Module 3 - Information Gathering / Reconnaissance Flashcards

1
Q

RobTex

A

WHOIS (name and IP)WHOIS lookups by name and IP address
Checks of IP addresses for DNS reverse lookups and forwards
Searches of DNS registration records
Searches of Autonomous System (AS) numbers
Identification of neighboring domain names
Searches of domain names that share a common IP address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

CentralOps.net

A
Domain dossiers
Domain name checks
PINGs to servers
Trace routes to servers
WHOIS lookups
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Way Back Machine

A

archive.org

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Alexa.org

A

Web Metrics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

netcraft.com

A

IP address for DNS server and website/application
Domain name registration information
OS footprinting information (This information may be dated.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

domaintools.com

A

domain name and whois

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

DNSstuff.com

A

Domain names
IP addresses
Trace routes
DNS resolution times

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

infosniper.net

A

locations of IP - may be different than registration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Pages cached by Google

A

archive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Sources of Operations Info

A
SEC filings
Help forums
Press releases
Job postings
Pastebin
Social Networks
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Robtex Records

A
Domain names
IP Addresses
Name servers
Mail servers
AS information
Graphs
Shared
WhoIs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly