.. / Ie4uinit.exe
Star


Paths:


Resources:
https://bohops.com/2018/03/10/leveraging-inf-sct-fetch-execute-techniques-for-bypass-evasion-persistence-part-2/

Acknowledgement:
Jimmy - @bohops


Detection:
ie4uinit.exe loading a inf file from outside %windir%



Execute

Executes commands from a specially prepared ie4uinit.inf file.
ie4uinit.exe -BaseSettings
Usecase:Get code execution by copy files to another location
Privileges required:User
OS:Windows vista, Windows 7, Windows 8, Windows 8.1, Windows 10
Mitre:T1218