Scan a domain, using a brute-force attack and a dictionary of subdomains and hostnames
dnsrecon --domain {{example.com}} --dictionary {{path/to/dictionary.txt}} --type brt
dnsrecon --domain {{example.com}} --dictionary {{path/to/dictionary.txt}} --type brt