Looks like the only way to prevent cmd and run is editing the registry, but that denies it for all users, and denied users and easily edit it back. Is there a way to prevent non-admins from using it? Also, how to I prevent access to system32? I made it so users can't access, but admins count as users, and you can still view the files, just can't run any of them.