Advertisement
Guest User

NASCA Admin finder.php

a guest
Jul 28th, 2016
246
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 11.27 KB | None | 0 0
  1. <?php
  2.  
  3. /**
  4.  
  5. Kyxrecon : Github/Twitter/Youtube/
  6.  
  7. Bl0g : www.kyxhack.blogspot.mx
  8.  
  9. **/
  10.  
  11. error_reporting(0);
  12.  
  13. if($argv[1] == "--help") {
  14.     echo "
  15.  
  16.    .o oOOOOOOOo                                            OOOo
  17.    Ob.OOOOOOOo  OOOo.      oOOo.                      .adOOOOOOO
  18.    OboO------------.OOo. .oOOOOOo.    OOOo.oOOOOOo..---------'OO
  19.    OOP.oOOOOOOOOOOO .POOOOOOOOOOOo.   ...OOOOOOOOOP,OOOOOOOOOOOB'
  20.    `O'OOOO'     `OOOOo.OOOOOOOOOOO. .adOOOOOOOOO.oOOO'    `OOOOo
  21.    .OOOO'            `OOOOOOOOOOOOOOOOOOOOOOOOOO'            `OO
  22.    OOOOO                 '.OOOOOOOOOOOOOOOO.`                oOO
  23.   oOOOOOba.                .adOOOOOOOOOOba               .adOOOOo.
  24.  oOOOOOOOOOOOOOba.    .adOOOOOOOOOO@^OOOOOOOba.     .adOOOOOOOOOOOO
  25. OOOOOOOOOOOOOOOOO.OOOOOOOOOOOOOO.`  '.OOOOOOOOOOOOO.OOOOOOOOOOOOOO
  26. .OOOO.       .YOoOOOOMOIONODOO.`  .   '.OOROAOPOEOOOoOY.     .OOO.
  27.    Y           'OOOOOOOOOOOOOO: .oOOo. :OOOOOOOOOOO?'         :.
  28.    :            .oO%OOOOOOOOOOo.OOOOOO.oOOOOOOOOOOOO?         .
  29.    .            oOOP.%OOOOOOOOoOOOOOOO?oOOOOO?OOOO.OOo
  30.                 '%o  OOOO.%OOOO%.%OOOOO.OOOOOO.OOO.:
  31.                      `$.  `OOOO' .OY ' .OOOO'  o             .
  32.     .                  .     O                  BLACKHAT MEMBER
  33. ______  _     _    _    _ _     _ _    _ ______  _______ ______ _____  ______  
  34. (____  \| |   | |  | |  / ) |   | \ \  / (_____ \(_______) _____) ___ \|  ___ \
  35. ____)  ) |___| |  | | / /| |___| |\ \/ / _____) )_____ | /    | |   | | |   | |
  36. |  __  ( \_____/   | |< <  \_____/  )  ( (_____ (|  ___)| |    | |   | | |   | |
  37. | |__)  )  ___     | | \ \   ___   / /\ \      | | |____| \____| |___| | |   | |
  38. |______/  (___)    |_|  \_) (___) /_/  \_\     |_|_______)______)_____/|_|   |_|
  39.                                                                                
  40.     " . "\n";
  41.  
  42.     $help = ["--help ; List all arguments","--version ; Shows the version of PHP","Usage: php NASCA_ADFIND.php --url http://www.site.com"];
  43.     foreach($help as $argumentos) {
  44.         echo $argumentos . "\n";
  45.     }
  46. }elseif($argv[1] == "--version"){
  47.     echo "
  48.  
  49.    .o oOOOOOOOo                                            OOOo
  50.    Ob.OOOOOOOo  OOOo.      oOOo.                      .adOOOOOOO
  51.    OboO------------.OOo. .oOOOOOo.    OOOo.oOOOOOo..---------'OO
  52.    OOP.oOOOOOOOOOOO .POOOOOOOOOOOo.   ...OOOOOOOOOP,OOOOOOOOOOOB'
  53.    `O'OOOO'     `OOOOo.OOOOOOOOOOO. .adOOOOOOOOO.oOOO'    `OOOOo
  54.    .OOOO'            `OOOOOOOOOOOOOOOOOOOOOOOOOO'            `OO
  55.    OOOOO                 '.OOOOOOOOOOOOOOOO.`                oOO
  56.   oOOOOOba.                .adOOOOOOOOOOba               .adOOOOo.
