KingSkrupellos

Web Pentesting Google Hacking Dorks Priv8 2017

Nov 30th, 2017
326
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 51.91 KB | None | 0 0
  1. Mr. KingSkrupellos Cyberizm Digital Security Team / Paylaşımların Devamı için ++ REP Beğenilere Basalım Lütfen :D
  2.  
  3. https://www.cyberizm.org/cyberizm-web-pentesting-google-hacking-dorks-priv8-2017.html
  4.  
  5. Web Pentesting Google Hacking Dorks Priv8 2017 [ Kullanın Gençler - Her Kesime Yaşa Hitaben -
  6. Dualarınızı Eksik Etmeyin.
  7.  
  8. 2016'nın Başından itibaren Kendim İnternette Gezinirken Bizzat Bulduğum Keşfettiğim Dorklardır.
  9. Arada Başka Kaynaklardan Bulduklarımı Biraraya Toparladım. Sizlere sunuyorum.
  10.  
  11. Hayırlı Kullanımlar. Siber Savaşta sizde yerinizi alın ve Türkiye ve İslam için Savaşın Yiğitler.
  12. ______________________________________________________________
  13.  
  14. Vulnerabilidades
  15. comment:advisories and vulnerabilities*-----
  16. "1999-2004 FuseTalk Inc" -site:fusetalk.com
  17. "2003 DUware All Rights Reserved"
  18. "Active Webcam Page" inurl:8080
  19. "BlackBoard 1.5.1-f | © 2003-4 by Yves Goergen"
  20. "BosDates Calendar System " "powered by BosDates v3.2 by BosDev"
  21. "Copyright © 2002 Agustin Dondo Scripts"
  22. "delete entries" inurl:admin/delete.asp
  23. "driven by: ASP Message Board"
  24. "Enter ip" inurl:"php-ping.php"
  25. "IceWarp Web Mail 5.3.0" "Powered by IceWarp"
  26. "Ideal BB Version: 0.1" -idealbb.com
  27. "inurl:/site/articles.asp?idcategory="
  28. "Obtenez votre forum Aztek" -site:forum-aztek.com
  29. "Online Store - Powered by ProductCart"
  30. "Powered *: newtelligence" ("dasBlog 1.6"| "dasBlog 1.5"| "dasBlog 1.4"|"dasBlog 1.3")
  31. "Powered by A-CART"
  32. "Powered by AJ-Fork v.167"
  33. "powered by antiboard"
  34. "Powered by Coppermine Photo Gallery"
  35. "Powered by CubeCart"
  36. "Powered by DCP-Portal v5.5"
  37. "Powered by DMXReady Site Chassis Manager" -site:dmxready.com
  38. "Powered by FUDforum"
  39. "Powered by Gallery v1.4.4"
  40. "Powered by IceWarp Software" inurl:mail
  41. "Powered by Ikonboard 3.1.1"
  42. "Powered by Megabook *" inurl:guestbook.cgi
  43. "Powered by MercuryBoard [v1"
  44. "powered by minibb" -site:www.minibb.net -intext:1.7f
  45. "Powered by My Blog" intext:"FuzzyMonkey.org"
  46. "Powered by ocPortal" -demo -ocportal.com
  47. "powered by phpWebSite" 0.9-3-2...4
  48. "Powered by PowerPortal v1.3"
  49. "powered by vbulletin 3.0"
  50. "Powered by WordPress" -html filetype:php -demo -wordpress.org -bugtraq
  51. "Powered by WowBB" -site:wowbb.com
  52. "Powered by YaPig V0.92b"
  53. "Powered by yappa-ng"
  54. "running: Nucleus v3.1" -.nucleuscms.org -demo
  55. "SquirrelMail version 1.4.4" inurl:src ext:php
  56. "This page has been automatically generated by Plesk Server Administrator"
  57. +"Powered by Invision Power Board v2.0.0..2"
  58. +"Powered by phpBB 2.0.6..10" -phpbb.com -phpbb.pl
  59. inurl:"dispatch.php?atknodetype" | inurl:class.at -----Achievo webbased project management-----
  60. allintitle:aspjar.com guestbook
  61. inurl:"/becommunity/community/index.php?pageurl=" -----E-market remote code execution-----
  62. inurl:custva.asp -----EarlyImpact Productcart-----
  63. ext:php intext:"Powered by phpNewMan Version"
  64. ext:pl inurl:cgi intitle:"FormMail *" -"*Referrer" -"* Denied" -sourceforge -error -cvs -input
  65. filetype:cgi inurl:nbmember.cgi
  66. filetype:cgi inurl:pdesk.cgi
  67. filetype:cgi inurl:tseekdir.cgi
  68. Mr. KingSkrupellos Cyberizm Digital Security Team
  69. filetype:php inurl:index.php inurl:"module=subjects" inurl:"func=*" (listpages| viewpage | listcat)
  70. intext:("UBB.threads™ 6.2"|"UBB.threads™ 6.3") intext:"You * not logged *" -site:ubbcentral.com
  71. intitle:"EMUMAIL - Login" "Powered by EMU Webmail"
  72. intitle:"MRTG/RRD" 1.1* (inurl:mrtg.cgi | inurl:14all.cgi |traffic.cgi)
  73. intitle:"View Img" inurl:viewimg.php
  74. intitle:"WebJeff - FileManager" intext:"login" intext:Pass|PAsse
  75. intitle:"WordPress > * > Login form" inurl:"wp-login.php"
  76. intitle:guestbook "advanced guestbook 2.2 powered"
  77. intitle:welcome.to.horde
  78. inurl:"/cgi-bin/loadpage.cgi?user_id="
  79. inurl:"/site/articles.asp?idcategory="
  80. inurl:"comment.php?serendipity"
  81. inurl:"messageboard/Forum.asp?"
