Tuesday, January 31, 2012

Information Gathering and DNS Analysis For Web Applications

Day 2 Information Gathering For WebApp

DNS ANALYSIS 

Target :
is2c-dojo.com
is2c-dojo.net
spentera.com


1. Testing for www.is2c-dojo.net
Using ping to known the Ip Addreess for this site.



Using NSLOOKUP to known server address


Using APNIC
APNIC (Asia Pacific Network Information Centre) You can known RIR (Regional Internet Registry) from the target.




In the pictures showing completely information of this target.

dnsenum

Apps -> Information Gatherin ->  Network Analysis -> DNS Analysis -> dnsenum

By the picture you can see list of command for using dnsenum,

Test with comand ./dnsenum.pl is2c-dojo.net  not more information we can get with the command. Lets use other command line.

Not more information we known.

dnsmap

Apps -> Information Gatherin ->  Network Analysis -> DNS Analysis -> dnsmap


dnstuff
By using dnstuff in the web, the lack of stadards and centralization among WHOIS services further limits its usefulness.



Known information from this website tool we can get information like using WHOIS in the konsole but the dnsstuff showing map of the target registered.

2. Testing Target www.is2c-dojo.com

First step with ping and traceroute 


Ok, we can known the Ip Address target, in the next step scanning using dnstracer.

dnstracer
Apps -> Information Gatherin ->  Network Analysis -> DNS Analysis -> dnsmap
dnstracer comand :



Lets see by scanning the target we known information domain and subdomain trees with ip range for this target registered.


In the picture above i try to get more information for ns2.partnerit.us but i can't tracing this target.


3. Testing Target spentera.com with lbd

Ping and traceroute the target to known the ip address for target.



In this session trying to use lbd other open source tools in the Backtrack 5

lbd is use to cek of load DNS Loadballancing and HTTP-Loadbalancing but its not a good reason what i means, the DNS loadballancing not found for target.

0 comments:

Post a Comment