change
change
┌──(gopal㉿kali)-[~]
└─$ ping irrl.dev
PING irrl.dev (2606:4700:3033::6815:d47) 56 data bytes
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=1 ttl=57 time=137 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=2 ttl=57 time=150 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=3 ttl=57 time=179 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=4 ttl=57 time=201 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=5 ttl=57 time=136 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=6 ttl=57 time=165 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=7 ttl=57 time=269 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=8 ttl=57 time=144 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=9 ttl=57 time=315 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=10 ttl=57 time=142 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=11 ttl=57 time=139 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=12 ttl=57 time=145 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=13 ttl=57 time=163 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=14 ttl=57 time=224 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=15 ttl=57 time=184 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=16 ttl=57 time=162 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=17 ttl=57 time=258 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=18 ttl=57 time=292 ms
64 bytes from 2606:4700:3033::6815:d47: icmp_seq=19 ttl=57 time=324 ms
^C
--- irrl.dev ping statistics ---
19 packets transmitted, 19 received, 0% packet loss, time 18023ms
rtt min/avg/max/mdev = 136.482/196.268/323.874/62.318 ms
┌──(gopal㉿kali)-[~]
└─$ dig irrl.dev
;; QUESTION SECTION:
;irrl.dev. IN A
;; ANSWER SECTION:
irrl.dev. 155 IN A 104.21.13.71
irrl.dev. 155 IN A 172.67.155.12
┌──(gopal㉿kali)-[~]
└─$ nslookup irrl.dev
Server: 192.168.220.200
Address: 192.168.220.200#53
Non-authoritative answer:
Name: irrl.dev
Address: 172.67.155.12
Name: irrl.dev
Address: 104.21.13.71
Name: irrl.dev
Address: 2606:4700:3030::ac43:9b0c
Name: irrl.dev
Address: 2606:4700:3033::6815:d47
┌──(gopal㉿kali)-[~]
└─$ whois irrl.dev
Domain Name: irrl.dev
Registry Domain ID: 48B2A78A9-DEV
Registrar WHOIS Server: whois.squarespace.domains
Registrar URL: domains.squarespace.com
Updated Date: 2024-06-06T10:09:35Z
Creation Date: 2022-04-09T10:02:01Z
Registry Expiry Date: 2033-04-09T10:02:01Z
Registrar: Squarespace Domains II LLC.
Registrar IANA ID: 895
Registrar Abuse Contact Email: [email protected]
Registrar Abuse Contact Phone: +1.6466935324
Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
Domain Status: clientTransferProhibited
https://icann.org/epp#clientTransferProhibited
Registry Registrant ID: REDACTED FOR PRIVACY
Registrant Name: REDACTED FOR PRIVACY
Registrant Street: REDACTED FOR PRIVACY
Registrant Street: REDACTED FOR PRIVACY
Registrant Street: REDACTED FOR PRIVACY
Registrant City: REDACTED FOR PRIVACY
Registrant State/Province: \u0130stanbul
Registrant Postal Code: REDACTED FOR PRIVACY
Registrant Country: TR
Registrant Phone: REDACTED FOR PRIVACY
Registrant Email: Please query the WHOIS server of the owning registrar identified
in this output for information on how to contact the Registrant, Admin, or Tech
contact of the queried domain name.
Registry Admin ID: REDACTED FOR PRIVACY
Admin Name: REDACTED FOR PRIVACY
Admin Street: REDACTED FOR PRIVACY
Admin Street: REDACTED FOR PRIVACY
Admin Street: REDACTED FOR PRIVACY
Admin City: REDACTED FOR PRIVACY
Admin State/Province: REDACTED FOR PRIVACY
Admin Postal Code: REDACTED FOR PRIVACY
Admin Country: REDACTED FOR PRIVACY
Admin Phone: REDACTED FOR PRIVACY
Admin Email: Please query the WHOIS server of the owning registrar identified in
this output for information on how to contact the Registrant, Admin, or Tech
contact of the queried domain name.
Registry Tech ID: REDACTED FOR PRIVACY
Tech Name: REDACTED FOR PRIVACY
Tech Street: REDACTED FOR PRIVACY
Tech Street: REDACTED FOR PRIVACY
Tech Street: REDACTED FOR PRIVACY
Tech City: REDACTED FOR PRIVACY
Tech State/Province: REDACTED FOR PRIVACY
Tech Postal Code: REDACTED FOR PRIVACY
Tech Country: REDACTED FOR PRIVACY
Tech Phone: REDACTED FOR PRIVACY
Tech Email: Please query the WHOIS server of the owning registrar identified in
this output for information on how to contact the Registrant, Admin, or Tech
contact of the queried domain name.