  82. inurl:"slxweb.dll"
  83. inurl:/SiteChassisManager/
  84. inurl:cal_make.pl
  85. inurl:citrix/metaframexp/default/login.asp? ClientDetection=On
  86. inurl:comersus_message.asp
  87. inurl:directorypro.cgi
  88. inurl:gotoURL.asp?url=
  89. inurl:technote inurl:main.cgi*filename=*
  90. inurl:ttt-webmaster.php
  91. inurl:wiki/MediaWiki
  92. "Powered by Invision Power Board(U) v1.3 Final" -----Invision Power Board SSI.PHP SQL Injection-----
  93. "Powered by mnoGoSearch - free web search engine software" -----nGoSearch vulnerability-----
  94. "FC Bigfeet" -inurl:mail -----Quicksite demopages for Typo3-----
  95. inurl:com_remository -----ReMOSitory module for Mambo-----
  96. uploadpics.php?did= -forumintext:Generated.by.phpix.1.0? inurl:$mode=album
  97. "Powered by: vBulletin * 3.0.1" inurl:newreply.php -----vBulletin version 3.0.1 newreply.php XSS-----
  98. filetype:asp inurl:"shopdisplayproducts.asp" -----VP-ASP Shopping Cart XSS-----
  99. inurl:/cgi-bin/index.cgi inurl:topics inurl:viewcat= +intext:"WebAPP" -site:web-app.org -----WebAPP directory traversal-----
  100. 1. inurl:index.php?id=aboutus
  101. 2. inurl:?item_id=6310
  102. 3. inurl:ZoomItemDetail.aspx?item_id=
  103. Site: inurl:virtual_show_detail.php?ID=
  104. ___________________________________________________________________________________________________
  105.  
  106. Arquivos com senha
  107.  
  108.  
  109. comment:Files containing passwords***-----
  110. "# -FrontPage-" ext:pwd inurl:(service | authors | administrators | users)
  111. "# -FrontPage-" inurl:service.pwd
  112. "AutoCreate=TRUE password=*"
  113. "http://*:*@www" domainname
  114. "index of/" "ws_ftp.ini" "parent directory"
  115. "liveice configuration file" ext:cfg -site:sourceforge.net
  116. "powered by ducalendar" -site:duware.com
  117. "Powered by Duclassified" -site:duware.com
  118. "Powered by Duclassified" -site:duware.com "DUware All Rights reserved"
  119. "powered by duclassmate" -site:duware.com
  120. "Powered by Dudirectory" -site:duware.com
  121. "powered by dudownload" -site:duware.com
  122. "Powered By Elite Forum Version *.*"
  123. "Powered by Link Department"
  124. "sets mode: +k"
  125. "Powered by DUpaypal" -site:duware.com
  126. allinurl: admin mdb
  127. auth_user_file.txt
  128. config.php
  129. eggdrop filetype:user user
  130. etc (index.of)
  131. ext:ini eudora.ini
  132. ext:ini Version=4.0.0.4 password
  133. filetype:bak inurl:"htaccess|passwd|shadow|htusers"
  134. filetype:cfg mrtg "target[*]" -sample -cvs -example
  135. filetype:cfm "cfapplication name" password
  136. filetype:conf oekakibbs
  137. filetype:conf sc_serv.conf
  138. filetype:conf slapd.conf
  139. filetype:config config intext:appSettings "User ID"
  140. filetype:dat "password.dat"
  141. filetype:dat wand.dat
  142. filetype:inc dbconn
  143. Mr. KingSkrupellos Cyberizm Digital Security Team
  144. filetype:inc intext:mysql_connect
  145. filetype:inc mysql_connect OR mysql_pconnect
  146. filetype:ini inurl:"serv-u.ini"
  147. filetype:ini inurl:flashFXP.ini
  148. filetype:ini ServUDaemon
  149. filetype:ini wcx_ftp
  150. filetype:ini ws_ftp pwd
  151. filetype:ldb admin
  152. filetype:log "See `ipsec --copyright"
  153. filetype:log inurl:"password.log"
  154. filetype:mdb inurl:users.mdb
  155. filetype:mdb wwforum
  156. filetype:netrc password
  157. filetype:pass pass intext:userid
  158. filetype:pem intext:private
  159. filetype:properties inurl:db intext:password
  160. filetype:pwd service
  161. filetype:pwl pwl
  162. filetype:reg reg +intext:"defaultusername" +intext:"defaultpassword"
  163. filetype:reg reg HKEY_CURRENT_USER SSHHOSTKEYS
  164. filetype:sql ("values * MD5" | "values * password" | "values * encrypt")
  165. filetype:sql ("passwd values" | "password values" | "pass values" )
  166. filetype:sql +"IDENTIFIED BY" -cvs
  167. filetype:sql password
  168. filetype:url +inurl:"ftp://" +inurl:";@"
  169. filetype:xls username password email
  170. htpasswd
  171. htpasswd / htgroup
  172. htpasswd / htpasswd.bak
  173. intext:"enable secret 5 $"
  174. intext:"powered by Web Wiz Journal"
  175. intitle:"index of" intext:connect.inc
  176. intitle:"index of" intext:globals.inc
  177. intitle:"Index of" passwords modified
  178. intitle:dupics inurl:(add.asp | default.asp | view.asp | voting.asp) -site:duware.com
  179. intitle:index.of administrators.pwd
  180. intitle:Index.of etc shadow
  181. intitle:index.of intext:"secring.skr"|"secring.pgp"|"secring.bak"
