Wednesday, April 25, 2012

Hi everyone,

This tutorial will explain how to set up and use the DarkComet RAT, a remote administration tool, with pictures.

Most remote administration tools require port forwarding because for the packets to reach your computer through the router, the router needs to know which computer on the network to send the packets to; you tell the router to forward any packets sent to specific port to a specific address on the network. We also need to set up a no-ip account and host because almost everyone has a dynamic IP address which means your IP address can change any moment and you will loose all your slaves/bots; no-ip prevents this by telling all bots to resolve your no-ip host which tells the bots what your IP address is.

Let's get started

Setting up no-ip

  1. Navigate to no-ip.com in your browser.
  2. Click on "Create Account"
    [Image: n336h.png]
  3. Click "Sign Up" under Free DNS.
    [Image: oazF8.png]
  4. Enter your details and press "I Accept, Create my Account".
    [Image: U1EL7.png]
  5. You will receive an email with an activation link. Click it to activate your account.
    [Image: 5iFId.png]
  6. Login to your account and you will be in your control panel, press the large "Add a Host" button.
    [Image: bjYBS.png]
  7. Enter a host name in the Hostname field that doesn't look suspicious. I use "socksproxy1" for example to make it look like it's just a proxy, even though it's not. Choose any domain they have, it doesn't matter; just make sure you remember it.
  8. Don't change anything else, it's good as it. Your IP should be in the IP Address field.
  9. Press "Create Host".
    [Image: IIuv1.png]


Portforwarding

  1. Navigate to your router's internal IP address using a browser. This is generally 192.168.0.1 but it varies from model to model; I have a NetGear router. You can Google your router's model name and you will most likely find it.
  2. Enter your login details. If you don't know them, ask your parents, if they don't know and your router is furnished by your Internet service provider you can try finding the details they gave you; or you can Google your router's model name and "default password" or something alike. It will generally yield results like "admin admin".
    [Image: YqvNX.png]
  3. Click "Services".
    [Image: WuKFD.png]
  4. Click "Add Custom Service".
    [Image: qlqee.png]
  5. Enter a name such as "Remote Administration" and select "TCP/UDP" and enter 1604 into both port fields. Press Apply.
    [Image: PKLJT.png]
  6. Click "Firewall Rules".
    [Image: eQpSl.png]
  7. Under "Inbound Services", press "Add".
    [Image: 6jrWR.png]
  8. Select "Remote Administration" from the drop down menu. Make sure it's set to "ALLOW always" for the Action drop down menu.
  9. Open command prompt. Hold the Windows button on your keyboard and press R. Type cmd.exe and hit Enter.
    [Image: ZmD1c.png]
  10. In the command prompt window, type ipconfig and hit Enter.
  11. Find your main adapter's IPV4 address. In my case it's 192.168.0.5. Enter it into the "Send to LAN Server" field.
    [Image: WtVLk.png]
  12. Press "Apply".
    [Image: S0qGd.png]
    Congratulations! You've just portforwarded. If you don't use a NetGear router, navigate to Portforward.com and find your model. Follow their instructions to portforward, use port 1604.
    Note: I'd gladly write the instructions here if there weren't over 9,000 router models.




Downloading and setting up DarkComet

  1. To download orginal Dark comet rat please post ur email below.. i will send u all the orginal copy of last version.. as the orginal site is no longer awailable (seized by fbi)
  2. You'll be presented with a RAR archive, extract it using free 7-Zip or paid WinRAR.
  3. Open the folder you extracted DarkComet to and run DarkCometRAT.exe.
    [Image: 6lM3x.png]
  4. Select the "Socket / Net" at the top of the DarkComet window.
    [Image: VyzXj.png]
  5. Right click near the top list view and press "Add port to listen".
    [Image: 1OKUE.png]
  6. Type in 1604 or whatever port your forwarded. Uncheck "Try to forward automatically (UpNP)"; press "Listen".
    [Image: XOPo1.png]
  7. Press the large blue drop down menu in the upper left hand corner and click on "Client settings".
    [Image: gjiTH.png]
  8. Set up your settings like in the picture, however for the password, you can either use a small and simple password like "abc123" or "01010", but I generate a password from the Gibson Research Foundation. The password doesn't really matter as this is only for network encryption. You can leave it blank to disable password encryption, however I use it so it's more difficult to sniff the packets that would be an obvious give away.
    [Image: a7NRR.png]
  9. Double click the "No-IP Updater" on the left side of the settings window.
    [Image: PQ6Z5.png]
  10. Enter your host name, I entered socksproxy1.no-ip.org, and enter your login for the no-ip website, ensure that the "Auto update" check box is checked and then click "Update DNS".
    [Image: Rlq2o.png]
  11. Close the client settings window and click on the blue drop down menu again in the upper left hand corner and click on server module and then "Full".
    [Image: RYzOC.png]
  12. If you entered a password in the client settings window before, Check "Security Password" and enter the password you entered. Press the "Generate" button several times next to the "Process Mutex" field. This will ensure that your slave won't be able to run the server twice by creating a mutual exclusion. If you plan on using the server in a crypter or distributing it on people who are likely to run it in a sandbox, make sure that "Active FWB" is unchecked.
    [Image: gHb5h.png]
  13. On the left hand side of the window, click on "Network Settings". In the "IP/DNS" field enter your no-ip host name and for the "Port" field enter the port you forwarded; once you've entered the details, click "Add this configuration".
    [Image: jibKr.png]
  14. Click on "Module Shield" and ensure that the top three check boxes are checked to make the server more difficult to find.
    [Image: D0ZXF.png]
  15. Select "Build Module" and click "Build Server". You'll be prompted where to save the file, save it where you can retrieve it later.
    [Image: QfDUl.png]

