Ex: ROOT | +---------------------+------------------+ | | | MIL EDU ARPA | | | | | | +-----+-----+ | +------+-----+-----+ | | | | | | | BRL NOSC DARPA | IN-ADDR SRI-NIC ACC | +--------+------------------+---------------+--------+ | | | | | UCI MIT | UDEL YALE | ISI | | +---+---+ | | | | LCS ACHILLES +--+-----+-----+--------+ | | | | | | XX A C VAXA VENERA Mockapetris
Ex: site.com.br ROOT | | BR | COM | SITE
Hostname IP Addresses Manager a.root-servers.net 198.41.0.4, 2001:503:ba3e::2:30 VeriSign, Inc. b.root-servers.net 192.228.79.201, 2001:500:200::b University of Southern California c.root-servers.net 192.33.4.12, 2001:500:2::c Cogent Communications d.root-servers.net 199.7.91.13, 2001:500:2d::d University of Maryland e.root-servers.net 192.203.230.10, 2001:500:a8::e NASA (Ames Research Center) f.root-servers.net 192.5.5.241, 2001:500:2f::f Internet Systems Consortium, Inc. g.root-servers.net 192.112.36.4, 2001:500:12::d0d US Department of Defense (NIC) h.root-servers.net 198.97.190.53, 2001:500:1::53 US Army (Research Lab) i.root-servers.net 192.36.148.17, 2001:7fe::53 Netnod j.root-servers.net 192.58.128.30, 2001:503:c27::2:30 VeriSign, Inc. k.root-servers.net 193.0.14.129, 2001:7fd::1 RIPE NCC l.root-servers.net 199.7.83.42, 2001:500:9f::42 ICANN m.root-servers.net 202.12.27.33, 2001:dc3::35 WIDE Project
zone "." IN { type hint; file "named.ca"; };
$ cat /var/named/named.ca ; This file holds the information on root name servers needed to ; initialize cache of Internet domain name servers ; (e.g. reference this file in the "cache . " ; configuration file of BIND domain name servers). ; ; This file is made available by InterNIC ; under anonymous FTP as ; file /domain/named.cache ; on server FTP.INTERNIC.NET ; -OR- RS.INTERNIC.NET ; ; last update: December 01, 2015 ; related version of root zone: 2015120100 ; ; formerly NS.INTERNIC.NET ; . 3600000 NS A.ROOT-SERVERS.NET. A.ROOT-SERVERS.NET. 3600000 A 198.41.0.4 A.ROOT-SERVERS.NET. 3600000 AAAA 2001:503:ba3e::2:30 ; ; FORMERLY NS1.ISI.EDU ; . 3600000 NS B.ROOT-SERVERS.NET. B.ROOT-SERVERS.NET. 3600000 A 192.228.79.201 B.ROOT-SERVERS.NET. 3600000 AAAA 2001:500:84::b ; ; FORMERLY C.PSI.NET ; . 3600000 NS C.ROOT-SERVERS.NET. C.ROOT-SERVERS.NET. 3600000 A 192.33.4.12 C.ROOT-SERVERS.NET. 3600000 AAAA 2001:500:2::c ; ; FORMERLY TERP.UMD.EDU ; . 3600000 NS D.ROOT-SERVERS.NET. D.ROOT-SERVERS.NET. 3600000 A 199.7.91.13 D.ROOT-SERVERS.NET. 3600000 AAAA 2001:500:2d::d ; ; FORMERLY NS.NASA.GOV ; . 3600000 NS E.ROOT-SERVERS.NET. E.ROOT-SERVERS.NET. 3600000 A 192.203.230.10 ; ; FORMERLY NS.ISC.ORG ; . 3600000 NS F.ROOT-SERVERS.NET. F.ROOT-SERVERS.NET. 3600000 A 192.5.5.241 F.ROOT-SERVERS.NET. 3600000 AAAA 2001:500:2f::f ; ; FORMERLY NS.NIC.DDN.MIL ; . 3600000 NS G.ROOT-SERVERS.NET. G.ROOT-SERVERS.NET. 3600000 A 192.112.36.4 ; ; FORMERLY AOS.ARL.ARMY.MIL ; . 3600000 NS H.ROOT-SERVERS.NET. H.ROOT-SERVERS.NET. 3600000 A 198.97.190.53 H.ROOT-SERVERS.NET. 3600000 AAAA 2001:500:1::53 ; ; FORMERLY NIC.NORDU.NET ; . 