| Soleron said: You can't. |
It's not so silent. You actually have to run the malicious executable still which requires action on the part of the user at some level. The only difference between this and were UAC to be "fixed" would be that the malicious code would prompt for elevated access and, of course, the user would blindly click through it.
In general, if the user is dumb enough to run untrustworthy code in the first place then putting a UAC prompt isn't going to stop the user from screwing something up.







