Learn Full Metasploit (Free Ebook By Ownedsec)

Tuesday, 4 October 2011

Bruteforce Subdomains with DNSMap


his one's really quick - if you've ever needed to know some subdomains of a site, consider "dnsmap". It will bruteforce a bunch of subdomains for any domain you give it - and you can customise your own domain. It's pretty simple. Here's the linux instructions:
DOWNLOAD IT

    tar xf dnsmap-latest.tar && cd dnsmap


3. Make sure you have a C compiler installed (i.e. GNU C++ Compiler) and compile it:

    gcc dnsmap.c -o dnsmap


4. Make it executable:

    chmod +x dnsmap


5. Run it:

    ./dnsmap domain.com


6. View results:

    dnsmap - DNS Network Mapper by pagvac
    (http://ikwt.com, http://foro.elhacker.net)
    Searching subhosts on domain google.com

    ap.google.com
    IP Address #1:209.85.173.103
    IP Address #2:209.85.173.104
    IP Address #3:209.85.173.147
    IP Address #4:209.85.173.99

    blog.google.com
    IP Address #1:72.14.207.191

    catalog.google.com
    IP Address #1:74.125.19.100
    IP Address #2:74.125.19.101
    IP Address #3:74.125.19.102
    IP Address #4:74.125.19.113

    catalogue.google.com
    IP Address #1:74.125.19.113
    IP Address #2:74.125.19.100
    IP Address #3:74.125.19.101
    IP Address #4:74.125.19.102

    directory.google.com
    IP Address #1:209.85.173.103
    IP Address #2:209.85.173.104
    IP Address #3:209.85.173.147
    IP Address #4:209.85.173.99

    download.google.com
    IP Address #1:209.85.173.99
    IP Address #2:209.85.173.103
    IP Address #3:209.85.173.104
    IP Address #4:209.85.173.147

    downloads.google.com
    IP Address #1:209.85.173.147
    IP Address #2:209.85.173.99
    IP Address #3:209.85.173.103
    IP Address #4:209.85.173.104

    email.google.com
    IP Address #1:74.125.19.100
    IP Address #2:74.125.19.101
    IP Address #3:74.125.19.102
    IP Address #4:74.125.19.113

    finance.google.com
    IP Address #1:209.85.173.104
    IP Address #2:209.85.173.147
    IP Address #3:209.85.173.99
    IP Address #4:209.85.173.103

    groups.google.com
    IP Address #1:209.85.171.113
    IP Address #2:209.85.171.100
    IP Address #3:209.85.171.101
    IP Address #4:209.85.171.102

    images.google.com
    IP Address #1:209.85.173.147
    IP Address #2:209.85.173.99
    IP Address #3:209.85.173.103
    IP Address #4:209.85.173.104

    labs.google.com
    IP Address #1:74.125.19.113
    IP Address #2:74.125.19.100
    IP Address #3:74.125.19.101
    IP Address #4:74.125.19.102

    mail.google.com
    IP Address #1:209.85.201.18
    IP Address #2:209.85.201.19
    IP Address #3:209.85.201.83

    mobile.google.com
    IP Address #1:209.85.173.193

    news.google.com
    IP Address #1:209.85.171.99
    IP Address #2:209.85.171.103
    IP Address #3:209.85.171.104
    IP Address #4:209.85.171.147

    photo.google.com
    IP Address #1:74.125.47.91
    IP Address #2:74.125.47.93
    IP Address #3:74.125.47.136
    IP Address #4:74.125.47.190

    photos.google.com
    IP Address #1:74.125.47.190
    IP Address #2:74.125.47.91
    IP Address #3:74.125.47.93
    IP Address #4:74.125.47.136

    proxy.google.com
    IP Address #1:64.233.169.4
    IP Address #2:64.233.171.4
    IP Address #3:64.233.179.4
    IP Address #4:64.233.183.4
    IP Address #5:64.233.184.4
    IP Address #6:64.233.187.4
    IP Address #7:66.102.0.4
    IP Address #8:66.102.9.4
    IP Address #9:66.102.14.225
    IP Address #10:66.102.14.241
    IP Address #11:216.239.42.4
    IP Address #12:216.239.53.4
    IP Address #13:216.239.55.5
    IP Address #14:216.239.57.4
    IP Address #15:216.239.59.4
    IP Address #16:64.233.161.4
    IP Address #17:64.233.165.4
    IP Address #18:64.233.167.4

    research.google.com
    IP Address #1:74.125.19.102
    IP Address #2:74.125.19.113
    IP Address #3:74.125.19.100
    IP Address #4:74.125.19.101

    sandbox.google.com
    IP Address #1:209.85.171.81

    search.google.com
    IP Address #1:209.85.173.99
    IP Address #2:209.85.173.103
    IP Address #3:209.85.173.104
    IP Address #4:209.85.173.147

    services.google.com
    IP Address #1:209.85.139.110

    shopping.google.com
    IP Address #1:209.85.171.103
    IP Address #2:209.85.171.104
    IP Address #3:209.85.171.147
    IP Address #4:209.85.171.99

    smtp.google.com
    IP Address #1:209.85.237.25

    sms.google.com
    IP Address #1:209.85.173.147
    IP Address #2:209.85.173.99
    IP Address #3:209.85.173.103
    IP Address #4:209.85.173.104

    support.google.com
    IP Address #1:74.125.19.101
    IP Address #2:74.125.19.102
    IP Address #3:74.125.19.113
    IP Address #4:74.125.19.100

    uploads.google.com
    IP Address #1:72.14.243.49

    vpn.google.com
    IP Address #1:64.9.224.69
    IP Address #2:64.9.224.70
    IP Address #3:64.9.224.68

    www.google.com
    IP Address #1:209.85.173.104
    IP Address #2:209.85.173.147
    IP Address #3:209.85.173.99
    IP Address #4:209.85.173.103

    www2.google.com
    IP Address #1:64.233.179.104

    www3.google.com
    IP Address #1:64.233.179.104

    31 subhost(s) found



Enjoy, and use it legally in your penetration tests.

0 comments:

Post a Comment

Twitter Delicious Facebook Digg Stumbleupon Favorites More

 
Design by ramadan | Bloggerized by ramzan - ramzan 2015 | ramadan 2015