xdissent / ievms

Automated installation of the Microsoft IE App Compat virtual machines
http://xdissent.github.com/ievms
9.86k stars 497 forks source link

Disable UAC feature on Win7+ #347

Open ckane opened 4 years ago

ckane commented 4 years ago

Added an additional function disable_uac_win7() that disables UAC on Windows 7 and above VMs. This allows for more activity within the VM, without UAC blocking attempts. The function takes the VM name as an argument.

The goal here is to make something that might be more graceful and comprehensive than the present solution of registering ievms.bat as a scheduled task to run on-demand with schtasks.exe. This would enable cleaner implementation of additional VM software installs, with the additional benefit that, when used for malware analysis, the UAC feature won't block execution / priv escalation, so more data collection is possible.