Skip to content

Instantly share code, notes, and snippets.

@bonsaiviking
Created July 9, 2012 15:53
Show Gist options
  • Star 1 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save bonsaiviking/3077294 to your computer and use it in GitHub Desktop.
Save bonsaiviking/3077294 to your computer and use it in GitHub Desktop.
Nmap's dns-zone-transfer meets zonetransfer.me
$ nmap --script dns-zone-transfer --script-args dns-zone-transfer.domain=zonetransfer.me -p 53 -Pn $(dig +short zonetransfer.me NS | head -1)
Starting Nmap 6.02 ( http://nmap.org ) at 2012-07-09 10:50 CDT
Nmap scan report for ns12.zoneedit.com. (209.62.64.46)
Host is up (0.033s latency).
rDNS record for 209.62.64.46: ns12.zoneedit.com
PORT STATE SERVICE
53/tcp open domain
| dns-zone-transfer:
| zonetransfer.me. SOA ns16.zoneedit.com. soacontact.zoneedit.com.
| zonetransfer.me. NS ns16.zoneedit.com.
| zonetransfer.me. NS ns12.zoneedit.com.
| zonetransfer.me. A 217.147.180.162
| zonetransfer.me. MX 0 ASPMX.L.GOOGLE.COM.
| zonetransfer.me. MX 10 ALT1.ASPMX.L.GOOGLE.COM.
| zonetransfer.me. MX 10 ALT2.ASPMX.L.GOOGLE.COM.
| zonetransfer.me. MX 20 ASPMX2.GOOGLEMAIL.COM.
| zonetransfer.me. MX 20 ASPMX3.GOOGLEMAIL.COM.
| zonetransfer.me. MX 20 ASPMX4.GOOGLEMAIL.COM.
| zonetransfer.me. MX 20 ASPMX5.GOOGLEMAIL.COM.
| zonetransfer.me. TXT "Remember to call or email Pippa on +44 123 4567890 or pippa@zonetransfer.me when making DNS changes"
| zonetransfer.me. TXT "google-site-verification=tyP28J7JAUHA9fw2sHXMgcCC0I6XBmmoVi04VlMewxA"
| testing.zonetransfer.me. CNAME www.zonetransfer.me.
| 164.180.147.217.in-addr.arpa.zonetransfer.me. PTR www.zonetransfer.me.
| ipv6actnow.org.zonetransfer.me. AAAA 2001:67c:2e8:11::c100:1332
| asfdbauthdns.zonetransfer.me. AFSDB 1 asfdbbox.zonetransfer.me.
| office.zonetransfer.me. A 4.23.39.254
| owa.zonetransfer.me. A 207.46.197.32
| info.zonetransfer.me. TXT "ZoneTransfer.me service provided by Robin Wood - robin@digininja.org. See www.digininja.org/projects/zonetransferme.php for more information."
| asfdbbox.zonetransfer.me. A 127.0.0.1
| canberra_office.zonetransfer.me. A 202.14.81.230
| asfdbvolume.zonetransfer.me. AFSDB 1 asfdbbox.zonetransfer.me.
| email.zonetransfer.me. NAPTR 1 1 "" "E2U+email" "" email.zoneedit.com.zonetransfer.me.
| dzc.zonetransfer.me. TXT "AbCdEfG"
| rp.zonetransfer.me. RP robin.zonetransfer.me.zonetransfer.me. robinwood.zonetransfer.me.
| dr.zonetransfer.me. LOC 53.349044 N 1.642646 W 0m 1.0m 10000.0m 10.0m
| sip.zonetransfer.me. NAPTR 2 3 "au" "E2U+sip" "!^.*$!sip:customer-service@zonetransfer.me!" .
| alltcpportsopen.firewall.test.zonetransfer.me. A 127.0.0.1
| www.zonetransfer.me. A 217.147.180.162
| staging.zonetransfer.me. CNAME www.sydneyoperahouse.com.
| deadbeef.zonetransfer.me. AAAA dead:beaf::
| robinwood.zonetransfer.me. TXT "Robin Wood"
| vpn.zonetransfer.me. A 174.36.59.154
| _sip._tcp.zonetransfer.me. SRV 0 0 5060 www.zonetransfer.me.
| dc_office.zonetransfer.me. A 143.228.181.132
|_zonetransfer.me. SOA ns16.zoneedit.com. soacontact.zoneedit.com.
Nmap done: 1 IP address (1 host up) scanned in 4.82 seconds
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment