lv2609fse.dll
deleting: C:\WINDOWS\system32\m6julg1916.dll
Successfully Deleted: C:\WINDOWS\system32\m6julg1916.dll
deleting: C:\WINDOWS\system32\matscax.dll
Successfully Deleted: C:\WINDOWS\system32\matscax.dll
deleting: C:\WINDOWS\system32\mbaatext.dll
Successfully Deleted: C:\WINDOWS\system32\mbaatext.dll
deleting: C:\WINDOWS\system32\mjxml3.dll
Successfully Deleted: C:\WINDOWS\system32\mjxml3.dll
deleting: C:\WINDOWS\system32\mxrddm.dll
Successfully Deleted: C:\WINDOWS\system32\mxrddm.dll
deleting: C:\WINDOWS\system32\rxipxmib.dll
Successfully Deleted: C:\WINDOWS\system32\rxipxmib.dll
deleting: C:\WINDOWS\system32\guard.tmp


Zipping up files for submission:
adding: lv2609fse.dll (164 bytes security) (deflated 4%)
adding: m6julg1916.dll (164 bytes security) (deflated 5%)
adding: matscax.dll (164 bytes security) (deflated 5%)
adding: mbaatext.dll (164 bytes security) (deflated 5%)
adding: mjxml3.dll (164 bytes security) (deflated 5%)
adding: mxrddm.dll (164 bytes security) (deflated 5%)
adding: rxipxmib.dll (164 bytes security) (deflated 4%)
adding: guard.tmp (164 bytes security) (deflated 5%)
adding: clear.reg (164 bytes security) (deflated 22%)
adding: echo.reg (164 bytes security) (deflated 14%)
adding: direct.txt (164 bytes security) (deflated 6%)
adding: lo2.txt (164 bytes security) (deflated 79%)
adding: readme.txt (164 bytes security) (deflated 52%)
adding: report.txt (164 bytes security) (deflated 64%)
adding: test.txt (164 bytes security) (deflated 68%)
adding: test2.txt (164 bytes security) (deflated 2%)
adding: test3.txt (164 bytes security) (deflated 2%)
adding: test5.txt (164 bytes security) (deflated 2%)
adding: xfind.txt (164 bytes security) (deflated 61%)
adding: backregs/D11DF44E-B780-4BEB-8F4D-01F939D089DC.reg (164 bytes security) (deflated 70%)
adding: backregs/notibac.reg (164 bytes security) (deflated 87%)
adding: backregs/shell.reg (164 bytes security) (deflated 74%)