Vault 7: Projects

This publication series is about specific projects related to the Vault 7 main publication.
Pg. 07
Boot PersistenceBoot PersistenceBoot
Persistence
30.memload
Command: memload pre={number} post={number} nickname={string} filename={string}
Description: load a dll onto the target
pre - amount of time prior to command processing (0-default)
post - amount of time after command processing (0-default)
nickname - a unique name used for this module
filename - specific dll module to load on target
Examples:
memload pre=0 post=0 nickname=nick filename=c:\\temp\\a.dll
31.memunload
Command: memunload pre={number} nickname={string}
Description: unload a dll already loaded on target
pre - amount of time prior to command processing (0-default)
nickname - specific nickname used during memload
Examples:
memunload pre=0 nickname=nick
32.set
Command: set pre={number} post={number} name={value}
Description: update a specific configuration setting on target
pre - amount of time prior to command processing (0-default)
post - amount of time after command processing (0-default)
name - specific name of configuration
internval={number}
jitter={percent}
bootdelay={number}
hibernatetime={number}
taskingdelay={number}
domains={string}
port={port}
proxyport={port}
proxyaddress={ipaddress}
useragentstring={string}
fileprocessingpath={string}
batchexecutiontimeout={number}
commandexecutiontimeout={number}
maxthroughput={number}
maxcpuutilization={percent}
maxprocessingdatasize={number}
uninstalldate={date(YYYY-MM-DDTHH:MM:SS)}
deadmandelay={number}
beaconfailures={number}
killfilepath={string}
Examples:
set pre=0 post=0 interval=57000