3600000 NS I.ROOT-SERVERS.NET. I.ROOT-SERVERS.NET. 3600000 A 192.36.148.17 I.ROOT-SERVERS.NET. 3600000 AAAA 2001:7fe::53 ; ; OPERATED BY VERISIGN, INC. ; . 3600000 NS J.ROOT-SERVERS.NET. J.ROOT-SERVERS.NET. 3600000 A 192.58.128.30 J.ROOT-SERVERS.NET. 3600000 AAAA 2001:503:c27::2:30 ; ; OPERATED BY RIPE NCC ; . 3600000 NS K.ROOT-SERVERS.NET. K.ROOT-SERVERS.NET. 3600000 A 193.0.14.129 K.ROOT-SERVERS.NET. 3600000 AAAA 2001:7fd::1 ; ; OPERATED BY ICANN ; . 3600000 NS L.ROOT-SERVERS.NET. L.ROOT-SERVERS.NET. 3600000 A 199.7.83.42 L.ROOT-SERVERS.NET. 3600000 AAAA 2001:500:3::42 ; ; OPERATED BY WIDE ; . 3600000 NS M.ROOT-SERVERS.NET. M.ROOT-SERVERS.NET. 3600000 A 202.12.27.33 M.ROOT-SERVERS.NET. 3600000 AAAA 2001:dc3::35 ; End of file
ex : +noheader +noanswer +noauthority +noadditional +noall
QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 2 ;; >>HEADER<< opcode: QUERY, status: NOERROR, id: 60822 ;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 2
NOERROR (0): Nenhum erro encontrado, ou seja, sucesso. SERVFAIL (2): Houve algum problema com o servidor, que não conseguiu processar a query. NXDOMAN (3): Significa que o domínio pesquisado não existe. REFUSED (5): O servidor rejeitou a solicitação.
dig site.com a* Pesquisa dos servidores de correio (MX) *dig site.com mx
dig site.com ns
dig site.com soa
dig -x 52.0.14.115
dig @nsa.gov.br site.com a
dig +nocmd site.com any +multiline
dig site.com +nssearch
dig site.com axfr
dig -t AXFR site.com @ns2.site.com
dig +trace site.com
dig -x 192.168.0.1
dig -f domains.txt any
"nslookup is deprecated and may be removed from future releases"
nslookup site.com
nslookup -type=all site.com
nslookup -type=mx site.com || nslookup -querytype=mx site.com
nslookup site.com ns1.site.com
nslookup -debug site.com
nslookup 192.168.0.1
nslookup -port=54 site.com
nslookup -timeout=10 site.com
host -t ns site.com host -t soa site.com host -t mx site.com e etc...
host -a site.com
host -d -v site.com
host site.com ns1.site.com
dnstracer site.com
dnstracer -c site.com
dnstracer -o site.com
dnstracer -q ns site.com dnstracer -q mx site.com dnstracer -q soa site.com e etc...
fierce -dns bes.pt
fierce -dns bes.pt -connect /root/Desktop/headers.txt
fierce -dns google.br -delay 2
fierce -dns exemplo.br -file /root/Desktop/resultados.txt
fierce -dns exemplo.br -file /root/Desktop/resultados.txt -suppress
fierce -dns bes.pt -connect /root/Desktop/headers.txt -fulloutput
fierce -dns bes.pt -nopattern
fierce -range 194.145.121.0-255 -dnsserver 4.4.4.4
fierce -dns bes.pt -search bes,bes360,besauto
fierce -dns teste.pt -tcptimeout 15
fierce -dns teste.pt -traverse10
fierce -dns teste.pt -wide
fierce -dns teste.pt -wordlist caminho/para/o/dicionario.txt
http://cr.yp.to/djbdns.html https://cr.yp.to/djbdns/debugging.html http://www.hacks.pt/ferramentas-kali-linux/recolha-de-informacao/analise-dns/
urlcrazy https://github.com/makefu/dnsmap dnsmap dnsrecon dnsenum dnsdict6 dnsrevenum6 maltego nmap zenmap tinydns-get dnsq ping