How to use Dmitry
What is dmitry
Dmitry[Deepmagic Information Gathering Tool] is an open source tool for information gathering on websites.Dmitry is a command line tool written in c.
The application is considered a tool to assist in information gathering when information is required quickly by removing the need to enter multiple commands and the timely process of searching through data from multiple sources.
Features of Dmitry
- It is fast.
- Scans for subdomains ,ports and emails.
- Basic functionality of DMitry allows for information to be gathered about a target host from a simple whois lookup on the target to uptime reports and TCP portscans.
How to use DMitry
It is easy to use tool.Open your terminal and type:
root@seven:~# dmitry -help Deepmagic Information Gathering Tool "There be some deep magic going on" dmitry: invalid option -- 'h' Usage: dmitry [-winsepfb] [-t 0-9] [-o %host.txt] host -o Save output to %host.txt or to file specified by -o file -i Perform a whois lookup on the IP address of a host -w Perform a whois lookup on the domain name of a host -n Retrieve Netcraft.com information on a host -s Perform a search for possible subdomains -e Perform a search for possible email addresses -p Perform a TCP port scan on a host * -f Perform a TCP port scan on a host showing output reporting filtered ports * -b Read in the banner received from the scanned port * -t 0-9 Set the TTL in seconds when scanning a TCP port ( Default 2 ) *Requires the -p flagged to be passed
The --help command shows all the options you can use with the dmitry.
whois lookup scan with Dmitry
whois lookup provides the basic information about website such as ip address, Nameservers,Registrar name,sub domains registration date,expiry date etc.Just go through the scan you will find plenty of useful information.
So -w option is used for whois lookup.
root@seven:~# dmitry whois facebook.com Gathered Inic-whois information for facebook.com --------------------------------- Domain Name: FACEBOOK.COM Registrar: MARKMONITOR INC. Sponsoring Registrar IANA ID: 292 Whois Server: whois.markmonitor.com Referral URL: http://www.markmonitor.com Name Server: A.NS.FACEBOOK.COM Name Server: B.NS.FACEBOOK.COM Status: clientDeleteProhibited http://www.icann.org/epp#clientDeleteProhibited Status: clientTransferProhibited http://www.icann.org/epp#clientTransferProhibited Status: clientUpdateProhibited http://www.icann.org/epp#clientUpdateProhibited Status: serverDeleteProhibited http://www.icann.org/epp#serverDeleteProhibited Status: serverTransferProhibited http://www.icann.org/epp#serverTransferProhibited Status: serverUpdateProhibited http://www.icann.org/epp#serverUpdateProhibited Updated Date: 25-aug-2015 Creation Date: 29-mar-1997 Expiration Date: 30-mar-2020
Search for open Ports with dmitry
-p is used to scan the TCP ports on a host .It displays all the open ports on a host.
root@seven:~# dmitry -p linuxxcomputing.com Deepmagic Information Gathering Tool "There be some deep magic going on" HostIP:22.214.171.124 HostName:linuxxcomputing.com Gathered TCP Port information for 126.96.36.199 --------------------------------- Port State 21/tcp open 22/tcp open 25/tcp open
Search for Emails with dmitry
-e option fetches all the possible emails on a website.
root@seven:~# dmitry -e goolge.com
Find all the possible sub-domains with dmitry
This is very simple just give -s parameter to dmitry.
root@seven:~# dmitry -s google.com Deepmagic Information Gathering Tool "There be some deep magic going on" HostIP:188.8.131.52 HostName:google.com Gathered Subdomain information for google.com --------------------------------- Searching Google.com:80... HostName:www.google.com HostIP:184.108.40.206 Searching Altavista.com:80... Found 1 possible subdomain(s) for host google.com, Searched 0 pages containing 0 results All scans completed, exiting
Save Scan results into a file:
All we need to do just give the path where you want to save the file.You have to use -o option.
root@seven:~# dmitry -o /root/Desktop/result.txt -s google.com Deepmagic Information Gathering Tool "There be some deep magic going on" Writing output to '/root/Desktop/result.txt' HostIP:220.127.116.11 HostName:google.com Gathered Subdomain information for google.com --------------------------------- Searching Google.com:80... HostName:www.google.com HostIP:18.104.22.168 Searching Altavista.com:80... x