DMirty:用来收集以下信息:

1. 端口扫描

2. whois主机IP和域名信息

3. 从Netcraft.com获取主机信息

4. 子域名

5. 域名中包含的邮件地址

1、使用方法:

 Deepmagic Information Gathering Tool
 "There be some deep magic going on"

 dmitry: invalid option -- '-'
 Usage: dmitry [-winsepfb] [-t 0-9] [-o %host.txt] host
   -o     Save output to %host.txt or to file specified by -o file
   -i     Perform a whois lookup on the IP address of a host
   -w     Perform a whois lookup on the domain name of a host
   -n     Retrieve Netcraft.com information on a host
   -s     Perform a search for possible subdomains
   -e     Perform a search for possible email addresses
   -p     Perform a TCP port scan on a host
 * -f     Perform a TCP port scan on a host showing output reporting filtered ports
 * -b     Read in the banner received from the scanned port
 * -t 0-9 Set the TTL in seconds when scanning a TCP port ( Default 2 )
 *Requires the -p flagged to be passed

2、收集信息:

 root@shenlan-qianlan:/home/shell# dmitry -winse www.baidu.com
 Deepmagic Information Gathering Tool
 "There be some deep magic going on"

 HostIP:220.181.111.188
 HostName:www.baidu.com

 Gathered Inet-whois information for 220.181.111.188
 ---------------------------------

 inetnum:        220.181.0.0 - 220.181.255.255
 netname:        CHINANET-IDC-BJ
 country:        CN
 descr:          CHINANET Beijing province network
 descr:          China Telecom
 descr:          No.31,jingrong street
 descr:          Beijing 100032
 admin-c:        CH93-AP
 tech-c:         HC55-AP
 remarks:        hostmaster is not for spam complaint,
 remarks:        please send spam complaint to anti-spam@ns.chinanet.cn.net
 mnt-by:         MAINT-CHINANET
 mnt-lower:      MAINT-CHINATELECOM-BJ
 status:         ALLOCATED NON-PORTABLE
 changed:        hostmaster@ns.chinanet.cn.net 20030620
 changed:        hm-changed@apnic.net 20050715
 source:         APNIC

 person:         Chinanet Hostmaster
 nic-hdl:        CH93-AP
 e-mail:         anti-spam@ns.chinanet.cn.net
 address:        No.31 ,jingrong street,beijing
 address:        100032
 phone:          +86-10-58501724
 fax-no:         +86-10-58501724
 country:        CN
 changed:        dingsy@cndata.com 20070416
 changed:        zhengzm@gsta.com 20140227
 mnt-by:         MAINT-CHINANET
 source:         APNIC

 person:         Hostmaster of Beijing Telecom corporation CHINA   TELECOM
 nic-hdl:        HC55-AP
 e-mail:         bjnic@bjtelecom.net
 address:        Beijing Telecom
 address:        No. 107 XiDan Beidajie, Xicheng District Beijing
 phone:          +86-010-58503461
 fax-no:         +86-010-58503054
 country:        cn
 changed:        bjnic@bjtelecom.net 20040115
 mnt-by:         MAINT-CHINATELECOM-BJ
 source:         APNIC

 % This query was served by the APNIC Whois Service version 1.69.1-APNICv1r0 (UNDEFINED)

 Gathered Inic-whois information for baidu.com
 ---------------------------------
    Domain Name: BAIDU.COM
    Registrar: MARKMONITOR INC.
    Sponsoring Registrar IANA ID: 292
    Whois Server: whois.markmonitor.com
    Referral URL: http://www.markmonitor.com
    Name Server: DNS.BAIDU.COM
    Name Server: NS2.BAIDU.COM
    Name Server: NS3.BAIDU.COM
    Name Server: NS4.BAIDU.COM
    Name Server: NS7.BAIDU.COM
    Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
    Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
    Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
    Status: serverDeleteProhibited https://icann.org/epp#serverDeleteProhibited
    Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited
    Status: serverUpdateProhibited https://icann.org/epp#serverUpdateProhibited
    Updated Date: 10-sep-2015
    Creation Date: 11-oct-1999
    Expiration Date: 11-oct-2017

