Hi everyone,
This tutorial will explain how to set up and use the DarkComet RAT, a remote administration tool, with pictures.
Most remote administration tools require port forwarding because for the packets to reach your computer through the router, the router needs to know which computer on the network to send the packets to; you tell the router to forward any packets sent to specific port to a specific address on the network. We also need to set up a no-ip account and host because almost everyone has a dynamic IP address which means your IP address can change any moment and you will loose all your slaves/bots; no-ip prevents this by telling all bots to resolve your no-ip host which tells the bots what your IP address is.
Let's get started
Setting up no-ip
Portforwarding
Downloading and setting up DarkComet
Congratulations! You just port forwarded, set up no-ip, and downloaded + set up DarkComet. I worked on this for around 6 hours or more, so if you enjoyed this tutorial, leave a thanks on the coment section
Hopefully this helped you,
This tutorial will explain how to set up and use the DarkComet RAT, a remote administration tool, with pictures.
Most remote administration tools require port forwarding because for the packets to reach your computer through the router, the router needs to know which computer on the network to send the packets to; you tell the router to forward any packets sent to specific port to a specific address on the network. We also need to set up a no-ip account and host because almost everyone has a dynamic IP address which means your IP address can change any moment and you will loose all your slaves/bots; no-ip prevents this by telling all bots to resolve your no-ip host which tells the bots what your IP address is.
Let's get started
Setting up no-ip
- Navigate to no-ip.com in your browser.
- Click on "Create Account"
- Click "Sign Up" under Free DNS.
- Enter your details and press "I Accept, Create my Account".
- You will receive an email with an activation link. Click it to activate your account.
- Login to your account and you will be in your control panel, press the large "Add a Host" button.
- Enter a host name in the Hostname field that doesn't look suspicious. I use "socksproxy1" for example to make it look like it's just a proxy, even though it's not. Choose any domain they have, it doesn't matter; just make sure you remember it.
- Don't change anything else, it's good as it. Your IP should be in the IP Address field.
- Press "Create Host".
Portforwarding
- Navigate to your router's internal IP address using a browser. This is generally 192.168.0.1 but it varies from model to model; I have a NetGear router. You can Google your router's model name and you will most likely find it.
- Enter your login details. If you don't know them, ask your parents,
if they don't know and your router is furnished by your Internet service
provider you can try finding the details they gave you; or you can
Google your router's model name and "default password" or something
alike. It will generally yield results like "admin admin".
- Click "Services".
- Click "Add Custom Service".
- Enter a name such as "Remote Administration" and select "TCP/UDP" and enter 1604 into both port fields. Press Apply.
- Click "Firewall Rules".
- Under "Inbound Services", press "Add".
- Select "Remote Administration" from the drop down menu. Make sure it's set to "ALLOW always" for the Action drop down menu.
- Open command prompt. Hold the Windows button on your keyboard and press R. Type cmd.exe and hit Enter.
- In the command prompt window, type ipconfig and hit Enter.
- Find your main adapter's IPV4 address. In my case it's 192.168.0.5. Enter it into the "Send to LAN Server" field.
- Press "Apply".
Congratulations! You've just portforwarded. If you don't use a NetGear router, navigate to Portforward.com and find your model. Follow their instructions to portforward, use port 1604.
Note: I'd gladly write the instructions here if there weren't over 9,000 router models.
Downloading and setting up DarkComet
- To download orginal Dark comet rat please post ur email below.. i will send u all the orginal copy of last version.. as the orginal site is no longer awailable (seized by fbi)
- You'll be presented with a RAR archive, extract it using free 7-Zip or paid WinRAR.
- Open the folder you extracted DarkComet to and run DarkCometRAT.exe.
- Select the "Socket / Net" at the top of the DarkComet window.
- Right click near the top list view and press "Add port to listen".
- Type in 1604 or whatever port your forwarded. Uncheck "Try to forward automatically (UpNP)"; press "Listen".
- Press the large blue drop down menu in the upper left hand corner and click on "Client settings".
- Set up your settings like in the picture, however for the password,
you can either use a small and simple password like "abc123" or "01010",
but I generate a password from the Gibson Research Foundation.
The password doesn't really matter as this is only for network
encryption. You can leave it blank to disable password encryption,
however I use it so it's more difficult to sniff the packets that would
be an obvious give away.
- Double click the "No-IP Updater" on the left side of the settings window.