  182. inurl:"GRC.DAT" intext:"password"
  183. inurl:"slapd.conf" intext:"credentials" -manpage -"Manual Page" -man: -sample
  184. inurl:"slapd.conf" intext:"rootpw" -manpage -"Manual Page" -man: -sample
  185. inurl:"wvdial.conf" intext:"password"
  186. inurl:/db/main.mdb
  187. inurl:/wwwboard
  188. inurl:ccbill filetype:log
  189. inurl:chap-secrets -cvs
  190. inurl:config.php dbuname dbpass
  191. inurl:filezilla.xml -cvs
  192. inurl:lilo.conf filetype:conf password -tatercounter2000 -bootpwd -man
  193. inurl:nuke filetype:sql
  194. inurl:ospfd.conf intext:password -sample -test -tutorial -download
  195. inurl:pap-secrets -cvs
  196. inurl:perform filetype:ini
  197. inurl:secring ext:skr | ext:pgp | ext:bak
  198. inurl:vtund.conf intext:pass -cvs
  199. inurl:zebra.conf intext:password -sample -test -tutorial -download
  200. LeapFTP intitle:"index.of./" sites.ini modified
  201. intitle:index.of master.passwd -----master.passwd-----
  202. intitle:"Index of" .mysql_history -----mysql history files-----
  203. "Your password is * Remember this for later use" -----NickServ registration passwords-----
  204. index.of passlist -----passlist-----
  205. Mr. KingSkrupellos Cyberizm Digital Security Team
  206. inurl:passlist.txt -----passlist.txt-----
  207. intitle:index.of passwd passwd.bak -----passwd-----
  208. intitle:"Index of..etc" passwd -----passwd / etc-----
  209. intitle:index.of people.lst -----people.lst-----
  210. filetype:conf inurl:psybnc.conf "USER.PASS=" -----psyBNC config files-----
  211. intitle:"Index of" pwd.db -----pwd.db-----
  212. signin filetype:url
  213. intitle:"Index of" spwd.db passwd -pam.conf -----spwd.db / passwd-----
  214. intitle:index.of trillian.ini -----trillian.ini-----
  215.  
  216. ___________________________________________________________________________________________________
  217.  
  218.  
  219. Diretórios sensíveis
  220.  
  221. comment:Sensitive Directories***]
  222. "Index Of /network" "last modified"
  223. "index of cgi-bin"
  224. "index of" / picasa.ini
  225. "index of" inurl:recycler
  226. "Index of" rar r01 nfo Modified 2004
  227. "intitle:Index.Of /" stats merchant cgi-* etc
  228. "Powered by Invision Power File Manager" (inurl:login.php) | (intitle:"Browsing directory /" )
  229. "Web File Browser" "Use regular expression"
  230. "Welcome to phpMyAdmin" " Create new database"
  231. allinurl:"/*/_vti_pvt/" | allinurl:"/*/_vti_cnf/"
  232. filetype:cfg ks intext:rootpw -sample -test -howto
  233. filetype:torrent torrent
  234. Index of phpMyAdmin
  235. index.of.dcim
  236. index.of.password
  237. index.of.password
  238. intext:"d.aspx?id" || inurl:"d.aspx?id"
  239. intext:"Powered By: TotalIndex" intitle:"TotalIndex"
  240. intitle:"album permissions" "Users who can modify photos" "EVERYBODY"
  241. intitle:"Directory Listing For" intext:Tomcat -intitle:Tomcat
  242. intitle:"HFS /" +"HttpFileServer"
  243. intitle:"Index of *" inurl:"my shared folder" size modified
  244. intitle:"Index of /CFIDE/" administrator
  245. intitle:"Index of c:\Windows"
  246. intitle:"index of" "parent directory" "desktop.ini" site:dyndns.org
  247. intitle:"index of" -inurl:htm -inurl:html mp3
  248. intitle:"Index of" cfide
  249. intitle:"index of" intext:"content.ie5"
  250. intitle:"index of" inurl:ftp (pub | incoming)
  251. intitle:"index.of.personal"
  252. intitle:"webadmin - /*" filetype:php directory filename permission
  253. intitle:index.of (inurl:fileadmin | intitle:fileadmin)
  254. intitle:index.of /AlbumArt_
  255. intitle:index.of abyss.conf
  256. Mr. KingSkrupellos Cyberizm Digital Security Team
  257. intitle:intranet inurl:intranet +intext:"human resources"
  258. intitle:upload inurl:upload intext:upload -forum -shop -support -w3c
  259. inurl:/pls/sample/admin_/help/
  260. inurl:/tmp
  261. inurl:backup intitle:index.of inurl:admin
  262. inurl:explorer.cfm inurl:(dirpath|This_Directory)
  263. inurl:j2ee/examples/jsp
  264. inurl:ojspdemos
  265. "Index of /backup" -----Look in my backup directories! Please?-----
  266. index.of.private -----private-----
  267. index.of.protected -----protected-----
  268. index.of.secret -----secret-----
  269. index.of.secure -----secure-----
  270. index.of.winnt -----winnt-----
  271.  
  272. -----------------------------------------------------------------------------------
  273. ___________________________________________________________________________________________________
  274.  
  275.  
  276. ERROS
  277.  
