Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Readme:
- SecPoint.com Google Penetration Testing Hack Database v 1.5
- Database of Google Hacks and a tool for manipulating it.
- Database is separated to files by categories. You could use DB alone, or
- make some manipulations using our tool like generating URLs for Google
- search engine or generating pretty HTML output with links. The tool
- could also help in analysing your own site by adding site search option
- to all queries.
- This tool will take source file (file with a list of queries) and generate
- website-specific queries (-s option) by adding site:sitename.com to each
- query. Not only queries, but full Google URLs could be generated for each
- query (-q). Output could be saved to file in text format (-o) or in HTML with
- links format (-t) which will automatically create URLs list.
- run as
- ./googleDB-tool.py <source file> <options>
- <source file> queries source file from GoogleDB (files in db directory)
- Options are:
- -o output.txt save output to file
- -s sitename.com generate queries for this site only
- -q generate google query urls for each line
- -t generate output in HTML format (implies -q)
- -m LISTFILE generate queries for multiple sites listed in LISTFILE
- Command line examples:
- 1-generate list of search strings for finding login pages
- ./googleDB-tool.py "login_pages.txt"
- 2-generate list of Google queries for finding login pages
- ./googleDB-tool.py "login_pages.txt" -q
- 3-same as 2, but in HTML format
- ./googleDB-tool.py "login_pages.txt" -q -t
- 4-same as 3, but save to "OUT.html"
- ./googleDB-tool.py "login_pages.txt" -q -t -o "OUT.html"
- 5-generate queries as in 4, but only for site.com
- ./googleDB-tool.py "login_pages.txt" -q -t -o "OUT.html" -s site.com
- 6-all of the above, for multiple sites from "sites.txt" list
- ./googleDB-tool.py "login_pages.txt" -q -t -o OUT.html -s site.com -m sites.txt
- History:
- # ## 1.0 initial release
- # ## 1.1 google query generating option (-q)
- # ## 1.2 generating HTML output (-t)
- # ## 1.3 added support for multiple sites generation (-m option), database update - 7824 records
- # ## 1.5 friendly output and examples, database update
- Copy Paste At Google:
- Network_Or_Vulnerability Data:
- """Looking Glass"" (inurl:""lg/"" | inurl:lookingglass)"
- """Network Host Assessment Report"" ""Internet Scanner"""
- """Output produced by SysWatch *"""
- """Phorum Admin"" ""Database Connection"" inurl:forum inurl:admin"
- """Powered by phpOpenTracker"" Statistics"
- """Shadow Security Scanner performed a vulnerability assessment"""
- """SnortSnarf alert page"""
- """The following report contains confidential information"" vulnerability -search"
- """The statistics were last updated"" ""Daily""-microsoft.com"
- """This report lists"" ""identified by Internet Scanner"""
- """Traffic Analysis for"" ""RMON Port * on unit *"""
- """Version Info"" ""Boot Version"" ""Internet Settings"""
- """apricot - admin"" 00h"
- """by Reimar Hoven. All Rights Reserved. Disclaimer"" | inurl:""log/logdb.dta"""
- """powered | performed by Beyond Security's Automated Scanning"" -kazaa -example"
- """this proxy is working fine!"" ""enter *"" ""URL***"" * visit"
- "((inurl:ifgraph ""Page generated at"") OR (""This page was built using ifgraph""))"
- "ACID ""by Roman Danyliw"" filetype:php"
- "ext:cgi intext:""nrg-"" "" This web page was created on """
- "filetype:log intext:""ConnectionManager2"""
- "filetype:pdf ""Assessment Report"" nessus"
- "filetype:php inurl:ipinfo.php ""Distributed Intrusion Detection System"""
- "filetype:php inurl:nqt intext:""Network Query Tool"""
- "intext:""Welcome to the Web V.Networks"" intitle:""V.Networks [Top]"" -filetype:htm"
- "intitle:""ADSL Configuration page"""
- "intitle:""Azureus : Java BitTorrent Client Tracker"""
- "intitle:""BNBT Tracker Info"""
- "intitle:""Belarc Advisor Current Profile"" intext:""Click here for Belarc's PC Management products, for large and small companies."""
- "intitle:""Microsoft Site Server Analysis"""
- "intitle:""Nessus Scan Report"" ""This file was generated by Nessus"""
- "intitle:""PHPBTTracker Statistics"" | intitle:""PHPBT Tracker Statistics"""
- "intitle:""Retina Report"" ""CONFIDENTIAL INFORMATION"""
- "intitle:""start.managing.the.device"" remote pbx acc"
- "intitle:""sysinfo * "" intext:""Generated by Sysinfo * written by The Gamblers."""
- "intitle:""twiki"" inurl:""TWikiUsers"""
- "inurl:""/catalog.nsf"" intitle:catalog"
- "inurl:""NmConsole/Login.asp"" | intitle:""Login - Ipswitch WhatsUp Professional 2005"" | intext:""Ipswitch WhatsUp Professional 2005 (SP1)"" ""Ipswitch, Inc"""
- "inurl:""install/install.php"""
- "inurl:""map.asp?"" intitle:""WhatsUp Gold"""
- "inurl:""sitescope.html"" intitle:""sitescope"" intext:""refresh"" -demo"
- "inurl:/cgi-bin/finger? ""In real life"""
- "inurl:/counter/index.php intitle:""+PHPCounter 7.*"""
- "inurl:CrazyWWWBoard.cgi intext:""detailed debugging information"""
- "inurl:phpSysInfo/ ""created by phpsysinfo"""
- "inurl:portscan.php ""from Port""|""Port Range"""
- ext:cfg radius.cfg
- filetype:vsd vsd network -samples -examples
- intitle:r57shell +uname -bbpress
- inurl:/adm-cfgedit.php
- inurl:/cgi-bin/finger? Enter (account|host|user|username)
- inurl:login.jsp.bak
- inurl:ovcgi/jovw
- inurl:proxy | inurl:wpad ext:pac | ext:dat findproxyforurl
- inurl:statrep.nsf -gov
- inurl:status.cgi?host=all
- inurl:testcgi xitami
- inurl:webalizer filetype:png -.gov -.edu -.mil -opendarwin
- inurl:webutil.pl
- site:netcraft.com intitle:That.Site.Running Apache
Advertisement
Add Comment
Please, Sign In to add comment