Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!

Top Posters

Who's Online (1)

Powered by Vanilla. Made with Bootstrap.
[help] Setting up and distributing RAT.
  • Am0s
    Posts: 3
    Hello,
    I'm completely new here (honestly, I just made my account now to post this) as well as new to the world of hacking. Originally I was getting my information off of hackforums.net but it appears that the website is down (if/when it comes back up... somebody let me know)
    From hackforums, and various places on the web (such as youtube) I've come to understand, on at least a basic level, how to use and set up a RAT (really all I am interested in at the moment). However, I am still yet to really get it to work out properly.

    (I am using DarkComet 3.2 at the moment, and it is installed on a windows XP laptop. I am also when I am attempting to try my RATs using a Windows 7 laptop with Sophos AV.)

    The things I need help with still
    1. Crypting- I can not for the life of me manage to figure out how to effectively use a [FREE] crypter, it appears. They either don't seem to work right when they don't set off the AV, or they are always caught. Which is likely partly me doing it wrong, and partly me using bad software

    2. Setting up a Server- on the surface, this seems like a truly stupid thing with how many DarkComet tutorials I've read/watched. But I still don't get quite what settings are best for my purposes. Also, a recent change has occurred. Whenever I try to use my no-ip.org address or my external IP for the server settings, I can't find a single port it will connect on.

    3. Distributing the server effectively - Again, I'm sure I seem like an idiot for asking this. But I can't seem to get the stuff distributed right. There are some machines where I actually have access to the computer itself because the owner permits me for various reasons, yet I can't seem to get a server to work on it. Other ones, I am sure I can SE them into running the application if I send it via Skype or something (some actually have). And others, I doubt I can get such simple access. But on all of them, even if I know that they execute the server, I don't get a new connection.

    4. "hitching" - I am sure you are cringing, as this is not the real name for it. But isn't there a way I can use RAT somebody's computer if somebody ELSE installed a server on them? I know not at all how to do so if this is the case.


    I'm not trying to be a straight up Black Hat here. Most of the time I try to distribute a Trojan, it is because I am trying to help the person i none way or another (sometimes not a technical-oriented way though.) Although, I do plan to have some amusement while I'm at it and maybe even gleam a bit of information out of people that I couldn't gain otherwise.
  • Sh3llc0d3
    Posts: 1,910
    HF is online, just to let you know. They will have better resources on how to setup darkcomet, I used to offer setup services however I don't have the petience anymore :P

    I wrote a paper some years ago on nothing more than spreading. ANYONE can do it. Literally anyone can. There is no science to it. There are so many tutorials and tips around, use some imagination and come up with a unique method to spread and you'll get good results.

    If you want to help people using such a method, then use a trojan made for that purpose. Teamviewer being the obvious choice.
  • Am0s
    Posts: 3
    O__O I think I got banned on HF... I never even posted there, so I wonder what it was for. D:

    Spreading itself is, as you said, quite simple. It's just that for some reason when I spread it to people, I don't seem to get a new connection out of it (even when I thought for sure (I had crypted it)

    And i don't -just- want to be able to use it to help somebody out with a minor issue... there are always some lulz to be had as well. So TeamViewer won't cut it ;) (tried before briefly... didn't really like it too much)
  • Sh3llc0d3
    Posts: 1,910
    Banned without posting... thats interesting

    If people are accepting the file and connections aren't showing up then it's a problem with your connection. It's not setup properly. Either that or your crypter is corrupting the server. Assume it's a connection problem until you know it works. Take all malicious aspects off and try it on yourself. if it runs on your pc it'll run on others.

    And i don't -just- want to be able to use it to help somebody out with a minor issue... there are always some lulz to be had as well. So TeamViewer won't cut it ;) (tried before briefly... didn't really like it too much)


    Well Teamviewer has no illegal uses for it, probably why it doesn't suit your needs. If you want a tutorial on setup try youtube. Plenty about.
  • Xin
    Posts: 3,251
    I suggest you learn a bit more about rats and malware for the options so you know which ones to pick, but we can help explain them if you screen shot.

    As for free crypters its rare for a free crypter to go more than 3 days fud so dont use them.

    As for spreading best way is exploit packs, otherwise just use torrents, warez and youtube to spread it.
    Xin
  • Sh3llc0d3
    Posts: 1,910
    One big hint is facebook... although I made my method public on HF :( Got stupid amounts of hits.
  • Corrosion
    Posts: 121
    ha dude, you've gotta setup a vm and test your shit before you release it to see if its even working and dude.... open your ports up (im not fucking with you, pick a port and open it... not all of em)