 >>> Last update of whois database: Mon, 10 Oct 2016 01:05:12 GMT <<<

 For more information on Whois status codes, please visit https://icann.org/epp

 NOTICE: The expiration date displayed in this record is the date the
 registrar's sponsorship of the domain name registration in the registry is
 currently set to expire. This date does not necessarily reflect the expiration
 date of the domain name registrant's agreement with the sponsoring
 registrar.  Users may consult the sponsoring registrar's Whois database to
 view the registrar's reported date of expiration for this registration.

 TERMS OF USE: You are not authorized to access or query our Whois
 database through the use of electronic processes that are high-volume and
 automated except as reasonably necessary to register domain names or
 modify existing registrations; the Data in VeriSign Global Registry
 Services' ("VeriSign") Whois database is provided by VeriSign for
 information purposes only, and to assist persons in obtaining information
 about or related to a domain name registration record. VeriSign does not
 guarantee its accuracy. By submitting a Whois query, you agree to abide
 by the following terms of use: You agree that you may use this Data only
 for lawful purposes and that under no circumstances will you use this Data
 to: (1) allow, enable, or otherwise support the transmission of mass
 unsolicited, commercial advertising or solicitations via e-mail, telephone,
 or facsimile; or (2) enable high volume, automated, electronic processes
 that apply to VeriSign (or its computer systems). The compilation,
 repackaging, dissemination or other use of this Data is expressly
 prohibited without the prior written consent of VeriSign. You agree not to
 use electronic processes that are automated and high-volume to access or
 query the Whois database except as reasonably necessary to register
 domain names or modify existing registrations. VeriSign reserves the right
 to restrict your access to the Whois database in its sole discretion to ensure
 operational stability.  VeriSign may restrict or terminate your access to the
 Whois database for failure to abide by these terms of use. VeriSign
 reserves the right to modify these terms at any time.

 The Registry database contains ONLY .COM, .NET, .EDU domains and
 Registrars.

 Gathered Netcraft information for www.baidu.com
 ---------------------------------

 Retrieving Netcraft.com information for www.baidu.com
 Netcraft.com Information gathered

 Gathered Subdomain information for baidu.com
 ---------------------------------
 Searching Google.com:80...
 Searching Altavista.com:80...
 Found 0 possible subdomain(s) for host baidu.com, Searched 0 pages containing 0 results

 Gathered E-Mail information for baidu.com
 ---------------------------------
 Searching Google.com:80...
 Searching Altavista.com:80...
 Found 0 E-Mail(s) for host baidu.com, Searched 0 pages containing 0 results

 All scans completed, exiting

kali-dmitry 域名信息收集的更多相关文章

  1. Kali Linux信息收集工具

    http://www.freebuf.com/column/150118.html 可能大部分渗透测试者都想成为网络空间的007,而我个人的目标却是成为Q先生! 看过007系列电影的朋友,应该都还记得 ...

  2. Kali Linux信息收集工具全集

    001:0trace.tcptraceroute.traceroute 描述:进行路径枚举时,传统基于ICMP协议的探测工具经常会受到屏蔽,造成探测结果不够全面的问题.与此相对基于TCP协议的探测,则 ...

  3. Kali Linux信息收集工具全

    可能大部分渗透测试者都想成为网络空间的007,而我个人的目标却是成为Q先生! 看过007系列电影的朋友,应该都还记得那个戏份不多但一直都在的Q先生(由于年级太长目前已经退休).他为007发明了众多神奇 ...

  4. Kali信息收集

    前言 渗透测试最重要的阶段之一就是信息收集,需要收集关于目标主机的基本细腻些.渗透测试人员得到的信息越多,渗透测试成功的概率也就越高. 一.枚举服务 1.1 DNS枚举工具DNSenum DNSenu ...