  278. comment:Error messages***-----
  279. "A syntax error has occurred" filetype:ihtml
  280. "access denied for user" "using password"
  281. "An illegal character has been found in the statement" -"previous message"
  282. "ASP.NET_SessionId" "data source="
  283. "Can't connect to local" intitle:warning
  284. "Chatologica MetaSearch" "stack tracking"
  285. "detected an internal error [IBM][CLI Driver][DB2/6000]"
  286. "error found handling the request" cocoon filetype:xml
  287. "Fatal error: Call to undefined function" -reply -the -next
  288. "Incorrect syntax near"
  289. "Incorrect syntax near"
  290. "Internal Server Error" "server at"
  291. "Invision Power Board Database Error"
  292. "ORA-00933: SQL command not properly ended"
  293. "ORA-12541: TNS:no listener" intitle:"error occurred"
  294. "PostgreSQL query failed: ERROR: parser: parse error"
  295. "Supplied argument is not a valid MySQL result resource"
  296. "Syntax error in query expression " -the
  297. "The script whose uid is " "is not allowed to access"
  298. "Unclosed quotation mark before the character string"
  299. "Warning: Cannot modify header information - headers already sent"
  300. "Warning: mysql_query()" "invalid query"
  301. "Warning: pg_connect(): Unable to connect to PostgreSQL server: FATAL"
  302. An unexpected token "END-OF-STATEMENT" was found
  303. "Error Diagnostic Information" intitle:"Error Occurred While" -----Coldfusion Error Pages-----
  304. filetype:asp "Custom Error Message" Category Source
  305. filetype:log "PHP Parse error" | "PHP Warning" | "PHP Error"
  306. filetype:php inurl:"logging.php" "Discuz" error
  307. ht://Dig htsearch error
  308. intitle:"the page cannot be found" inetmgr -----IIS 4.0 error messages-----
  309. intitle:"the page cannot be found" "internet information services" -----IIS web server error messages-----
  310. intitle:"500 Internal Server Error" "server at" -----Internal Server Error-----
  311. intext:"Error Message : Error loading required libraries."
  312. intext:"Warning: Failed opening" "on line" "include_path"
  313. intitle:"Error Occurred While Processing Request" +WHERE (SELECT|INSERT) filetype:cfm
  314. intitle:"Error Occurred" "The error occurred in" filetype:cfm
  315. intitle:"Error using Hypernews" "Server Software"
  316. intitle:"Execution of this script not permitted"
  317. intitle:"Under construction" "does not currently have"
  318. intitle:Configuration.File inurl:softcart.exe
  319. Mr. KingSkrupellos Cyberizm Digital Security Team
  320. "supplied argument is not a valid MySQL result resource" -----MYSQL error message: supplied argument....-----
  321. "mySQL error with query" -----mysql error with query-----
  322. "ORA-00921: unexpected end of SQL command" -----ORA-00921: unexpected end of SQL command-----
  323. "ORA-00936: missing expression" -----ORA-00936: missing expression-----
  324. intext:"Warning: Failed opening" "on line" "include_path" -----PHP application warnings failing "include_path"-----
  325. inurl:sitebuildercontent -----sitebuildercontent-----
  326. inurl:sitebuilderfiles -----sitebuilderfiles-----
  327. inurl:sitebuilderpictures -----sitebuilderpictures-----
  328. databasetype. Code : 80004005. Error Description -----Snitz! forums db path error-----
  329. "You have an error in your SQL syntax near" -----SQL syntax error-----
  330. "Supplied argument is not a valid PostgreSQL result" -----Supplied argument is not a valid PostgreSQL result-----
  331. warning "error on line" php sablotron
  332. intitle:"the page cannot be found" "2004 microsoft corporation" -----Windows 2000 web server error messages-----
  333.  
  334. -----------------------------------------------------------------------------------
  335.  
  336. ___________________________________________________________________________________________________
  337.  
  338.  
  339. Arquivos de user's
  340.  
  341. comment:Files containing usernames***-----
  342. "index of" / lck
  343. +intext:"webalizer" +intext:"Total Usernames" +intext:"Usage Statistics for"
  344. intitle:index.of .bash_history -----bash_history files-----
  345. filetype:conf inurl:proftpd.conf -sample
  346. filetype:log username putty
  347. filetype:reg reg +intext:"internet account manager"
  348. filetype:reg reg HKEY_CURRENT_USER username
  349. index.of perform.ini
  350. inurl:admin filetype:asp inurl:userlist
  351. inurl:admin inurl:userlist
  352. inurl:php inurl:hlstats intext:"Server Username"
  353. inurl:root.asp?acs=anon -----OWA Public folders & Address book-----
  354. intitle:index.of .sh_history -----sh_history files-----
  355. comment:Footholds***-----
  356. "adding new user" inurl:addnewuser -"there are no domains"
  357. (inurl:81/cgi-bin/.cobalt/) | (intext:"Welcome to the Cobalt RaQ")
  358. +htpasswd +WS_FTP.LOG filetype:log
  359. filetype:php HAXPLORER "Server Files Browser"
  360. intitle:"Web Data Administrator - Login"
  361. intitle:admin intitle:login
  362. inurl:"phpOracleAdmin/php" -download -cvs
  363. inurl:ConnectComputer/precheck.htm | inurl:Remote/logon.aspx
  364. intitle:"PHP Shell *" "Enable stderr" filetype:php -----PHP Shell (unprotected)-----
  365. PHPKonsole PHPShell filetype:php -echo
  366. "Powered by PHPFM" filetype:php -username -----Public PHP FileManagers-----
  367. comment:Pages containing login portals***-----
  368. intitle:"remote assessment" OpenAanval Console
  369. Mr. KingSkrupellos Cyberizm Digital Security Team
  370. intitle:opengroupware.org "resistance is obsolete" "Report Bugs" "Username" "password"
  371. "IMail Server Web Messaging" intitle:login
  372. "Login - Sun Cobalt RaQ"
  373. "Login to Usermin" inurl:20000
  374. "Microsoft CRM : Unsupported Browser Version"
  375. "OPENSRS Domain Management" inurl:manage.cgi
  376. "pcANYWHERE EXPRESS Java Client"
  377. "please log in"
  378. "powered by CuteNews" "2003..2005 CutePHP"
  379. "SysCP - login"
  380. "ttawlogin.cgi/?action="
  381. "VHCS Pro ver" -demo
  382. "VNC Desktop" inurl:5800
  383. "Web Control Panel" "Enter your password here"
  384. "WebExplorer Server - Login" "Welcome to WebExplorer Server"
  385. "WebSTAR Mail - Please Log In"
  386. (inurl:"ars/cgi-bin/arweb?O=0" | inurl:arweb.jsp) -site:remedy.com -site:mil
  387. "4images Administration Control Panel"
  388. allinurl:"exchange/logon.asp"
  389. ASP.login_aspx "ASP.NET_SessionId"
  390. filetype:cgi inurl:"irc.cgi" | intitle:"CGI:IRC Login" -----CGI:IRC Login-----
  391. Admin intitle:"eZ publish administration" -----ez Publish administration-----
  392. filetype:php inurl:"webeditor.php"
  393. filetype:pl "Download: SuSE Linux Openexchange Server CA"
  394. filetype:r2w r2w
  395. intext:""BiTBOARD v2.0" BiTSHiFTERS Bulletin Board"
  396. intext:"Mail admins login here to administrate your domain."
