Showing posts with label RATs. Show all posts
Showing posts with label RATs. Show all posts

How to run RAT's without Port-forwarding.

There are plenty of softwares out there that need port-forwarding to work. When I started using them there was a big Shock waiting for me, that my router do not support Port-forwarding so what i did was to research about it and found this simple trick.
All you need to do it to download and Install ProXPN . It is a free VPN service, by intsalling it you will not need to port forward because it will establish a direct connection to internet in addition to that it is a VPN so you will also be quite anonymous on internet (NOT TOTALLY!). The following is the Installation Guide:




Windows Installation of proXPN

The proXPN setup wizard

Click "Next "

License agreement

Just click "Agree" here to continue installation.

Installation

Let the installer run until completion.

All finished

Just click the "Finish" button to complete the installation.

New Account Setup

Welcome to the proXPN client. Click the "Don't have an account?" link to create a new account.

Enter your email address and the password of your choice.

Enter your email address and the password of your choice. Then check the license agreement checkbox and click the "I agree - create account" button.

Finish signup

Click "OK" to finish the account signup process in the software client.

Verify your signup request

Check your email for a greeting email from proXPN. In that email is a link which you will need to click in order to activate your free account. If it doesn't show up within a reasonable timeframe, make sure to check your spam folders. Once you've clicked the link in the email, your account should be active. Go ahead and click the "connect" button to connect to proXPN

Connected

Once you connect, the system tray icon will turn green. You're now surfing safe and secure, courtesy of proXPN

TUT LINK: http://proxpn.com/download.php
Share:

RAT (Backdoor) Entering in to some one system

This post  is written by
hackingandcracking@googlegroups.com
thanks to him 


Hello Fellow Hackers.

In this tutorial you going to learn more about RAT(s) and how they work. Well RAT(s) are usually used for hacking, and they are detected as backdoors.

 




 

Popular RAT programs

[x]Cerberus Rat
[x]ProRat
[x]Poison Ivy
[x]Turkojan Gold Rat
[x]Sub Seven
[x]NetBus RAT
[x]Spy-Net
[x]LostDoor
[x]BitFrost
[x]Nuclear RAT
[x]Bandock
[x]Pain Rat
[x]Beast
[x]Optix Pro
[x]DARKMOON
[x]Net-Devil
[x]Apocalypse Rat
[x]CyberGate
[x]Bandook
[x]Shark

You will only need file Crypter to make them FUD again.

Remote Administrator Tools Q&A.

Q - Whats RAT?
- A RAT is also a shortcut called Remote Administrator Tool. It is mostly used for malicious purposes, such as controlling PC's, stealing victims data, deleting or editing some files. You can only infect someone by sending him file called Server and they need to click it.

Q - How they work?
- Some RATs can spread over P2P file sharing programs(uTorrent, Pirate Bay etc.), Messangers spams(MSN, Skype, AIM etc.).

Q - Download?
A - Well you can find any type of RAT just mail me or Google it

Q - How do I control server?
- Once installed, RAT server can be controlled via RAT client. From IP list box you choose PC and connect.

Q - What do I need to setup RAT?
- Well, you will need Windows OS, open port & RAT. To forward your port scroll for tutorial link or click this URL.

Q - How do I port forward?
- Port forwarding is easy and important for RAT. Well, you need open port because RAT connects through open port and bypass firewall. Open your web browser and write your IP and connect to your rooter(write Username: Admin & Password: Admin), open port forward page and write port you want and your IP. Well that's all you need to do and now you got open port Smile

Q - How do I make my server FUD?
A - If you want to make your server FUD again, you will need crypter(you can find free FUD one here.). Also, you can hex edit your server, but be careful some servers can crash after hex editing, any way check out this cool tutorial How to make FUD with hex editing.

Q - How do I remove server if I infect myself?
- When you infect yourself, first what you going to do is to connect to your PC. Some RATs have function to uninstall servers, well you click that and you uninstall it. Well there is another way, download MalwareBytes' Anti-Malware and scan whole computer for trojan.