Registry Billing ID: REDACTED FOR PRIVACY
Billing Name: REDACTED FOR PRIVACY
Billing Street: REDACTED FOR PRIVACY
Billing Street: REDACTED FOR PRIVACY
Billing Street: REDACTED FOR PRIVACY
Billing City: REDACTED FOR PRIVACY
Billing State/Province: REDACTED FOR PRIVACY
Billing Postal Code: REDACTED FOR PRIVACY
Billing Country: REDACTED FOR PRIVACY
Billing Phone: REDACTED FOR PRIVACY
Billing Email: Please query the WHOIS server of the owning registrar identified in
this output for information on how to contact the Registrant, Admin, or Tech
contact of the queried domain name.
Name Server: delilah.ns.cloudflare.com
Name Server: josh.ns.cloudflare.com
DNSSEC: unsigned
URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
>>> Last update of WHOIS database: 2025-01-15T11:52:52Z <<<
Please query the WHOIS server of the owning registrar identified in this
output for information on how to contact the Registrant, Admin, or Tech
contact of the queried domain name.
You may also request underlying Registrant data via ICANN's RDRS service
(https://rdrs.icann.org/).
┌──(gopal㉿kali)-[~]
└─$ nmap irrl.dev
Starting Nmap 7.94SVN ( https://nmap.org ) at 2025-01-15 17:23 IST
Nmap scan report for irrl.dev (104.21.13.71)
Host is up (0.18s latency).
Other addresses for irrl.dev (not scanned): 2606:4700:3033::6815:d47
2606:4700:3030::ac43:9b0c 172.67.155.12
Not shown: 996 filtered tcp ports (no-response)
PORT STATE SERVICE
80/tcp open http
443/tcp open https
8080/tcp open http-proxy
8443/tcp open https-alt
┌──(gopal㉿kali)-[~]
└─$ ^[[200~wafw00f example.com
zsh: bad pattern: ^[[200~wafw00f
┌──(gopal㉿kali)-[~]
└─$ wafw00f irrl.dev
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:35: SyntaxWarning: invalid
escape sequence '\ '
'''+Y+'''/ (' '''+G+'''/|\ '''+R+'''( '''+Y+'''|__|
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:36: SyntaxWarning: invalid
escape sequence '\ '
'''+Y+'''( / ) '''+G+''' / | \ '''+R+'''. '''+Y+'''|__|
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:37: SyntaxWarning: invalid
escape sequence '\ '
'''+Y+r'''\(_)_)) '''+G+'''/ | \ '''+Y+'''|__|'''+E+'''
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:47: SyntaxWarning: invalid
escape sequence '\ '
'''+W+'''\ ____/
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:50: SyntaxWarning: invalid
escape sequence '\ '
'''+C+'''/" _/ '''+G+'''/_/ '''+R+'''\ \ / /
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:51: SyntaxWarning: invalid
escape sequence '\ '
'''+B+'''*===* '''+G+'''/ '''+R+'''\ \_/ /
'''+Y+'''405 Not Allowed
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:52: SyntaxWarning: invalid
escape sequence '\ '
'''+C+'''/ )__// '''+R+'''\ /
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:55: SyntaxWarning: invalid
escape sequence '\ '
'''+C+r'''`\ /_\\_ '''+Y+'''502 Bad Gateway '''+R+'''/ / \ \
'''+Y+'''500 Internal Error
/usr/lib/python3/dist-packages/wafw00f/lib/asciiarts.py:56: SyntaxWarning: invalid
escape sequence '\_'
'''+C+'''`_____``-` '''+R+'''/_/ \_\\
______
/ \
( W00f! )
\ ____/
,, __ 404 Hack Not Found
|`-.__ / / __ __
/" _/ /_/ \ \ / /
*===* / \ \_/ / 405 Not Allowed
/ )__// \ /
/| / /---` 403 Forbidden
\\/` \ | / _ \
`\ /_\\_ 502 Bad Gateway / / \ \ 500 Internal Error
`_____``-` /_/ \_\
~ WAFW00F : v2.2.0 ~
The Web Application Firewall Fingerprinting Toolkit
┌──(gopal㉿kali)-[~]
└─$ sublist3r -d irrl.dev
Command 'sublist3r' not found, but can be installed with:
sudo apt install sublist3r
Do you want to install it? (N/y)y
sudo apt install sublist3r
[sudo] password for gopal:
Installing:
sublist3r
Summary:
Upgrading: 0, Installing: 1, Removing: 0, Not Upgrading: 11
Download size: 620 kB
Space needed: 1,944 kB / 34.8 GB available
┌──(gopal㉿kali)-[~]