  397. intext:"Storage Management Server for" intitle:"Server Administration"
  398. intitle:"Athens Authentication Point"
  399. intitle:"ColdFusion Administrator Login"
  400. intitle:"Dell Remote Access Controller"
  401. intitle:"ePowerSwitch Login"
  402. intitle:"Icecast Administration Admin Page"
  403. intitle:"ISPMan : Unauthorized Access prohibited"
  404. intitle:"ITS System Information" "Please log on to the SAP System"
  405. intitle:"Kurant Corporation StoreSense" filetype:bok Posts: 23 filetype:bok intitle:"Kurant Corporation StoreSense"
  406. intitle:"Login - powered by Easy File Sharing Web Server"
  407. intitle:"MailMan Login"
  408. intitle:"microsoft certificate services" inurl:certsrv
  409. intitle:"MikroTik RouterOS Managing Webpage"
  410. intitle:"MX Control Console" "If you can't remember"
  411. intitle:"Novell Web Services" intext:"Select a service and a language."
  412. intitle:"oMail-admin Administration - Login" -inurl:omnis.ch
  413. intitle:"Philex 0.2*" -script -site:freelists.org
  414. intitle:"PHP Advanced Transfer" inurl:"login.php"
  415. intitle:"php icalendar administration" -site:sourceforge.net
  416. intitle:"php icalendar administration" -site:sourceforge.net
  417. intitle:"please login" "your password is *"
  418. intitle:"Remote Desktop Web Connection" inurl:tsweb
  419. intitle:"teamspeak server-administration
  420. intitle:"Tomcat Server Administration"
  421. intitle:"TUTOS Login"
  422. intitle:"vhost" intext:"vHost . 2000-2004"
  423. intitle:"Virtual Server Administration System"
  424. intitle:"VitalQIP IP Management System"
  425. intitle:"VNC viewer for Java"
  426. intitle:"WebLogic Server" intitle:"Console Login" inurl:console
  427. intitle:"Welcome Site/User Administrator" "Please select the language" -demos
  428. intitle:"welcome to netware *" -site:novell.com
  429. intitle:"ZyXEL Prestige Router" "Enter password"
  430. Mr. KingSkrupellos Cyberizm Digital Security Team
  431. intitle:Group-Office "Enter your username and password to login"
  432. intitle:Login * Webmailer
  433. intitle:Login intext:"RT is © Copyright"
  434. intitle:Node.List Win32.Version.3.11
  435. intitle:Novell intitle:WebAccess "Copyright *-* Novell, Inc"
  436. intitle:plesk inurl:login.php3
  437. inurl:"1220/parse_xml.cgi?"
  438. inurl:"631/admin" (inurl:"op=*") | (intitle:CUPS)
  439. inurl:":10000" intext:webmin
  440. inurl:"Activex/default.htm" "Demo"
  441. inurl:"calendar.asp?action=login"
  442. inurl:"gs/adminlogin.aspx"
  443. inurl:"typo3/index.php?u=" -demo
  444. inurl:"usysinfo?login=true"
  445. inurl:"utilities/TreeView.asp"
  446. inurl:"webadmin" filetype:nsf
  447. inurl:/admin/login.asp
  448. inurl:/cgi-bin/sqwebmail?noframes=1
  449. inurl:/Citrix/Nfuse17/
  450. inurl:/dana-na/auth/welcome.html
  451. inurl:/eprise/
  452. inurl:/webedit.* intext:WebEdit Professional -html
  453. inurl:1810 "Oracle Enterprise Manager"
  454. inurl:administrator "welcome to mambo"
  455. inurl:cgi-bin/ultimatebb.cgi?ubb=login
  456. inurl:confixx inurl:login|anmeldung
  457. inurl:coranto.cgi intitle:Login (Authorized Users Only)
  458. inurl:default.asp intitle:"WebCommander"
  459. inurl:irc filetype:cgi cgi:irc
  460. inurl:login filetype:swf swf
  461. inurl:login.asp
  462. inurl:login.cfm
  463. inurl:login.php "SquirrelMail version"
  464. inurl:metaframexp/default/login.asp | intitle:"Metaframe XP Login"
  465. inurl:mewebmail
  466. inurl:names.nsf?opendatabase
  467. inurl:orasso.wwsso_app_admin.ls_login
  468. inurl:postfixadmin intitle:"postfix admin" ext:php
  469. inurl:search/admin.php
  470. inurl:WCP_USER
  471. Login ("Powered by Jetbox One CMS ™" | "Powered by Jetstream © *")
  472. Novell NetWare intext:"netware management portal version"
  473. inurl:"exchange/logon.asp" OR intitle:"Microsoft Outlook Web Access - Logon" -----Outlook Web Access (a better way)-----
  474. -Login inurl:photopost/uploadphoto.php -----PhotoPost PHP Upload-----
  475. inurl:PHPhotoalbum/statistics intitle:"PHPhotoalbum - Statistics" -----PHPhotoalbum Statistics-----
  476. intitle:"PHPhotoalbum - Upload" | inurl:"PHPhotoalbum/upload" -----PHPhotoalbum Upload-----
  477. filetype:php login (intitle:phpWebMail|WebMail) -----phpWebMail-----
  478. +"Powered by INDEXU" inurl:(browse|top_rated|power) -----Powered by INDEXU-----
  479. filetype:cfg login "LoginServer=" -----Ultima Online loginservers-----
  480. uploadpics.php?did= -forum -----W-Nailer Upload Area-----
  481.  
