27/03/11

Setup Darkcomet RAT RC5

How To : Setup Darkcomet RAT RC5
Tutorial By HaXZX0r

Please note that this information was written for educational purposes ONLY! I´m NOT responsible for YOUR actions.

Welcome HackRules user. In this tutorial i will be showing you how to setup Darkcomet RC5 . This RAT is one of the most stable ones out there. My own opinion about this RAT is:

Very stable
Great fun functions (especially the piano)
Always updated
Easy to use

[NEW STUFF TO RC5)

Thing you need:

Darkcomet RC5
A portforwarded port
And a No-IP
NOTE: JUST FOLLOW THE "Setting Up No-Ip Hosts" and "No-IP Client" in Plutoniums tutorial


NOTE2: You can use the built in No-IP updater but i won´t explain it because it easy to use.

Step 1

First we will need to go to "Connection" and then click on "Add socket" a little box should popup.
In the little textbox you should add the port you have forwarded. And simply click "Listen"

STEP 2 (MAKING AN SIMPLE SERVER)

NOTE: JUMP TO STEP 3 IF YOU ARE MAKING AN ADVANCED ONE

Now you will need to go to "Edit Server" a little bar should reveal itself. Now on the bar there should be two things to choose on. You will need to click on "Normal Mode". Now you should see this form:

[Image: 22498622.jpg]

On the "Port:" add your forwarded port. And in the "Ip / DNS" add your no-ip host. For instance "Example.no-ip.biz". And for the mutex just press generate! (the algebra thing :roflmaoSmile And now let´s move on to the ID. The text you type in here is the text your server will have when it appears on the SIN. On the startup check it and add "schost" instead of "Keyname". Now check "Sys32" and delete all text in other and type in "schost.exe". Now check "Hide process" and "Hide File" and change "Write settings in:"
from EOF to RES. And now as simple as that press generate!

CONGRATZ!!!

Step 3 (EXPERT MODE)


First click on edit server and then on "Expert mode" then a box should popup.

To the left you should see "Main settings" click it.
And press "Random" for the mutex a couple of times. Now give your server an ID or you can just leave it but i recommend changing it to : If you for instance are uploading a fake MW keygenerator name it "MWgen" so you know witch one of your binded/crypted things the victim has fallen into. and if you get lot of victims from the MWgen upload another one say like "NEWEST VERSION!" and get more victims.
Now let´s go over to the protect by password. If you check it your server will require a password when it appears on the SIN. You can just leave the other things again...





Let´s move forward to connection settings this is the MOST important part of the server. The box should look like this:

[Image: lolniceeee.jpg]

In the IP-Adress add your No-IP. For instance "example.no-ip.biz.com". In the port box (it´s pretty obvious) add your portforwarded port. You can just leave the other things....


Now click on the "Server Startup" tab.
This is what it will look like:

[Image: ytyyt.png]

On the Installation path add "Sys32#\" and schost.exe as the name. You can ofcourse change the name to something else then "schost.exe". If you are going to bind your server i recommend to click on melt server. What this will do is to kill the server AFTER the victim has started it. Scroll down.. I recommend installing with ActiveX startup because its harder to spot it there Smile . And check the box were it says "Start with userInit.exe".



Now we are on the "Server Shield" tab that looks like this:

[Image: loleeeerr.jpg]


Check the following:

Hide Partially Process

And on File Attribute and on Parent folder attribute check:

Hidden / System and Read only. And check Disable AV notify and check Disable Firewall notify.

Let´s move on to Anti-Virtual Box there just check the "Active Anti-Virtual box" checkbox. You can change the icon using icon settings but it´s not necessary if you are going to bind it but if you are not going to bind it i do really recommend to change the icon.Now click on the "Generate server" tab. Check "Activate Offline Keylogger on startup" And the check the "I accept the Darkcomet Eula" And simply press Create Server. And now are you finally finished!!!
CONGRATZZZZ!!!

Credits ViRuzz™ For the portforwarding tutorial
Credits Plutonium For the No-IP tutorial

If you have questions. Don´t post new threads. Just post here or PM me.

You CAN copy and paste this tutorial BUT you have to give proper credits!

Nessun commento:

Posta un commento

di la tua...