└─$ sublist3r -d irrl.dev
____ _ _ _ _ _____
/ ___| _ _| |__ | (_)___| |_|___ / _ __
\___ \| | | | '_ \| | / __| __| |_ \| '__|
___) | |_| | |_) | | \__ \ |_ ___) | |
|____/ \__,_|_.__/|_|_|___/\__|____/|_|
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/sublist3r.py", line 954, in main
enum.join()
File "/usr/lib/python3.12/multiprocessing/process.py", line 149, in join
res = self._popen.wait(timeout)
^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3.12/multiprocessing/popen_fork.py", line 43, in wait
Process GoogleEnum-4:
Process BaiduEnum-2:
Traceback (most recent call last):
File "/usr/lib/python3.12/multiprocessing/process.py", line 314, in _bootstrap
self.run()
File "/usr/lib/python3/dist-packages/sublist3r.py", line 269, in run
domain_list = self.enumerate()
^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/sublist3r.py", line 254, in enumerate
self.should_sleep()
File "/usr/lib/python3/dist-packages/sublist3r.py", line 311, in should_sleep
time.sleep(5)
KeyboardInterrupt
return self.poll(os.WNOHANG if timeout == 0.0 else 0)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3.12/multiprocessing/popen_fork.py", line 27, in poll
pid, sts = os.waitpid(self.pid, flag)
^^^^^^^^^^^^^^^^^^^^^^^^^^
KeyboardInterrupt
Traceback (most recent call last):
File "/usr/lib/python3.12/multiprocessing/process.py", line 314, in _bootstrap
self.run()
File "/usr/lib/python3/dist-packages/sublist3r.py", line 269, in run
domain_list = self.enumerate()
^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/sublist3r.py", line 237, in enumerate
resp = self.send_req(query, page_no)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/sublist3r.py", line 176, in send_req
resp = self.session.get(url, headers=self.headers, timeout=self.timeout)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/requests/sessions.py", line 602, in get
return self.request("GET", url, **kwargs)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/requests/sessions.py", line 589, in request
resp = self.send(prep, **send_kwargs)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/requests/sessions.py", line 703, in send
r = adapter.send(request, **kwargs)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/requests/adapters.py", line 667, in send
resp = conn.urlopen(
^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/urllib3/connectionpool.py", line 791, in
urlopen
response = self._make_request(
^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/urllib3/connectionpool.py", line 468, in
_make_request
self._validate_conn(conn)
File "/usr/lib/python3/dist-packages/urllib3/connectionpool.py", line 1097, in
_validate_conn
conn.connect()
File "/usr/lib/python3/dist-packages/urllib3/connection.py", line 611, in connect
self.sock = sock = self._new_conn()
^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/urllib3/connection.py", line 203, in
_new_conn
sock = connection.create_connection(
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/urllib3/util/connection.py", line 73, in
create_connection
sock.connect(sa)
KeyboardInterrupt
┌──(gopal㉿kali)-[~]
└─$ curl -i irrl.dev
HTTP/1.1 200 OK
Date: Wed, 15 Jan 2025 11:56:23 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
vary: Accept-Encoding
x-turbo-charged-by: LiteSpeed
cf-cache-status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/ptop.only.wip.la:443\/https\/a.nel.cloudflare.com\/report\/v4?s=l
%2FN8ZuPprN8Xz%2Fs66gY2WmpmyxHTYF%2FQet5esLd
%2Fgkir0mZwyfGkzPN2D5cVDZdNe6wIMpZ5wU3%2BdkDi
%2F9oyesOJ3jBGTnI5pexkDblHZXtraayKkvJRVpzcUXC1XkLl1FFWZPgw0A%3D%3D"}],"group":"cf-
nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 9025aea25cf3ed26-MXP
alt-svc: h3=":443"; ma=86400
server-timing: cfL4;desc="?
