域名记录:A(正向解析),PTR(反向解析), CNAME(别名),NS(域名服务器),MX(邮件服务器)
1. 收集域名解析到的IP地址和别名
root@kali:~# nslookup blog.youkuaiyun.com
Server: 192.168.1.1
Address: 192.168.1.1#53
Non-authoritative answer:
blog.youkuaiyun.com canonical name = f32ntumnfh53rmbfkgfrhzcp2sn0rrjh.yundunwaf1.com.
Name: f32ntumnfh53rmbfkgfrhzcp2sn0rrjh.yundunwaf1.com #解析到的域名(别名)
Address: 39.96.126.153 #解析到的ip
root@kali:~# ping f32ntumnfh53rmbfkgfrhzcp2sn0rrjh.yundunwaf1.com. -c 4 #ping一下确认是否同一个ip地址
PING f32ntumnfh53rmbfkgfrhzcp2sn0rrjh.yundunwaf1.com (39.96.126.153) 56(84) bytes of data.
64 bytes from 39.96