Q - Legal or illegal?
- Well some RATs are legal, and some are not. Legal are the one without backdoor left, and they have abillity to close connection anytime. Illegal are used for hacking and they can steal data(Credit Cards, Passwords, private data etc.).

Legal:
  • TeamViewer - Access any remote computer via Internet just like sitting in front of it - even through firewalls.
  • UltraVNC - Remote support software for on demand remote computer support. VNC.Specializing in Remote Computer Support, goto my pc, goto assist, Remote Maintenance
  • Ammyy Admin - Ammyy Admin is a highly reliable and very friendly tool for remote computer access. You can provide remote assistance, remote administration or remote
  • Mikogo - Mikogo is an Online Meeting, Web Conferencing & Remote Support tool where you can share your screen with 10 participants in real-time over the Web.

Illegal:
  • Spy-Net
  • Cerberus Rat
  • CyberGate Rat
  • SubSeven
  • Turkojan
  • ProRat
Q - Where and how do I spread?
- There are few different ways to spread your server. You can spread on warez websites, P2P file sharing websites(uTorrent, Pirate bay etc.), YouTube etc. Well some people use custom made Auto-Spreaders programs to spread their server. But best and most effective way to spread is when you FUD your server.

Q - Whats DNS host?
- The Domain Name System (DNS) is a hierarchical naming system for computers, services, or any resource connected to the Internet or a private network. It associates various information with domain names assigned to each of the participants. Most importantly, it translates domain names meaningful to humans into the numerical (binary) identifiers associated with networking equipment for the purpose of locating and addressing these devices worldwide.

Q - What can RAT do?
- Here is list of basic features:
• Manage files
• Control web browser(Change homepage, open site etc.)
• Get system informations(OS Version, AV name, Ram Memory, Computer name etc.)
• Get passwords, credit card numbers or private data etc.
• View and remote control desktop
• Record camera & sound
• Control mouse
• Delete, rename, download, upload or move files

Q - What's reverse Connection?
- A reverse connection is usually used to bypass firewall restrictions on open ports. The most common way a reverse connection is used is to bypass firewall and Router security restrictions.

Q - Whats direct connection?
- A direct-connect RAT is a simple setup where the client connects to a single or multiple servers directly. Stable servers are multi-threaded, allowing for multiple clients to be connected, along with increased reliability.

Q - Can I get traced when I rat somebody?
- Yes and no. Depends on victim, it is really hard to remove infection or even trace a hacker. There are tools like WireShark, but it's really hard to trace, because PC usually got over 300 connections. So don't worry. Cool

Thanks for reading it
Share:

Spy-Net [RAT]

Is it better than DarkComet rat? Hard to tell but try it, we recommend it strong and it’s very east to use even for the “firsttimers”. But be careful do not start your own rat on you computer, thats a normal mistake.

.

First you need to download these two files:

No-ip DUC and Spy-Net RAT
[download=http://www.multiupload.com/R1SJ8PKX36]

Then we need to setup Our No-ip account

1. Go to www.no-ip.com
2. Create a new account
3. Confirm it from your E-Mail
4. Login To No-IP website
5. Select Add a host
6. Click Create Host
7. Write what you want the name of your No-IP adress to be
[Image: igQE.png]
8. Click Create Host
9. Download No-IP DUC , Install it , then login with your Email and password.
10. Once you do You will see your server there. Click on the icon and it will be smiling (:D)

Port forwarding

I Will not explain that much
1. Go to http://www.portforward.com
2. Click CTRL+F
3. Select Your Route
4. Follow the guide and do this with the port 81
.

Setup Spy-Net!

1. Go to File -> Create Server -> Select any of the profiles
2. Connection
[Image: icvK1s.png]
Where it says “Your_Dns_here” Click once on it and click DELETE. Then click ADD and write your No-ip adress , and click Add or OK i dont know what it was
3. Installation
[Image: icvM90.png]
Leave everything as it is… ( these the options i use personally)
4. KeyLogger
[Image: icvSXO.png]
And i prefer using the Backspace option too , as if someone logins to facebook , and his email is saerdna798@hotmail.com , and he misspelled something and it showed as saerdna879@hotmail.com , im sure he will use backspace and fix it , so this will be recorded on your keylogger and you can get the passwords easier.
5. Anti-Debug
[Image: icv1qi.png]
Okay select all of them , if you want to test it on sandboxie , unselect the first oneb
6. Final Step
[Image: icrzVc.png]
Chose anything you want , for changing the icon click on the Picture icon on there and select any .exe or .ico files…
[Image: spynet26989.png]
.