  57.  oOOOOOOOOOOOOOba.    .adOOOOOOOOOO@^OOOOOOOba.     .adOOOOOOOOOOOO
  58. OOOOOOOOOOOOOOOOO.OOOOOOOOOOOOOO.`  '.OOOOOOOOOOOOO.OOOOOOOOOOOOOO
  59. .OOOO.       .YOoOOOOMOIONODOO.`  .   '.OOROAOPOEOOOoOY.     .OOO.
  60.    Y           'OOOOOOOOOOOOOO: .oOOo. :OOOOOOOOOOO?'         :.
  61.    :            .oO%OOOOOOOOOOo.OOOOOO.oOOOOOOOOOOOO?         .
  62.    .            oOOP.%OOOOOOOOoOOOOOOO?oOOOOO?OOOO.OOo
  63.                 '%o  OOOO.%OOOO%.%OOOOO.OOOOOO.OOO.:
  64.                      `$.  `OOOO' .OY ' .OOOO'  o             .
  65.     .                  .     O              BLACKHAT MEMBER
  66. ______  _     _    _    _ _     _ _    _ ______  _______ ______ _____  ______  
  67. (____  \| |   | |  | |  / ) |   | \ \  / (_____ \(_______) _____) ___ \|  ___ \
  68. ____)  ) |___| |  | | / /| |___| |\ \/ / _____) )_____ | /    | |   | | |   | |
  69. |  __  ( \_____/   | |< <  \_____/  )  ( (_____ (|  ___)| |    | |   | | |   | |
  70. | |__)  )  ___     | | \ \   ___   / /\ \      | | |____| \____| |___| | |   | |
  71. |______/  (___)    |_|  \_) (___) /_/  \_\     |_|_______)______)_____/|_|   |_|
  72.                                                                                                              
  73.  
  74.     " . "\n";
  75.  
  76.     echo phpversion() . "\n";
  77.  
  78. }elseif($argv[1] == "--url") {
  79.     echo "
  80.  
  81.    .o oOOOOOOOo                                            OOOo
  82.    Ob.OOOOOOOo  OOOo.      oOOo.                      .adOOOOOOO
  83.    OboO------------.OOo. .oOOOOOo.    OOOo.oOOOOOo..---------'OO
  84.    OOP.oOOOOOOOOOOO .POOOOOOOOOOOo.   ...OOOOOOOOOP,OOOOOOOOOOOB'
  85.    `O'OOOO'     `OOOOo.OOOOOOOOOOO. .adOOOOOOOOO.oOOO'    `OOOOo
  86.    .OOOO'            `OOOOOOOOOOOOOOOOOOOOOOOOOO'            `OO
  87.    OOOOO                 '.OOOOOOOOOOOOOOOO.`                oOO
  88.   oOOOOOba.                .adOOOOOOOOOOba               .adOOOOo.
  89.  oOOOOOOOOOOOOOba.    .adOOOOOOOOOO@^OOOOOOOba.     .adOOOOOOOOOOOO
  90. OOOOOOOOOOOOOOOOO.OOOOOOOOOOOOOO.`  '.OOOOOOOOOOOOO.OOOOOOOOOOOOOO
  91. .OOOO.       .YOoOOOOMOIONODOO.`  .   '.OOROAOPOEOOOoOY.     .OOO.
  92.    Y           'OOOOOOOOOOOOOO: .oOOo. :OOOOOOOOOOO?'         :.
  93.    :            .oO%OOOOOOOOOOo.OOOOOO.oOOOOOOOOOOOO?         .
  94.    .            oOOP.%OOOOOOOOoOOOOOOO?oOOOOO?OOOO.OOo
  95.                 '%o  OOOO.%OOOO%.%OOOOO.OOOOOO.OOO.:
  96.                      `$.  `OOOO' .OY ' .OOOO'  o             .