  482. ___________________________________________________________________________________________________
  483.  
  484.  
  485. Informações Senciveis de ADM online
  486.  
  487. comment:Sensitive Online Shopping Info***-----
  488. "More Info about MetaCart Free"
  489. inurl:"/database/comersus.mdb" -----Comersus.mdb database-----
  490. inurl:midicart.mdb
  491. inurl:shopdbtest.asp
  492. POWERED BY HIT JAMMER 1.0!
  493. site:ups.com intitle:"Ups Package tracking" intext:"1Z ### ### ## #### ### #"
  494. inurl:"shopadmin.asp" "Shop Administrators only" -----VP-ASP Shop Administrators only-----
  495. comment:Various online devices***-----
  496. "Copyright (c) Tektronix, Inc." "printer status"
  497. "intitle:Cisco Systems, Inc. VPN 3000 Concentrator"
  498. Mr. KingSkrupellos Cyberizm Digital Security Team
  499. "please visit" intitle:"i-Catcher Console" Copyright "iCode Systems"
  500. "powered by webcamXP" "Pro|Broadcast"
  501. "Starting SiteZAP 6.0"
  502. ("Fiery WebTools" inurl:index2.html) | "WebTools enable * * observe, *, * * * flow * print jobs"
  503. inurl:sts_index.cgi -----Aficio 1022-----
  504. allintitle:Brains, Corp. camera
  505. allinurl:index.htm?cus?audio
  506. inurl:indexFrame.shtml Axis -----Axis Network Cameras-----
  507. axis storpoint "file view" inurl:/volumes/
  508. camera linksys inurl:main.cgi
  509. intitle:"remote ui:top page" -----Canon ImageReady machines-----
  510. intitle:liveapplet inurl:LvAppl -----Canon Webview netcams-----
  511. filetype:cgi transcoder.cgi
  512. intext:"MaiLinX Alert (Notify)" -site:networkprinters.com
  513. intext:"Please enter correct password for Administrator Access. Thank you" "Copyright © 2003 SMC Networks, Inc. All rights reserved."
  514. intext:"Ready with 10/100T Ethernet"
  515. intext:"UAA (MSB)" Lexmark -ext:pdf
  516. intext:"Videoconference Management System" ext:htm
  517. intitle:"AudioReQuest.web.server"
  518. intitle:"axis storpoint CD" intitle:"ip address"
  519. intitle:"BorderManager Information alert"
  520. intitle:"Browser Launch Page"
  521. intitle:"Cayman-DSL.home"
  522. intitle:"DEFAULT_CONFIG - HP"
  523. intitle:"DEFAULT_CONFIG - HP"
  524. intitle:"dreambox web"
  525. intitle:"DVR Web client"
  526. intitle:"EpsonNet WebAssist Rev"
  527. intitle:"EverFocus.EDSR.applet"
  528. intitle:"EvoCam" inurl:"webcam.html"
  529. intitle:"Home" "Xerox Corporation" "Refresh Status"
  530. intitle:"ipcop - main"
  531. intitle:"iVISTA.Main.Page"
  532. intitle:"lantronix web-manager"
  533. intitle:"Live NetSnap Cam-Server feed"
  534. intitle:"Live View / - AXIS"
  535. intitle:"my webcamXP server!" inurl:":8080"
  536. intitle:"Network Print Server" filetype:shtm ( inurl:u_printjobs | inurl:u_server | inurl:a_server | inurl:u_generalhelp | u_printjobs )
  537. intitle:"Network Print Server" intext:"http://www.axis.com" filetype:shtm
  538. intitle:"Setup Home" "You will need * log in before * * change * settings"
  539. intitle:"Sipura.SPA.Configuration" -.pdf
  540. intitle:"Smoothwall Express" inurl:cgi-bin "up * days"
  541. intitle:"Spam Firewall" inurl:"8000/cgi-bin/index.cgi"
  542. intitle:"SpeedStream Router Management Interface"
  543. intitle:"supervisioncam protocol"
  544. intitle:"switch home page" "cisco systems" "Telnet - to"
  545. intitle:"switch login" "IBM Fast Ethernet Desktop"
  546. intitle:"The AXIS 200 Home Page"
  547. intitle:"toshiba network camera - User Login"
  548. intitle:"V-Gear BEE"
  549. intitle:"View and Configure PhaserLink"
  550. intitle:"Brother" intext:"View Configuration" intext:"Brother Industries, Ltd."