F.A.Q



Content
Q. Why when i try to access Spy-Net.exe is says cannot access the specified device path or file?
A. This means you have an antivirus that deletes the virus instantly after you download it , antiviruses such as AVG do it , you need to UNINSTALL AVG to make it work. __
Q. How do i make my file undedectable by antiviruses ? [FUD]
A. Use a crypter.
Share:

[Tutorial] How to set up DarkComet 3[Detail Pics]

STEP 1:
First, go to the official website of Darkcomet, here. And click on "Download", like on this picture. 
[Image: darkcomet1.png]

STEP 2:
After clicking "Download", choose the version of DarkComet that you want on the following image, I choose DarkComet FWB 3.2. class="Apple-style-span" style="color: #cccccc; font-family: Verdana,Arial,sans-serif; font-size: 13px; line-height: 18px;">
[Image: darkcomet2.png]

STEP 3:
Check all before downloading.
[Image: darkcomet3.png]

STEP 4:
After starting DarkComet you must accept the "Terms and condition".
[Image: darkcomet4.png]

STEP 5:
Now, let Darkcomet aside for a moment, You need to register No-IP, by clicking here.
After completing your registration form, you must go on "Manage Hosts".
[Image: darkcomet5.png]

STEP 6:
Now click on "Add a Host".
[Image: darkcomet6.png]

STEP 7:
After clicking "Add a Host" you must choose a "Hostname".
[Image: darkcomet7.png]

STEP 8:
Now you'll need to download "No-IP Dynamic Update Client v3.0.4" but in first, choose your "Operating System".
[Image: darkcomet8.png]

STEP 9:
Now that you've chosen your "Operating System"you can download.
[Image: darkcomet9.png]

STEP 10:
Now, you'll need to install No-IP.
[Image: darkcomet10.png]




STEP 11:Now, choose the install location and click on "Next >".
[Image: darkcomet11.png]

STEP 12:
Now, choose start menu folder, and click on Install.
[Image: darkcomet12.png]

STEP 13:
Now you will configure No-Ip, start it and enter your E-mail address & password entered on No-IP.org.
[Image: darkcomet13.png]

STEP 14:
Now you must select you Host, check you Host and click on Save.
[Image: darkcomet14.png]

STEP 15:
It's OK, you can start up DarkComet 3.2 FWB. Now you must add server socket.
[Image: darkcomet15.png]

STEP 16:
Now you edit your server, you will choose the "Server module (634,50 KB)".
After clicking on "Server module (634,50 KB) a window called "Server Editor - Installer version <3.0.2>" will appear.

[Image: darkcomet16.png]

STEP 17:
Now you start to edit the server.
[Image: darkcomet15.png]

STEP 18:
Now, must enter your No-IP and test it, if the message is green, it's OK.
After, you can click on "Build module".

[Image: darkcomet18.png]

STEP 19:
Now, you can create the server, save it, and open it.
[Image: darkcomet19.png]

STEP 20:
By opening your server, if it worked,a message at the bottom right of your screen will appear.
[Image: darkcomet20.png]





Here is the final result.
[Image: darkcomet21.png]

Now the server is set up and totally ready.
====================================================================
This article was originally published on :: http://www.hackforums.net/showthread.php?tid=1218482 and written by :: XxHaTeD-RaTeDXx
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Share:

DISCLAIMER

The information provided on hottechtips.blogspot.com is to be used for educational purposes only. The website creator is in no way responsible for any misuse of the information provided. All of the information in this website is meant to help the reader develop a hacker defense attitude in order to prevent the attacks discussed. In no way should you use the information to cause any kind of damage directly or indirectly. The word “Hack” or “Hacking” on hottechtips.blogspot.com should be regarded as “Ethical Hack” or “Ethical hacking” respectively. You implement the information given at your own risk.