Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Added an additional function disable_uac_win7() that disables UAC on Windows 7 and above VMs. This allows for more activity within the VM, without UAC blocking attempts. The function takes the VM name as an argument.
The goal here is to make something that might be more graceful and comprehensive than the present solution of registering ievms.bat as a scheduled task to run on-demand with
schtasks.exe
. This would enable cleaner implementation of additional VM software installs, with the additional benefit that, when used for malware analysis, the UAC feature won't block execution / priv escalation, so more data collection is possible.