  551. intitle:"Connection Status" intext:"Current login"
  552. intitle:Linksys site:ourlinksys.com
  553. intitle:RICOH intitle:"Network Administration"
  554. Mr. KingSkrupellos Cyberizm Digital Security Team
  555. intitle:webeye inurl:login.ml
  556. inurl:"8003/Display?what="
  557. inurl:":631/printers" -php -demo
  558. inurl:"ipp/pdisplay.htm"
  559. inurl:"level/15/exec/-/show"
  560. inurl:"next_file=main_fs.htm" inurl:img inurl:image.cgi
  561. inurl:"printer/main.html" intext:"settings"
  562. inurl:axis-cgi
  563. inurl:camctrl.cgi
  564. inurl:hp/device/this.LCDispatcher
  565. inurl:na_admin
  566. inurl:netw_tcp.shtml
  567. inurl:TiVoConnect?Command=QueryServer
  568. inurl:webArch/mainFrame.cgi
  569. intitle:"network administration" inurl:"nic" -----Konica Network Printer Administration-----
  570. (intext:"MOBOTIX M1" | intext:"MOBOTIX M10") intext:"Open Menu" Shift-Reload -----Mobotix netcams-----
  571. intitle:"Live View / - AXIS" | inurl:view/view.sht -----More Axis netcams !-----
  572. inurl:"ViewerFrame?Mode=" -----Panasonic Network Cameras-----
  573. intitle:"WJ-NT104 Main Page" -----Panasonic WJ-NT104 netcams-----
  574. intext:centreware inurl:status -----Phasers 4500/6250/8200/8400-----
  575. intitle:flexwatch intext:"Home page ver" -----Seyeon FlexWATCH cameras-----
  576. site:.viewnetcam.com -www.viewnetcam.com
  577. intitle:snc-z20 inurl:home/ -----Sony SNC-RZ20 network cameras-----
  578. intitle:snc-rz30 inurl:home/ -----Sony SNC-RZ30 Network Cameras-----
  579. WebControl intitle:"AMX NetLinx"
  580. "Phaser 6250" "Printer Neighborhood" "XEROX CORPORATION" -----Xerox Phaser 6250-----
  581. "Phaser 8200" "© Xerox" "refresh" " Email Alerts" -----Xerox Phaser 8200-----
  582. "Phaser® 740 Color Printer" "printer named: " -----Xerox Phaser® 740 Color Printer-----
  583. "Phaser® 840 Color Printer" "Current Status" "printer named:" -----Xerox Phaser® 840 Color Printer-----
  584.  
  585. ___________________________________________________________________________________________________
  586.  
  587. Arquivos com informaçoes LOG's
  588.  
  589. comment:Files containing juicy info***]
  590. intitle:"DocuShare" inurl:"docushare/dsweb/" -faq -gov -edu
  591. "#mysql dump" filetype:sql
  592. "allow_call_time_pass_reference" "PATH_INFO"
  593. "Certificate Practice Statement" inurl:(PDF | DOC)
  594. "Generated by phpSystem"
  595. "generated by wwwstat"
  596. "Host Vulnerability Summary Report"
  597. "HTTP_FROM=googlebot" googlebot.com "Server_Software="
  598. "Index of" / "chat/logs"
  599. "Installed Objects Scanner" inurl:default.asp
  600. "Mecury Version" "Infastructure Group"
  601. "Microsoft (R) Windows * (TM) Version * DrWtsn32 Copyright (C)" ext:log
  602. "Most Submitted Forms and Scripts" "this section"
  603. "Network Vulnerability Assessment Report"
  604. "not for distribution" confidential
  605. "phone * * *" "address *" "e-mail" intitle:"curriculum vitae"
  606. "phpMyAdmin" "running on" inurl:"main.php"
  607. "produced by getstats"
  608. "Request Details" "Control Tree" "Server Variables"
  609. "robots.txt" "Disallow:" filetype:txt
  610. "Running in Child mode"
  611. "sets mode: +p"
  612. "sets mode: +s"
  613. "Thank you for your order" +receipt
  614. "This is a Shareaza Node"
  615. "This report was generated by WebLog"
  616. ( filetype:mail | filetype:eml | filetype:mbox | filetype:mbx ) intext:password|subject
  617. (inurl:"robot.txt" | inurl:"robots.txt" ) intext:disallow filetype:txt
  618. +":8080" +":3128" +":80" filetype:txt
  619. +"HSTSNR" -"netop.com"
  620. -site:php.net -"The PHP Group" inurl:source inurl:url ext:pHp
  621. 94FBR "ADOBE PHOTOSHOP"
  622. buddylist.blt -----AIM buddy lists-----
  623. allinurl:/examples/jsp/snp/snoop.jsp
  624. allinurl:servlet/SnoopServlet
  625. intitle:index.of cgiirc.config -----cgiirc.conf-----
  626. inurl:cgiirc.config -----cgiirc.conf-----
  627. data filetype:mdb -site:gov -site:mil
  628. e-mail address filetype:csv csv -----exported email addresses-----
  629. Mr. KingSkrupellos Cyberizm Digital Security Team
  630. ext:asp inurl:pathto.asp
  631. ext:cgi inurl:editcgi.cgi inurl:file=
  632. ext:conf inurl:rsyncd.conf -cvs -man
  633. ext:conf NoCatAuth -cvs
  634. ext:dat bpk.dat
  635. ext:gho gho
  636. ext:ini intext:env.ini
  637. ext:ldif ldif
  638. ext:log "Software: Microsoft Internet Information Services *.*"
  639. ext:mdb inurl:*.mdb inurl:fpdb shop.mdb
  640. ext:nsf nsf -gov -mil
  641. ext:pqi pqi -database
  642. ext:reg "username=*" putty
  643. ext:txt "Final encryption key"
  644. ext:txt inurl:dxdiag
  645. ext:vmdk vmdk
  646. ext:vmx vmx
  647. filetype:asp DBQ=" * Server.MapPath("*.mdb")
  648. filetype:bkf bkf
  649. filetype:blt "buddylist"
  650. filetype:blt blt +intext:screenname
  651. filetype:cfg auto_inst.cfg
  652. filetype:cnf inurl:_vti_pvt access.cnf
