[TUT] Find out defaced domain names of server after uploading shell and getting into the domains root folder
Salam all, a lot of people has no idea that, once you uploaded your shell in a server and it contains more than one domains under current username of server sometimes.
but, for lack of knowledge, they misses them :p
now, this tut gonna help you to learn how to find these.
here we go ...
there can be few ways to find domain names of shelled server.
1 : Reverse IP lookup (https://hackertarget.com/reverse-ip-lookup)
2 : Bing reverse (www.bing.com/search?q=ip:xxx.xxx.xxx.xxx - xxx will be the server ip address)
3 : guessing (if folder name is "example", add .com(top level domain names) after it and open the link ~ example.com)
4 : by reading /etc/named.conf (the best way but, not everytime server gonna show you site as few servers are secured)
once you uploaded your index in every folders under /public_html/(noob, i am not going to teach you how to find domains root folder), keep checking the domains found in the lookup.you will get them.mind it, try every systems.you will get all. :)
No comments:
Post a Comment