User Account Control (UAC)
From Forensics Wiki
Revision as of 01:44, 6 March 2013 by Joachim Metz (Talk | contribs)
|
Please help to improve this article by expanding it.
|
User Account Control (UAC) is a Windows sub-system introduced in Windows Vista that limits application software to standard user privileges until an administrator authorizes an increase or elevation.
The file virtualization part of UAC is also referred to as LUA (LUAFV.SYS).
EventLogs
Related EventLogs:
C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC%4Operational.evtx C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC-FileVirtualization%4Operational.evtx
External Links
- Wikipedia: User Account Control
- Vista UAC: The Definitive Guide
- The deal with LUAFV.SYS, Alex Carp , June 25 2009
- You Are Not Admin with UAC, by Corey Harrell, October 8, 2012
- UAC Impact on Malware, by Corey Harrell, March 4, 2013