~/Privilege Escalation/Windows/Binaries# cat Verclsid.exe.md

Paths:

C:\Windows\System32\verclsid.exe
C:\Windows\SysWOW64\verclsid.exe

Detection:

Execute

Used to verify a COM object before it is instantiated by Windows Explorer

verclsid.exe /S /C {CLSID}