Currently, the POC proves that Comodo cannot fully cover DLL hijacking. The author of the bypass prepared an exploit that successfully ran DLL hijacking outside the sandbox. Disabling LUA is one of a few methods to prevent that particular exploit, but this will work only when the attack is partially contained. If the exploit is not contained, then Disabling LUA only makes the attacks easier and more dangerous.
From my experience, there can be more possible exploits (some known and some unknown yet) that will not be contained at all, and can also run DLL hijacking. Such attacks will not be blocked even if LUA is disabled and are very dangerous because the malicious code will run with high privileges without UAC bypasses.
In such cases: Disabling LUA = UAC bypass without any suspicious code
One interesting question was asked here:
actualy its already poping out as "paid services" at some "other" places... so its a matter of time (little if i may) untill we have fileless malwares and...
malwaretips.com