DMirty:用来收集以下信息:

1. 端口扫描

2. whois主机IP和域名信息

3. 从Netcraft.com获取主机信息

4. 子域名

5. 域名中包含的邮件地址

1、使用方法:

 Deepmagic Information Gathering Tool
 "There be some deep magic going on"

 dmitry: invalid option -- '-'
 Usage: dmitry [-winsepfb] [-t 0-9] [-o %host.txt] host
   -o     Save output to %host.txt or to file specified by -o file
   -i     Perform a whois lookup on the IP address of a host
   -w     Perform a whois lookup on the domain name of a host
   -n     Retrieve Netcraft.com information on a host
   -s     Perform a search for possible subdomains
   -e     Perform a search for possible email addresses
   -p     Perform a TCP port scan on a host
 * -f     Perform a TCP port scan on a host showing output reporting filtered ports
 * -b     Read in the banner received from the scanned port
 * -t 0-9 Set the TTL in seconds when scanning a TCP port ( Default 2 )
 *Requires the -p flagged to be passed

2、收集信息:

 root@shenlan-qianlan:/home/shell# dmitry -winse www.baidu.com
 Deepmagic Information Gathering Tool
 "There be some deep magic going on"

 HostIP:220.181.111.188
 HostName:www.baidu.com

 Gathered Inet-whois information for 220.181.111.188
 ---------------------------------

 inetnum:        220.181.0.0 - 220.181.255.255
 netname:        CHINANET-IDC-BJ
 country:        CN
 descr:          CHINANET Beijing province network
 descr:          China Telecom
 descr:          No.31,jingrong street
 descr:          Beijing 100032
 admin-c:        CH93-AP
 tech-c:         HC55-AP
 remarks:        hostmaster is not for spam complaint,
 remarks:        please send spam complaint to anti-spam@ns.chinanet.cn.net
 mnt-by:         MAINT-CHINANET
 mnt-lower:      MAINT-CHINATELECOM-BJ
 status:         ALLOCATED NON-PORTABLE
 changed:        hostmaster@ns.chinanet.cn.net 20030620
 changed:        hm-changed@apnic.net 20050715
 source:         APNIC

 person:         Chinanet Hostmaster
 nic-hdl:        CH93-AP
 e-mail:         anti-spam@ns.chinanet.cn.net
 address:        No.31 ,jingrong street,beijing
 address:        100032
 phone:          +86-10-58501724
 fax-no:         +86-10-58501724
 country:        CN
 changed:        dingsy@cndata.com 20070416
 changed:        zhengzm@gsta.com 20140227
 mnt-by:         MAINT-CHINANET
 source:         APNIC

 person:         Hostmaster of Beijing Telecom corporation CHINA   TELECOM
 nic-hdl:        HC55-AP
 e-mail:         bjnic@bjtelecom.net
 address:        Beijing Telecom
 address:        No. 107 XiDan Beidajie, Xicheng District Beijing
 phone:          +86-010-58503461
 fax-no:         +86-010-58503054
 country:        cn
 changed:        bjnic@bjtelecom.net 20040115
 mnt-by:         MAINT-CHINATELECOM-BJ
 source:         APNIC

 % This query was served by the APNIC Whois Service version 1.69.1-APNICv1r0 (UNDEFINED)

 Gathered Inic-whois information for baidu.com
 ---------------------------------
    Domain Name: BAIDU.COM
    Registrar: MARKMONITOR INC.
    Sponsoring Registrar IANA ID: 292
    Whois Server: whois.markmonitor.com
    Referral URL: http://www.markmonitor.com
    Name Server: DNS.BAIDU.COM
    Name Server: NS2.BAIDU.COM
    Name Server: NS3.BAIDU.COM
    Name Server: NS4.BAIDU.COM
    Name Server: NS7.BAIDU.COM
    Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
    Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
    Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
    Status: serverDeleteProhibited https://icann.org/epp#serverDeleteProhibited
    Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited
    Status: serverUpdateProhibited https://icann.org/epp#serverUpdateProhibited
    Updated Date: 10-sep-2015
    Creation Date: 11-oct-1999
    Expiration Date: 11-oct-2017

