Security Basics mailing list archives

Re: Tools to scan for subdomain


From: "Pawel Jablonski" <gorion () hacking pl>
Date: Mon, 14 Jun 2004 20:14:16 +0200

Hi there.

I doubt you will handle with that, without comprominsing the DNS machine.
Another possibility would be downloading the zone file, but it's only
posslible if the zone has 'allow transfer' thingie.

Greets,
Pawel "gorion" Jablonski

----- Original Message -----
From: "Sifvion" <sif () dabox org>
To: <security-basics () securityfocus com>
Sent: Saturday, June 12, 2004 6:47 AM
Subject: Tools to scan for subdomain


Is there a tool to scan for subdomain?
For example host www.abc.com has several sub domains like xyz.abc.com,
efg.abc.com and so on, but I only know abc.com, so is there any tool that
is
able to tell me there are subdomains for this abc.com and list them out
and
making it more difficult is that those subdmains are in differebt set of
IP?
For example :

root host: abc.com IP: 1.2.3.4
subdomain: xyz.abc.com IP: 2.3.4.5

You see here the IP is not under the same IP range of root host. So is it
possbile to find xyz.abc.com?

Thanks



---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: