About

Popular Posts

Blog Archive

Search This Blog

Footprinting - Ethical Hacking | NAHID HASAN TECHNOLOGY

Share it:

Ethical Hacking - Footprinting




Footprinting is a part of the reconnaissance process which is used for gathering possible information about a target computer system or network. Footprinting could be both passive and active. Reviewing a company’s website is an example of passive footprinting, whereas attempting to gain access to sensitive information through social engineering is an example of active information gathering.
Footprinting is basically the first step where hacker gathers as much information as possible to find ways to intrude into a target system or at least decide what type of attacks will be more suitable for the target.
⏩ALSO READ: Tech News


During this phase, a hacker can collect the following information −
  • ➧Domain name
  • ➧IP Addresses
  • ➧Namespaces
  • ➧Employee information
  • ➧Phone numbers
  • ➧E-mails
  • ➧Job Information
In the following section, we will discuss how to extract the basic and easily accessible information about any computer system or network that is linked to the Internet.

Domain Name Information

You can use http://www.whois.com/whois website to get detailed information about a domain name information including its owner, its registrar, date of registration, expiry, name server, owner's contact information, etc.

Here is a sample record of https://www.nahidhasantechnology.com extracted from WHOIS Lookup −
Raw Whois Data
Domain Name: NAHIDHASANTECHNOLOGY.COM
Registry Domain ID: 2390694866_DOMAIN_COM-VRSN
Registrar WHOIS Server: whois.innovadeus.com
Registrar URL: http://www.innovadeus.com
Updated Date: 2019-05-14T07:49:46Z
Creation Date: 2019-05-14T07:49:45Z
Registry Expiry Date: 2020-05-14T07:49:45Z
Registrar: Innovadeus Pvt. Ltd.
Registrar IANA ID: 3812
Registrar Abuse Contact Email: email@innovadeus.com
Registrar Abuse Contact Phone: +8801920242424
Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Name Server: DNS1.SWADHIN.US
Name Server: DNS2.SWADHIN.US
Name Server: DNS3.SWADHIN.US
Name Server: DNS4.SWADHIN.US
DNSSEC: unsigned
URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/

Finding IP Address

You can use ping command at your prompt. This command is available on Windows as well as on Linux OS. Following is the example to find out the IP address of https://www.nahidhasantechnology.com
C:\Users\MR.ROBOT>ping nahidhasantechnology.com
Pinging nahidhasantechnology.com [216.239.32.21] with 32 bytes of data:
Reply from 216.239.32.21: bytes=32 time=27ms TTL=54
Reply from 216.239.32.21: bytes=32 time=28ms TTL=54
Reply from 216.239.32.21: bytes=32 time=24ms TTL=54
Reply from 216.239.32.21: bytes=32 time=26ms TTL=54
Ping statistics for 216.239.32.21:
    Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 24ms, Maximum = 28ms, Average = 26ms

Finding Hosting Company

Once you have the website address, you can get further detail by using ip2location.com website. Following is the example to find out the details of an IP address −
Here the ISP row gives you the detail about the hosting company because IP addresses are usually provided by hosting companies only.

Quick Fix

If a computer system or network is linked with the Internet directly, then you cannot hide the IP address and the related information such as the hosting company, its location, ISP, etc. If you have a server containing very sensitive data, then it is recommended to keep it behind a secure proxy so that hackers cannot get the exact details of your actual server. This way, it will be difficult for any potential hacker to reach your server directly.
Another effective way of hiding your system IP and ultimately all the associated information is to go through a Virtual Private Network (VPN). If you configure a VPN, then the whole traffic routes through the VPN network, so your true IP address assigned by your ISP is always hidden.
Thanks For your Reading✌✌✌
Share it:

Ethical_Hacking