  97.     .                  .     O              BLACKHAT MEMBER
  98. ______  _     _    _    _ _     _ _    _ ______  _______ ______ _____  ______  
  99. (____  \| |   | |  | |  / ) |   | \ \  / (_____ \(_______) _____) ___ \|  ___ \
  100. ____)  ) |___| |  | | / /| |___| |\ \/ / _____) )_____ | /    | |   | | |   | |
  101. |  __  ( \_____/   | |< <  \_____/  )  ( (_____ (|  ___)| |    | |   | | |   | |
  102. | |__)  )  ___     | | \ \   ___   / /\ \      | | |____| \____| |___| | |   | |
  103. |______/  (___)    |_|  \_) (___) /_/  \_\     |_|_______)______)_____/|_|   |_|
  104.                                                                                
  105.     " . "\n"."\n";
  106.  
  107.     echo "[+] NASCA Admin finder In progress ..." . "\n"."\n";
  108.  
  109.     $lista = ["admin","administrator","adm","login","painel","painel/autenticacao/login.php","loign.php","administrator.php","admins.php","logins","admincp",
  110.         "admincp.php","admin1.php", "admin1.html", "admin2.php","painel.asp","painel.php","admin2.html", "yonetim.php", "yonetim.html", "yonetici.php", "yonetici.html", "ccms/", "ccms/login.php", "ccms/index.php", "maintenance/", "webmaster/", "adm/", "configuration/", "configure/", "websvn/", "admin/", "admin/account.php", "admin/account.html","admin/index.php", "admin/index.html", "admin/login.php","admin/login.html", "admin/home.php", "admin/controlpanel.html", "admin/controlpanel.php", "admin.php", "admin.html", "admin/cp.php", "admin/cp.html", "cp.php", "cp.html", "administrator/","administrator/index.html", "administrator/index.php", "administrator/login.html", "administrator/login.php", "administrator/account.html", "administrator/account.php", "administrator.php","administrator.html", "login.php", "login.html", "modelsearch/login.php", "moderator.php", "moderator.html", "moderator/login.php", "moderator/login.html","moderator/admin.php","moderator/admin.html", "moderator/", "account.php", "account.html", "controlpanel/", "controlpanel.php", "controlpanel.html", "admincontrol.php", "admincontrol.html", "adminpanel.php","adminpanel.html", "admin1.asp", "admin2.asp", "yonetim.asp", "yonetici.asp", "admin/account.asp", "admin/index.asp", "admin/login.asp", "admin/home.asp", "admin/controlpanel.asp", "admin.asp", "admin/cp.asp", "cp.asp", "administrator/index.asp","administrator/login.asp","administrator/account.asp","administrator.asp", "login.asp", "modelsearch/login.asp", "moderator.asp","moderator/login.asp", "moderator/admin.asp", "account.asp", "controlpanel.asp", "admincontrol.asp", "adminpanel.asp", "fileadmin/", "fileadmin.php", "fileadmin.asp", "fileadmin.html","administration/", "administration.php", "administration.html", "sysadmin.php", "sysadmin.html", "phpmyadmin/", "myadmin/", "sysadmin.asp", "sysadmin/", "ur-admin.asp", "ur-admin.php","ur-admin.html", "ur-admin/", "Server.php", "Server.html", "Server.asp", "Server/", "wp-admin/", "administr8.php", "administr8.html", "administr8/", "administr8.asp", "webadmin/", "webadmin.php","webadmin.asp", "webadmin.html", "administratie/", "admins/", "admins.php", "admins.asp", "admins.html", "administrivia/", "Database_Administration/", "WebAdmin/", "useradmin/", "sysadmins/","admin1/", "system-administration/", "administrators/", "pgadmin/", "directadmin/", "staradmin/", "ServerAdministrator/", "SysAdmin/", "administer/", "LiveUser_Admin/", "sys-admin/", "typo3/","panel/", "cpanel/", "cPanel/", "cpanel_file/", "platz_login/", "rcLogin/", "blogindex/", "formslogin/", "autologin/", "support_login/", "meta_login/", "manuallogin/", "simpleLogin/", "loginflat/","utility_login/", "showlogin/", "memlogin/", "members/", "login-redirect/", "sub-login/", "wp-login/", "login1/", "dir-login/", "login_db/", "xlogin/", "smblogin/", "customer_login/", "UserLogin/","login-us/", "acct_login/", "admin_area/", "bigadmin/", "project-admins/", "phppgadmin/", "pureadmin/", "sql-admin/", "radmind/", "openvpnadmin/", "wizmysqladmin/", "vadmind/", "ezsqliteadmin/","hpwebjetadmin/", "newsadmin/", "adminpro/", "Lotus_Domino_Admin/", "bbadmin/", "vmailadmin/", "Indy_admin/", "ccp14admin/", "irc-macadmin/","banneradmin/","sshadmin/","phpldapadmin/","macadmin/","administratoraccounts/", "admin4_account/","admin4_colon/","radmind-1/","SuperAdmin/","AdminTools/","cmsadmin/","SysAdmin2/","globes_admin/","cadmins/","phpSQLiteAdmin/", "navSiteAdmin/","server_admin_small/","logo_sysadmin/","server/","database_administration/","power_user/", "system_administration/", "ss_vms_admin_sm/"];
  111.  
