Vault 7: Projects

This publication series is about specific projects related to the Vault 7 main publication.

Athena Progress – November 10, 2015 – 11:30am
Minutes:
1) No meeting 10/3
Achievements:
1) Completed prototype demo
2) Added SEH support for X64 (changes to Athena_Load & Athena_Unload)
3) Created Windows offline code for standard deployment
Tasks under development:
1) XP persistence – research XXXXX
2) setup Squid/help on proxy settings – XXXXX
3) offline linux installers – XXXXX
4) Dart configuration – XXXXX
5) Dart Testing – XXXXX
Issues
: none
Demo: windows\offline.exe
BUILD::Nov 10 2015
Searching C:
Searching D:
Searching X:
Searching Z:
Update options:
1) C:\Windows (x86::legacy)
2) D:\Window10 (x64::standard)
3) D:\Window10 - Copy (x64::standard)
5) Z:\Windows (x64::standard)
Select instance to update (q or x to quit):3
Processing: D:\Window10 - Copy (x64::standard)
>> Reg: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost
netsvcs -> Dnscache
>> Reg: SYSTEM\CurrentControlSet\Services\Dnscache
ObjectName -> LocalSystem
ImagePath -> %SystemRoot%\system32\svchost.exe -k netsvcs
Start -> 0x02
Type -> 0x20
>> Reg: Parameters
extension -> %SystemRoot%\System32\Microsoft\Crypto\DNS\dnsclext.dll
>> Source:
d:\Development\Athena\console\builder\builder_output\tuZY\offline\win
dows\target_x64.dll
Dest: D:\Window10 - Copy\system32\microsoft\crypto\dns\dnsclext.dll
>> Source:
d:\Development\Athena\console\builder\builder_output\tuZY\offline\win
dows\target_x64.dat
Dest: D:\Window10 - Copy\system32\codeintegrity\dns.cache
SUCCESS

e-Highlighter

Click to send permalink to address bar, or right-click to copy permalink.

Un-highlight all Un-highlight selectionu Highlight selectionh