This forum is in archive mode. You will not be able to post new content.

Author Topic: Tracking  (Read 2027 times)

0 Members and 1 Guest are viewing this topic.

Offline Wolf

  • Knight
  • **
  • Posts: 224
  • Cookies: 23
  • Fear makes the wolf larger than he really is.
    • View Profile
Tracking
« on: March 18, 2012, 05:53:34 AM »
So I'm trying to hunt this guy down named Dr. Robert Vaughan, I found his facebook, his job, and his email. I decided to go after his email, but it's something really strange and I can't find the client, because it's hosted by where he works. How do I do this?
It's robert.vaughan@fbcgrapevine.com
 

Offline ande

  • Owner
  • Titan
  • *
  • Posts: 2664
  • Cookies: 256
    • View Profile
Re: Tracking
« Reply #1 on: March 18, 2012, 06:14:38 AM »
fbcgrapevine.com   TXT   1 hour      v=verifydomain MS=ms64885750
fbcgrapevine.com   TXT   1 hour      v=spf1 include:outlook.com ~all
mail.fbcgrapevine.com   A   2 hours      173.74.198.3 ()
fbcgrapevine.com   MX   2 hours   0   fbcgrapevine-com.mail.eo.outlook.com

Should get you started.
if($statement) { unless(!$statement) { // Very sure } }
https://evilzone.org/?hack=true

Offline Wolf

  • Knight
  • **
  • Posts: 224
  • Cookies: 23
  • Fear makes the wolf larger than he really is.
    • View Profile
Re: Tracking
« Reply #2 on: March 18, 2012, 06:18:41 AM »
What tool did you use for this?
thx for the start btw.

xor

  • Guest
Re: Tracking
« Reply #3 on: March 19, 2012, 11:03:36 AM »
nslookup for windows, or dig for linux will work, there are also websites used to probe DNS entries like that.

Z3R0

  • Guest
Re: Tracking
« Reply #4 on: March 19, 2012, 11:13:50 AM »
Never doubt the power of standard, diagnostic, tools my friend. Happy hunting.

xor

  • Guest
Re: Tracking
« Reply #5 on: March 19, 2012, 02:28:08 PM »
I also wouldn't even bother targeting the mail either. That domain is hosted directly by Microsoft.


Edit:


mail.fbcgrapevine.com doesn't actually receive their mail, but it does point to their internal network.


They have FTP, SSH, VPN, HTTP (8080) and ActionTek TR-069 Remote Access (4657) http://en.wikipedia.org/wiki/TR-069
« Last Edit: March 19, 2012, 02:40:29 PM by xor »

Offline Wolf

  • Knight
  • **
  • Posts: 224
  • Cookies: 23
  • Fear makes the wolf larger than he really is.
    • View Profile
Re: Tracking
« Reply #6 on: March 20, 2012, 02:53:20 AM »
So what would you target?
I went ahead and sent a key logger disguised as a word doc in the attachment, it got opened and now I have a daily update to a fake gmail. Figured it would have been easier.

Offline noob

  • Knight
  • **
  • Posts: 202
  • Cookies: 29
    • View Profile
Re: Tracking
« Reply #7 on: March 20, 2012, 03:07:24 AM »
Invasion of Privacy is name of this paper,best example of personal information gathering that I have read,maybe can help:
Code: [Select]
http://www.attackvector.org/invasion-of-privacy/

Offline Wolf

  • Knight
  • **
  • Posts: 224
  • Cookies: 23
  • Fear makes the wolf larger than he really is.
    • View Profile
Re: Tracking
« Reply #8 on: March 20, 2012, 03:16:13 AM »
Noob,
love the post.  :D

Offline noob

  • Knight
  • **
  • Posts: 202
  • Cookies: 29
    • View Profile
Re: Tracking
« Reply #9 on: March 20, 2012, 03:28:36 AM »
Noob,
love the post.  :D

Im glad i didnt search for it for nothing ;)

 



Want to be here? Contact Ande, Factionwars or Kulverstukas on the forum or at IRC.