 >>> Last update of whois database: Mon, 10 Oct 2016 01:05:12 GMT <<<

 For more information on Whois status codes, please visit https://icann.org/epp

 NOTICE: The expiration date displayed in this record is the date the
 registrar's sponsorship of the domain name registration in the registry is
 currently set to expire. This date does not necessarily reflect the expiration
 date of the domain name registrant's agreement with the sponsoring
 registrar.  Users may consult the sponsoring registrar's Whois database to
 view the registrar's reported date of expiration for this registration.

 TERMS OF USE: You are not authorized to access or query our Whois
 database through the use of electronic processes that are high-volume and
 automated except as reasonably necessary to register domain names or
 modify existing registrations; the Data in VeriSign Global Registry
 Services' ("VeriSign") Whois database is provided by VeriSign for
 information purposes only, and to assist persons in obtaining information
 about or related to a domain name registration record. VeriSign does not
 guarantee its accuracy. By submitting a Whois query, you agree to abide
 by the following terms of use: You agree that you may use this Data only
 for lawful purposes and that under no circumstances will you use this Data
 to: (1) allow, enable, or otherwise support the transmission of mass
 unsolicited, commercial advertising or solicitations via e-mail, telephone,
 or facsimile; or (2) enable high volume, automated, electronic processes
 that apply to VeriSign (or its computer systems). The compilation,
 repackaging, dissemination or other use of this Data is expressly
 prohibited without the prior written consent of VeriSign. You agree not to
 use electronic processes that are automated and high-volume to access or
 query the Whois database except as reasonably necessary to register
 domain names or modify existing registrations. VeriSign reserves the right
 to restrict your access to the Whois database in its sole discretion to ensure
 operational stability.  VeriSign may restrict or terminate your access to the
 Whois database for failure to abide by these terms of use. VeriSign
 reserves the right to modify these terms at any time.

 The Registry database contains ONLY .COM, .NET, .EDU domains and
 Registrars.

 Gathered Netcraft information for www.baidu.com
 ---------------------------------

 Retrieving Netcraft.com information for www.baidu.com
 Netcraft.com Information gathered

 Gathered Subdomain information for baidu.com
 ---------------------------------
 Searching Google.com:80...
 Searching Altavista.com:80...
 Found 0 possible subdomain(s) for host baidu.com, Searched 0 pages containing 0 results

 Gathered E-Mail information for baidu.com
 ---------------------------------
 Searching Google.com:80...
 Searching Altavista.com:80...
 Found 0 E-Mail(s) for host baidu.com, Searched 0 pages containing 0 results

 All scans completed, exiting

kali-dmitry 域名信息收集的更多相关文章

  1. Kali Linux信息收集工具

    http://www.freebuf.com/column/150118.html 可能大部分渗透测试者都想成为网络空间的007,而我个人的目标却是成为Q先生! 看过007系列电影的朋友,应该都还记得 ...

  2. Kali Linux信息收集工具全集

    001:0trace.tcptraceroute.traceroute 描述:进行路径枚举时,传统基于ICMP协议的探测工具经常会受到屏蔽,造成探测结果不够全面的问题.与此相对基于TCP协议的探测,则 ...

  3. Kali Linux信息收集工具全

    可能大部分渗透测试者都想成为网络空间的007,而我个人的目标却是成为Q先生! 看过007系列电影的朋友,应该都还记得那个戏份不多但一直都在的Q先生(由于年级太长目前已经退休).他为007发明了众多神奇 ...

  4. Kali信息收集

    前言 渗透测试最重要的阶段之一就是信息收集,需要收集关于目标主机的基本细腻些.渗透测试人员得到的信息越多,渗透测试成功的概率也就越高. 一.枚举服务 1.1 DNS枚举工具DNSenum DNSenu ...

