FinalRecon v1.0.2 – OSINT Tool For All-In-One Web Reconnaissance
data:image/s3,"s3://crabby-images/50c46/50c463ba35e658219e26dd1bb955140c8b3fc81a" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 1 FinalRecon 1"
FinalRecon is a fast and simple python script for web reconnaissance. It follows a modular structure so in future new modules can be added with ease.
Features
FinalRecon provides detailed information such as :
- Header Information
- Whois
- SSL Certificate Information
- Crawler
- DNS Enumeration
- A, AAAA, ANY, CNAME, MX, NS, SOA, TXT Records
- DMARC Records
- Subdomain Enumeration
- Data Sources
- BuffOver
- crt.sh
- ThreatCrowd
- AnubisDB
- ThreatMiner
- Data Sources
- Traceroute
- Protocols
- UDP
- TCP
- ICMP
- Protocols
- Directory Searching
- Port Scan
- Fast
- Top 1000 Ports
- Open Ports with Standard Services
- Export
- Formats
- txt
- xml
- csv
- Formats
Screenshots
Header Information
data:image/s3,"s3://crabby-images/77a02/77a02b992b6d52757cd7a63faebd16d33866b35c" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 2 FinalRecon 7"
WHOIS
data:image/s3,"s3://crabby-images/2f5a5/2f5a57143eff6ba7fd9fb9efd726507b98667940" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 3 FinalRecon 8"
SSL Certificate Details
data:image/s3,"s3://crabby-images/7ea80/7ea804a8360c92a37c3dde01bf4948331e14e7ce" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 4 FinalRecon 9"
Found Flag in SSL Certificate – Securinets CTF Quals 2019 – Hidden (200 Points)
Crawler
data:image/s3,"s3://crabby-images/509aa/509aa49242c0dcfdb49b6d2683f328addb046f05" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 5 FinalRecon 10"
DNS Enumeration
data:image/s3,"s3://crabby-images/104ec/104ecd2fef90a61f7fde0e9be6db4daac4e79ca6" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 6 FinalRecon 11"
HackTheBox OSINT Challenge
Subdomain Enumeration
data:image/s3,"s3://crabby-images/8f600/8f6003205a1716442e9760daba4141e7b013a0dd" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 7 FinalRecon 12"
Traceroute
data:image/s3,"s3://crabby-images/e65da/e65dae56e49dcdc3e92f70c73dd47d9702db8e32" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 8 FinalRecon 13"
Directory Searching
data:image/s3,"s3://crabby-images/980a6/980a6232bc1c59eec1e064fd0faf6bed02ca814f" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 9 FinalRecon 14"
Port Scan
data:image/s3,"s3://crabby-images/0b323/0b3238687135e62fa67e0ddd1c723fa960ee9fa8" alt="FinalRecon v1.0.2 - OSINT Tool For All-In-One Web Reconnaissance 10 FinalRecon 15"
Tested on
- Kali Linux 2019.1
- BlackArch Linux
Installation
git clone https://github.com/thewhiteh4t/FinalRecon.git
cd FinalRecon
pip3 install -r requirements.txt
Usage
python3 finalrecon.py -h
usage: finalrecon.py [-h] [--headers] [--sslinfo] [--whois] [--crawl] [--dns] [--sub] [--trace] [--dir] [--ps]
[--full] [-t T] [-T T] [-w W] [-r] [-s] [-d D] [-m M] [-p P] [-tt TT] [-o O]
url
FinalRecon - OSINT Tool for All-In-One Web Recon | v1.0.2
positional arguments:
url Target URL
optional arguments:
-h, --help show this help message and exit
--headers Header Information
--sslinfo SSL Certificate Information
--whois Whois Lookup
--crawl Crawl Target
--dns DNS Enumeration
--sub Sub-Domain Enumeration
--trace Traceroute
--dir Directory Search
--ps Fast Port Scan
--full Full Recon
Extra Options:
-t T Number of Threads [ Default : 50 ]
-T T Request Timeout [ Default : 10.0 ]
-w W Path t o Wordlist [ Default : wordlists/dirb_common.txt ]
-r Allow Redirect [ Default : False ]
-s Toggle SSL Verification [ Default : True ]
-d D Custom DNS Servers [ Default : 1.1.1.1 ]
-m M Traceroute Mode [ Default : UDP ] [ Available : TCP, ICMP ]
-p P Port for Traceroute [ Default : 80 / 33434 ]
-tt TT Traceroute Timeout [ Default : 1.0 ]
-o O Export Output [ Default : txt ] [ Available : xml, csv ]
# Check headers
python3 finalrecon.py --headers <url>
# Check ssl Certificate
python3 finalrecon.py --sslinfo <url>
# Check whois Information
python3 finalrecon.py --whois <url>
# Crawl Target
python3 finalrecon.py --crawl <url>
# full scan
python3 finalrecon.py --full <url>
Demo
Download FinalRecon