- Enter your host name, I entered socksproxy1.no-ip.org, and enter
your login for the no-ip website, ensure that the "Auto update" check
box is checked and then click "Update DNS".
- Close the client settings window and click on the blue drop down
menu again in the upper left hand corner and click on server module and
then "Full".
- If you entered a password in the client settings window before,
Check "Security Password" and enter the password you entered. Press the
"Generate" button several times next to the "Process Mutex" field. This
will ensure that your slave won't be able to run the server twice by
creating a mutual exclusion.
If you plan on using the server in a crypter or distributing it on
people who are likely to run it in a sandbox, make sure that "Active
FWB" is unchecked.
- On the left hand side of the window, click on "Network Settings". In
the "IP/DNS" field enter your no-ip host name and for the "Port" field
enter the port you forwarded; once you've entered the details, click
"Add this configuration".
- Click on "Module Shield" and ensure that the top three check boxes are checked to make the server more difficult to find.
- Select "Build Module" and click "Build Server". You'll be prompted
where to save the file, save it where you can retrieve it later.
Congratulations! You just port forwarded, set up no-ip, and downloaded + set up DarkComet. I worked on this for around 6 hours or more, so if you enjoyed this tutorial, leave a thanks on the coment section
Hopefully this helped you,
this is the best tutorial i have ever read...i will share this site........thanxxxxxxxxxx
ReplyDeleteRealy a Nice Work. Thanks a lot
Deletewow very detailed tutorial.. i lov3 ur blog
ReplyDeleteHow to get slaves bro??? i need cryptor too..plz post it soon
ReplyDeleteFor the portforwarding part do you need to setup a static ip adress? Because on portforward.com thats what it's saying
ReplyDeleteYes you do
DeleteOn the very last step, when i build the stub and save it, norton says its a threat called: Backdoor.Graybird, what should i do?
Deletehey bro i said disable ur Anti virus first.. this thing aint Going to hurt ur pc,,,, BUT dONOT cLICK ON THE SERVER.EXE AFTER u built it....
Deleteoh ok thanks i was clicking on the server.exe
Delete*facepalm*
Deleteif u want to remove that server.exe from your computer u should go to taksmangaer and click on process and end the server.exe process!! SIMPLE
ReplyDeletecan anybdy tell me if i not forward the port is it going to work
ReplyDeleteu can use it without portforwarding ur computer modem...
ReplyDeleteto use it click on the listen to new port in dark comet and enable listen automatically add port number 1604 and then press ok... after that go to canyouseeme.org and see the port..
if anyof you want to portforward for free ad me on Skype- Duelhhat
ReplyDeletei will do it for u
very nice tutorial..cool blog
ReplyDeletegre8 Tut! nice blog ..keep going bro
ReplyDeletecan you send dark comet to qwertyqwertyqwerty83@dispostable.com
ReplyDeletehow can i share this over an interesting email for my target to click???... please help heartofpiro6060@yahoo.com
ReplyDeleteHello!! Hello! i have done everything said but when i click 'build stub' i get a error showing'Generation aborted by the user' what should i do to remove it? how to fix it..Plz reply...!
ReplyDeletetry to run the dark comet.exe as admin?
Deletehello bro its me rickymike.. can i have the link .. thanks great tutorials too
ReplyDeleteHello my no-ip updater can not connect, it gives me an error of "can't join the remote server, try later..... i don't know if it because i have not portforwad...... pls help me out...
ReplyDeleteADD ME ON YAHOO.. AND TELL ME THE PROLEMS.. I WILL TRY TO HELP
Deleteslaidersafehacker@yahoo.com
Olá, my send Darck Comat 5.3, my e-mail gandnet@live.com
ReplyDeletebay,.
hy can you send me i download link for DC, please, thanks!
ReplyDeleteemail mariorossi11@hush.com
hello bro it's me adoxman on yahoo messenger, please send me the dark comet files...i will buzz you on yahoo. thanks bro you got the best blog.
ReplyDeleteplease send me the dark coomet my E-mail is afajack007@hotmail.com
ReplyDeletehello whiz, please can you send me i download link for DC. Email: cassfishbone@gmail.com. thanks
ReplyDeletewow..nice tut bro, pls i need the DC here is my email: sherymilan@gmail.com Thanks
ReplyDeletedavesolo949@yahoo.com please send me cool stuffs. feel so good going tru ur tuts.
ReplyDelete