  5. 信息收集1:DNSEUM命令

    1,背景 今天无意中发现了dnsenum这个工具,在网上搜了下关于dnsenum的介绍和安装使用方法,资料不是很全,但还好这个工具也算简单,网上也都有源码,可以自行下载下来阅读阅读.本人好奇在本机(u ...

  6. web渗透系列--信息收集

    信息收集对于渗透测试前期来说是非常重要的,因为只有我们掌握了目标网站或目标主机足够多的信息之后,我们才能更好地对其进行漏洞检测.正所谓,知己知彼百战百胜! 信息收集的方式可以分为两种:主动和被动. 主 ...

  7. ★Kali信息收集~★6.Dmitry:汇总收集

    概述: DMitry(Deepmagic Information Gathering Tool)是一个一体化的信息收集工具.它可以用来收集以下信息: 1. 端口扫描 2. whois主机IP和域名信息 ...

  8. ★Kali信息收集★8.Nmap :端口扫描

    ★Kali信息收集~ 0.Httrack 网站复制机 http://www.cnblogs.com/dunitian/p/5061954.html ★Kali信息收集~ 1.Google Hackin ...

  9. Kali信息收集系列:(都是我以前的笔记整理了一下,就没加水印,习惯就好)

    好几天没发微信公众号了,今天一起发下.(最近有点事情) 前些天老业界的一位朋友问我一些Safe新时代信息收集的问题 逆天虽然好多年不干老本行,但隔段时间都会关注一下 于是就花了点时间整理了一下,你们就 ...

随机推荐

  1. iOS应用性能调优好文mark

    http://www.cocoachina.com/ios/20150408/11501.html

  2. const,static,extern简介

    一.const与宏的区别: const简介:之前常用的字符串常量,一般是抽成宏,但是苹果不推荐我们抽成宏,推荐我们使用const常量. 编译时刻:宏是预编译(编译之前处理),const是编译阶段. 编 ...

  3. Cisco ASA使用证书加密

    使用ASDM配置HTTPS证书加密anyconnect连接 一.在没有使用证书的情况下每次连接VPN都会出现如下提示 ASA Version: 8.4.(1) ASDM Version: 6.4.(7 ...

  4. linux驱动之触摸屏驱动程序

    触摸屏归纳为输入子系统,这里主要是针对电阻屏,其使用过程如下 :当用触摸笔按下时,产生中断.在中断处理函数处理函数中启动ADC转换x,y坐标.ADC结束,产生ADC中断,在ADC中断处理函数里上报(i ...

  5. runtime 初入

    一.runtime简介 RunTime简称运行时.OC就是运行时机制,也就是在运行时候的一些机制,其中最主要的是消息机制. 对于C语言,函数的调用在编译的时候会决定调用哪个函数. 对于OC的函数,属于 ...

  6. js中的事件部分总结

    一.HTML事件 HTML事件处理就是直接在HTML标签上添加事件,举例 <p class="" onclick=function(){alert(HTML事件)}>& ...

  7. rsync一些安全的使用方法

    总的来说,开在873端口之后,只要加上验证口令,安全性就有保障了,但毕竟多开一个端口,而且rsync的密码是明文方式存储的,相对来说,还是有被监听的可能.根据不同的情况采用下述不同方案,相对来说,安全 ...

  8. C++学习笔记30:模板与型式参数化

    转型操作 接受目标型式作为模板参数 Programmer *p = dynamic_cast<Programmer*>(e) 模板工作原理 使用template<typename T ...

  9. 【JS】HTMLprop与attr的区别

    与prop一样attr也可以用来获取与设置元素的属性.区别在于,对于自定义属性和选中属性的处理.选中属性指的是 checked,selected 这2种属性1. 对于自定义属性 attr能够获取,pr ...

  10. Android activity和service的生命周期对比

    1Activity生命周期 七个方法 1. void onCreate(Bundle savedInstanceState) 当Activity被第首次加载时执行.我们新启动一个程序的时候其主窗体的o ...