  5. 信息收集1:DNSEUM命令

    1,背景 今天无意中发现了dnsenum这个工具,在网上搜了下关于dnsenum的介绍和安装使用方法,资料不是很全,但还好这个工具也算简单,网上也都有源码,可以自行下载下来阅读阅读.本人好奇在本机(u ...

  6. web渗透系列--信息收集

    信息收集对于渗透测试前期来说是非常重要的,因为只有我们掌握了目标网站或目标主机足够多的信息之后,我们才能更好地对其进行漏洞检测.正所谓,知己知彼百战百胜! 信息收集的方式可以分为两种:主动和被动. 主 ...

  7. ★Kali信息收集~★6.Dmitry:汇总收集

    概述: DMitry(Deepmagic Information Gathering Tool)是一个一体化的信息收集工具.它可以用来收集以下信息: 1. 端口扫描 2. whois主机IP和域名信息 ...

  8. ★Kali信息收集★8.Nmap :端口扫描

    ★Kali信息收集~ 0.Httrack 网站复制机 http://www.cnblogs.com/dunitian/p/5061954.html ★Kali信息收集~ 1.Google Hackin ...

  9. Kali信息收集系列:(都是我以前的笔记整理了一下,就没加水印,习惯就好)

    好几天没发微信公众号了,今天一起发下.(最近有点事情) 前些天老业界的一位朋友问我一些Safe新时代信息收集的问题 逆天虽然好多年不干老本行,但隔段时间都会关注一下 于是就花了点时间整理了一下,你们就 ...

随机推荐

  1. 获取局域网中指定IP或是主机名称的所有文件夹及其搜索文件

    最近做个功能在局域网中所有指定文件,于是花了点精力完成了部分功能,先贴上 using System; using System.Collections.Generic; using System.Co ...

  2. 中秋时候做了一个ppt画图插件

    http://office.guanexcel.com/chart/chart.html PowerPoint里面简单的画图工具,输入数据选择图样即可插入到PPT中了

  3. 听课程C# Intermediate: Classes, Interfaces and OOP的笔记,持续修改更新ing

    在第二章第7节中,我尝试并给我的Vistal Studio 2015加装了Resharper,感觉非常好用,现在就分享下我的一点心得. 首先为了防止Resharper的快捷键失灵,可以先重置所有的 V ...

  4. ping 出现负值

    遇到一个问题,使用ping 命令的时候会出现负值.网上查询得知 AMD双核CPU,要打上CPU厂家提供的驱动补丁和微软的双核补.

  5. codewars 随手记

    1.ES6数组遍历语法糖=> 在C#Linq里曾经用过,因此也不是很陌生. var range = Array.apply(null, Array(x)).map((_, i) => ++ ...

  6. SAPCAR 压缩解压软件的使用方法

    SAPCAR 是 SAP 公司使用的压缩解压软件,从 SAP 网站下载的补丁包和小型软件基本都是扩展名为 car 或 sar 的,它们都可以用 SAPCAR 来解压.下面是它的使用说明: 用法: 创建 ...

  7. flume中的agent配置和启动

    首先创建一个文件example.conf(touch example.conf) 然后在文件中,进行agent文件的如下的配置(vi  example.conf)   agent文件的配置:(配置ag ...

  8. Eclipse/IDEA使用小技巧

    使用IDEA,先将keymap改为eclipse形式 1.搜索技巧: f4:列举所有类树状结构 Ctrl+F:搜索特定词 Ctrl+T:列举所有子类 Ctrl+O:快速检索想要的方法 Ctrl+Shi ...

  9. 自适应布局,响应式布局以及rem,em区别

    一.自适应和响应式 先说共同点: 两者都是因为越来越多的 移动设备( mobile, tablet device )加入到互联网中来而出现的为移动设备提供更好的体验的技术.用技术来使网页适应从小到大( ...

  10. 神奇的sort()函数

    今天来谈一谈sort()函数,sort() 方法用于对数组的元素进行排序,用法为arrayObject.sort(sortby):括号中的为可选参数,准确来说应该是一个函数,这个函数用来规定排序方法, ...