  112.     foreach($lista as $values) {
  113.         $test = $argv[2]."/".$values;
  114.         $get = get_headers($test);
  115.  
  116.         if(eregi('200',$get[0]) or eregi('OK',$get[0])) {
  117.             echo "[+] " . $argv[2]."/".$values . "\n";
  118.         }else {
  119.             echo "[-] " . $argv[2]."/".$values . "\n";
  120.         }
  121.     }
  122. }elseif(count($argv == 0)) {
  123.     echo "
  124.  
  125.    .o oOOOOOOOo                                            OOOo
  126.    Ob.OOOOOOOo  OOOo.      oOOo.                      .adOOOOOOO
  127.    OboO------------.OOo. .oOOOOOo.    OOOo.oOOOOOo..---------'OO
  128.    OOP.oOOOOOOOOOOO .POOOOOOOOOOOo.   ...OOOOOOOOOP,OOOOOOOOOOOB'
  129.    `O'OOOO'     `OOOOo.OOOOOOOOOOO. .adOOOOOOOOO.oOOO'    `OOOOo
  130.    .OOOO'            `OOOOOOOOOOOOOOOOOOOOOOOOOO'            `OO
  131.    OOOOO                 '.OOOOOOOOOOOOOOOO.`                oOO
  132.   oOOOOOba.                .adOOOOOOOOOOba               .adOOOOo.
  133.  oOOOOOOOOOOOOOba.    .adOOOOOOOOOO@^OOOOOOOba.     .adOOOOOOOOOOOO
  134. OOOOOOOOOOOOOOOOO.OOOOOOOOOOOOOO.`  '.OOOOOOOOOOOOO.OOOOOOOOOOOOOO
  135. .OOOO.       .YOoOOOOMOIONODOO.`  .   '.OOROAOPOEOOOoOY.     .OOO.
  136.    Y           'OOOOOOOOOOOOOO: .oOOo. :OOOOOOOOOOO?'         :.
  137.    :            .oO%OOOOOOOOOOo.OOOOOO.oOOOOOOOOOOOO?         .
  138.    .            oOOP.%OOOOOOOOoOOOOOOO?oOOOOO?OOOO.OOo
  139.                 '%o  OOOO.%OOOO%.%OOOOO.OOOOOO.OOO.:
  140.                      `$.  `OOOO' .OY ' .OOOO'  o             .
  141.     .                  .     O              BLACKHAT MEMBER
  142. ______  _     _    _    _ _     _ _    _ ______  _______ ______ _____  ______  
  143. (____  \| |   | |  | |  / ) |   | \ \  / (_____ \(_______) _____) ___ \|  ___ \
  144. ____)  ) |___| |  | | / /| |___| |\ \/ / _____) )_____ | /    | |   | | |   | |
  145. |  __  ( \_____/   | |< <  \_____/  )  ( (_____ (|  ___)| |    | |   | | |   | |
  146. | |__)  )  ___     | | \ \   ___   / /\ \      | | |____| \____| |___| | |   | |
  147. |______/  (___)    |_|  \_) (___) /_/  \_\     |_|_______)______)_____/|_|   |_|
  148.                                                                                                                
  149.  
  150.     " . "\n";
  151.     echo "There was Past No Parameter! Digite php finder.php --help to view the parameters" . "\n";
  152. }
  153.  
  154. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement