{
	"id": "18b603c9-99c3-4fd3-9730-21e907fa327c",
	"created_at": "2026-04-06T00:13:20.647254Z",
	"updated_at": "2026-04-10T03:20:50.952469Z",
	"deleted_at": null,
	"sha1_hash": "fb041bf46ccf05aeba020121a7c657114f99dfb6",
	"title": "AlwaysInstallElevated - Win32 apps",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 32304,
	"plain_text": "AlwaysInstallElevated - Win32 apps\r\nBy drewbatgit\r\nArchived: 2026-04-05 13:17:50 UTC\r\nYou can use the AlwaysInstallElevated policy to install a Windows Installer package with elevated (system)\r\nprivileges.\r\n**Warning:  **\r\nThis option is equivalent to granting full administrative rights, which can pose a massive security risk. Microsoft\r\nstrongly discourages the use of this setting.\r\nTo install a package with elevated (system) privileges, set the AlwaysInstallElevated value to \"1\" under both of the\r\nfollowing registry keys:\r\nHKEY_CURRENT_USER\\Software\\Policies\\Microsoft\\Windows\\Installer\r\nHKEY_LOCAL_MACHINE\\Software\\Policies\\Microsoft\\Windows\\Installer\r\nIf the AlwaysInstallElevated value is not set to \"1\" under both of the preceding registry keys, the installer uses\r\nelevated privileges to install managed applications and uses the current user's privilege level for unmanaged\r\napplications.\r\nBecause this policy permits users to install applications that require access to directories and registry keys for\r\nwhich the user may not have permission to view or change, you should consider whether it provides your users\r\nwith an appropriate level of security. Setting this policy directs Windows Installer to use system permissions when\r\nit installs the application on the system. If this policy is not set, applications not distributed by the administrator\r\nare installed using the user's privileges and only managed applications get elevated privileges.\r\nNote that once the per-machine policy for AlwaysInstallElevated is enabled, any user can set their per-user setting.\r\nFor information about the interaction of this policy with installation sources, see Managing Installation Sources.\r\nData Type\r\nREG_DWORD\r\nSource: https://docs.microsoft.com/en-us/windows/win32/msi/alwaysinstallelevated\r\nhttps://docs.microsoft.com/en-us/windows/win32/msi/alwaysinstallelevated\r\nPage 1 of 1",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"MITRE"
	],
	"references": [
		"https://docs.microsoft.com/en-us/windows/win32/msi/alwaysinstallelevated"
	],
	"report_names": [
		"alwaysinstallelevated"
	],
	"threat_actors": [],
	"ts_created_at": 1775434400,
	"ts_updated_at": 1775791250,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/fb041bf46ccf05aeba020121a7c657114f99dfb6.pdf",
		"text": "https://archive.orkl.eu/fb041bf46ccf05aeba020121a7c657114f99dfb6.txt",
		"img": "https://archive.orkl.eu/fb041bf46ccf05aeba020121a7c657114f99dfb6.jpg"
	}
}