proto=TCP&rtt=155118&min_rtt=155118&rtt_var=77559&sent=1&recv=3&lost=0&retrans=0&se
nt_bytes=0&recv_bytes=72&delivery_rate=0&cwnd=249&unsent_bytes=0&cid=00000000000000
00&ts=0&x=0"
<!DOCTYPE html>
<html>
<head>
<style>
* {
background-color: #1a1a1a;
}
</style>
</head>
<body>
</body>
<!-- Hey there, you found me!. There is nothing here now. -->
</html>
┌──(gopal㉿kali)-[~]
└─$ wget --server-response --spider irrl.dev
Spider mode enabled. Check if remote file exists.
--2025-01-15 17:26:44-- http://irrl.dev/
Resolving irrl.dev (irrl.dev)... 2606:4700:3033::6815:d47,
2606:4700:3030::ac43:9b0c, 104.21.13.71, ...
Connecting to irrl.dev (irrl.dev)|2606:4700:3033::6815:d47|:80... connected.
HTTP request sent, awaiting response...
HTTP/1.1 200 OK
Date: Wed, 15 Jan 2025 11:56:44 GMT
Content-Type: text/html; charset=UTF-8
Connection: keep-alive
x-turbo-charged-by: LiteSpeed
cf-cache-status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?
s=Ns%2FwIVa5rSETxhj2JQvJkqikQ1tHKUCG1AOftySeFwDHsaYO1pzokBE
%2B2cGnVOLPdZdMFXS1HhHq7yweL0NalIGoOZxz7jiGUpfVyhmv4o8i9IL8x3qAtnf9YyP6Cq7L
%2BDa1hKxOcQ%3D%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 9025af2a0da0e15e-MRS
alt-svc: h3=":443"; ma=86400
server-timing: cfL4;desc="?
proto=TCP&rtt=144963&min_rtt=144963&rtt_var=72481&sent=1&recv=3&lost=0&retrans=0&se
nt_bytes=0&recv_bytes=124&delivery_rate=0&cwnd=249&unsent_bytes=0&cid=0000000000000
000&ts=0&x=0"
Length: unspecified [text/html]
Remote file exists and could contain further links,
but recursion is disabled -- not retrieving.
┌──(gopal㉿kali)-[~]
└─$ ^[[200~nmap -A example.com
zsh: bad pattern: ^[[200~nmap
┌──(gopal㉿kali)-[~]
└─$ nmap -A irrl.dev
Starting Nmap 7.94SVN ( https://nmap.org ) at 2025-01-15 17:27 IST
Nmap scan report for irrl.dev (172.67.155.12)
Host is up (0.15s latency).
Other addresses for irrl.dev (not scanned): 2606:4700:3030::ac43:9b0c
2606:4700:3033::6815:d47 104.21.13.71
Not shown: 996 filtered tcp ports (no-response)
PORT STATE SERVICE VERSION
80/tcp open http Cloudflare http proxy
|_http-title: 403 Forbidden
|_http-server-header: cloudflare
443/tcp open ssl/http Cloudflare http proxy
|_http-title: 403 Forbidden
|_http-server-header: cloudflare
| ssl-cert: Subject: commonName=irrl.dev
| Subject Alternative Name: DNS:irrl.dev, DNS:*.irrl.dev
| Not valid before: 2025-01-08T02:51:52
|_Not valid after: 2025-04-08T03:50:03
8080/tcp open http Cloudflare http proxy
|_http-title: Site doesn't have a title (text/plain; charset=UTF-8).
|_http-server-header: cloudflare
8443/tcp open ssl/http Cloudflare http proxy
|_http-title: Site doesn't have a title (text/plain; charset=UTF-8).
|_http-server-header: cloudflare
| ssl-cert: Subject: commonName=irrl.dev
| Subject Alternative Name: DNS:irrl.dev, DNS:*.irrl.dev
| Not valid before: 2025-01-08T02:51:52
|_Not valid after: 2025-04-08T03:50:03
Warning: OSScan results may be unreliable because we could not find at least 1 open
and 1 closed port
OS fingerprint not ideal because: Missing a closed TCP port so results incomplete
No OS matches for host
Network Distance: 9 hops