Congratulations! You just port forwarded, set up no-ip, and downloaded + set up DarkComet. I worked on this for around 6 hours or more, so if you enjoyed this tutorial, leave a thanks on the coment section
Hopefully this helped you,

30 comments:

  1. this is the best tutorial i have ever read...i will share this site........thanxxxxxxxxxx

    ReplyDelete
  2. wow very detailed tutorial.. i lov3 ur blog

    ReplyDelete
  3. How to get slaves bro??? i need cryptor too..plz post it soon

    ReplyDelete
  4. For the portforwarding part do you need to setup a static ip adress? Because on portforward.com thats what it's saying

    ReplyDelete
    Replies
    1. On the very last step, when i build the stub and save it, norton says its a threat called: Backdoor.Graybird, what should i do?

      Delete
    2. hey bro i said disable ur Anti virus first.. this thing aint Going to hurt ur pc,,,, BUT dONOT cLICK ON THE SERVER.EXE AFTER u built it....

      Delete
    3. oh ok thanks i was clicking on the server.exe

      Delete
  5. if u want to remove that server.exe from your computer u should go to taksmangaer and click on process and end the server.exe process!! SIMPLE

    ReplyDelete
  6. can anybdy tell me if i not forward the port is it going to work

    ReplyDelete
  7. u can use it without portforwarding ur computer modem...

    to use it click on the listen to new port in dark comet and enable listen automatically add port number 1604 and then press ok... after that go to canyouseeme.org and see the port..

    ReplyDelete
  8. if anyof you want to portforward for free ad me on Skype- Duelhhat

    i will do it for u

    ReplyDelete
  9. very nice tutorial..cool blog

    ReplyDelete
  10. gre8 Tut! nice blog ..keep going bro

    ReplyDelete
  11. can you send dark comet to qwertyqwertyqwerty83@dispostable.com

    ReplyDelete
  12. how can i share this over an interesting email for my target to click???... please help heartofpiro6060@yahoo.com

    ReplyDelete
  13. Hello!! Hello! i have done everything said but when i click 'build stub' i get a error showing'Generation aborted by the user' what should i do to remove it? how to fix it..Plz reply...!

    ReplyDelete
  14. hello bro its me rickymike.. can i have the link .. thanks great tutorials too

    ReplyDelete
  15. Hello my no-ip updater can not connect, it gives me an error of "can't join the remote server, try later..... i don't know if it because i have not portforwad...... pls help me out...

    ReplyDelete
    Replies
    1. ADD ME ON YAHOO.. AND TELL ME THE PROLEMS.. I WILL TRY TO HELP

      slaidersafehacker@yahoo.com

      Delete
  16. Olá, my send Darck Comat 5.3, my e-mail gandnet@live.com
    bay,.

    ReplyDelete
  17. hy can you send me i download link for DC, please, thanks!
    email mariorossi11@hush.com

    ReplyDelete
  18. hello bro it's me adoxman on yahoo messenger, please send me the dark comet files...i will buzz you on yahoo. thanks bro you got the best blog.

    ReplyDelete
  19. please send me the dark coomet my E-mail is afajack007@hotmail.com

    ReplyDelete
  20. hello whiz, please can you send me i download link for DC. Email: cassfishbone@gmail.com. thanks

    ReplyDelete
  21. wow..nice tut bro, pls i need the DC here is my email: sherymilan@gmail.com Thanks

    ReplyDelete
  22. davesolo949@yahoo.com please send me cool stuffs. feel so good going tru ur tuts.

    ReplyDelete

adf popup

adf

MY SKYPE

Powered by Blogger.

Random Posts

Featured Post

Form Grabber Released Works With IE,CROME and FIREFOX ,Unicode support [ 14-02-2016]

Hello guys! here i am releasing My form grabber Today, i have been coding this for oven 6 months and finally its time for public sales.....

Followers

Recent in Culture

News

Lorem 1

Pages

Popular Posts

Popular Posts