Friday, January 23, 2015

Trojan creating using RAT


Now, here is the post for making of simple Trojan using DARKCOMET RAT:

Before making a Trojan get some information about it on this link: Detail About Trojan.
 
RAT: A Remote Administration Tool (RAT) is a piece of software that allows a remote "operator" to control a system as if he has physical access to that system. Malicious RAT software is typically installed without the victim's knowledge, often as payload of a Trojan horse, and will try to hide its operation from the victim and from security software.

Many Trojans and backdoors now have remote administration capabilities allowing an individual to control the victim's computer. Many times, a file (often called a client or stub) must be opened on the victim's computer before the hacker can have access to it.



Many clients/stubs will display a fake error message when opened, to make it seem like it didn't open. Some will also disable antivirus and firewall software. A well-designed RAT will allow the operator the ability to do anything that they could do with physical access to the machine.




Requirements:
  1. DarkComet RAT
  2. Host (you can go for no-ip.com) and a DUC (Dynamic DNS Update Client).
  3. Virtual Machine
  4. VMware/Virtual Box

Step 1: Downloading DarkComet & DUC:

  • Download Darkcomet here Darkcomet 5.31 
  • Extact the downloaded RAR file of Darkcomet
  • Sign up if you do not have no-ip account or sign in if you have already created the account.
  • Go to Add Host
  • You can choose any name for free host (like xyz.no-ip.biz)
  • Finally click on Add Host after selecting the host name
  • Now download DUC (Dynamic DNS Update Client)
  • Install DUC
  • Sign-in with your account

Step 2: Using DarkComet:
  • Open DarkComet
  • Choose any port number (like 100,80,81,etc). The default port is 1604.
  • Now go to Full Editor Mode (Expert Mode). 


  • The "Main Settings" will open the click twice or thrice on the Random.


  • Then click on "Network settings" (This is the main part of Trojan making), write the IP/DNS
  • Open the DUC and go to "Edit Host" and write down the host name in IP/DNS box.


  • Click on add host
  • Go to "Module Startup"


  • Go to next one that is "Install message" (this is optional)


  • Go to "Module Shield"


  • Choose icon (if you want this, it is also optional)


  • Now finally click on "Built The Stub"


  • Save this Trojan and test this on any Virtual Machine like VMware/Virtual Box.
  • It will surely work now and send this Trojan to victim.

NOTE: The Firewall and Antivirus programs should not be activated on victims system. If any of these things are activated, then it will detect and delete the Trojan automatically from the victim's system.


Terms & Warning:
Use this script for educational purposes only and for your self knowledge.
Pro Hack Tricks Blog Team, its Author, Admin cannot be held responsible for any legal action or other action taken against you if you use this script illegally.
Use at your own risk. But remember no one is untraceable.

No comments:

Post a Comment