  653. filetype:conf inurl:firewall -intitle:cvs
  654. filetype:config web.config -CVS
  655. filetype:ctt Contact
  656. filetype:ctt ctt messenger
  657. filetype:eml eml +intext:"Subject" +intext:"From" +intext:"To"
  658. filetype:fp3 fp3
  659. filetype:fp5 fp5 -site:gov -site:mil -"cvs log"
  660. filetype:fp7 fp7
  661. filetype:inf inurl:capolicy.inf
  662. filetype:lic lic intext:key
  663. filetype:log access.log -CVS
  664. filetype:mbx mbx intext:Subject
  665. filetype:myd myd -CVS
  666. filetype:ns1 ns1
  667. filetype:ora ora
  668. filetype:pdb pdb backup (Pilot | Pluckerdb)
  669. filetype:php inurl:index inurl:phpicalendar -site:sourceforge.net
  670. filetype:pot inurl:john.pot
  671. filetype:pst inurl:"outlook.pst"
  672. filetype:pst pst -from -to -date
  673. filetype:qbb qbb
  674. filetype:rdp rdp
  675. filetype:reg "Terminal Server Client"
  676. filetype:vcs vcs
  677. filetype:wab wab
  678. filetype:xls -site:gov inurl:contact
  679. filetype:xls inurl:"email.xls"
  680. intitle:"Index of" finance.xls -----Financial spreadsheets: finance.xls-----
  681. intitle:index.of finances.xls -----Financial spreadsheets: finances.xls-----
  682. intitle:"Ganglia" "Cluster Report for" -----Ganglia Cluster Reports-----
  683. intitle:index.of haccess.ctl -----haccess.ctl (one way)-----
  684. filetype:ctl Basic -----haccess.ctl (VERY reliable)-----
  685. intitle:"Index of" dbconvert.exe chats -----ICQ chat logs, please...-----
  686. filetype:log cron.log
  687. intext:"Session Start * * * *:*:* *" filetype:log
  688. intext:"Tobias Oetiker" "traffic analysis"
  689. intext:(password | passcode) intext:(username | userid | user) filetype:csv
  690. intext:gmail invite intext:http://gmail.google.com/gmail/a
  691. intext:SQLiteManager inurl:main.php
  692. intitle:"Apache::Status" (inurl:server-status | inurl:status.html | inurl:apache.html)
  693. intitle:"AppServ Open Project" -site:www.appservnetwork.com
  694. intitle:"ASP Stats Generator *.*" "ASP Stats Generator" "2003-2004 weppos"
  695. intitle:"Big Sister" +"OK Attention Trouble"
  696. intitle:"edna:streaming mp3 server" -forums
  697. Mr. KingSkrupellos Cyberizm Digital Security Team
  698. intitle:"FTP root at"
  699. intitle:"index of" +myd size
  700. intitle:"Index Of" -inurl:maillog maillog size
  701. intitle:"Index Of" cookies.txt size
  702. intitle:"index of" mysql.conf OR mysql_config
  703. intitle:"Index of" upload size parent directory
  704. intitle:"index.of *" admin news.asp configview.asp
  705. intitle:"index.of" .diz .nfo last modified
  706. intitle:"Multimon UPS status page"
  707. intitle:"PHP Advanced Transfer" (inurl:index.php | inurl:showrecent.php )
  708. intitle:"PhpMyExplorer" inurl:"index.php" -cvs
  709. intitle:"statistics of" "advanced web statistics"
  710. intitle:"System Statistics" +"System and Network Information Center"
  711. intitle:"Usage Statistics for" "Generated by Webalizer"
  712. intitle:"wbem" compaq login
  713. intitle:"Web Server Statistics for ****"
  714. intitle:"web server status" SSH Telnet
  715. intitle:"welcome.to.squeezebox"
  716. intitle:admin intitle:login
  717. intitle:index.of "Apache" "server at"
  718. intitle:index.of cleanup.log
  719. intitle:index.of dead.letter
  720. intitle:index.of inbox
  721. intitle:index.of inbox dbx
  722. intitle:index.of ws_ftp.ini
  723. intitle:intranet inurl:intranet +intext:"phone"
  724. inurl:"/axs/ax-admin.pl" -script
  725. inurl:"/cricket/grapher.cgi"
  726. inurl:"bookmark.htm"
  727. inurl:"cacti" +inurl:"graph_view.php" +"Settings Tree View" -cvs -RPM
  728. inurl:"newsletter/admin/"
  729. inurl:"newsletter/admin/" intitle:"newsletter admin"
  730. inurl:"putty.reg"
  731. inurl:"smb.conf" intext:"workgroup" filetype:conf conf
  732. inurl:*db filetype:mdb
  733. inurl:/_layouts/settings
  734. inurl:admin filetype:xls
  735. inurl:admin intitle:login
  736. inurl:backup filetype:mdb
  737. inurl:cgi-bin/printenv
  738. inurl:cgi-bin/testcgi.exe "Please distribute TestCGI"
  739. inurl:changepassword.asp
  740. inurl:ds.py
  741. inurl:email filetype:mdb
  742. inurl:fcgi-bin/echo
  743. inurl:forum filetype:mdb
  744. inurl:forward filetype:forward -cvs
  745. inurl:getmsg.html intitle:hotmail
  746. inurl:log.nsf -gov
  747. inurl:main.php phpMyAdmin
  748. inurl:main.php Welcome to phpMyAdmin
  749. inurl:netscape.hst
  750. inurl:netscape.hst
  751. inurl:netscape.ini
  752. inurl:odbc.ini ext:ini -cvs
  753. inurl:perl/printenv
  754. inurl:php.ini filetype:ini
  755. inurl:preferences.ini "[emule]"
  756. inurl:profiles filetype:mdb
  757. inurl:report "EVEREST Home Edition "
  758. inurl:server-info "Apache Server Information"
  759. inurl:server-status "apache"
  760. inurl:snitz_forums_2000.mdb
  761. inurl:ssl.conf filetype:conf
  762. inurl:tdbin
  763. inurl:vbstats.php "page generated"
  764. inurl:ipsec.conf -intitle:manpage -----ipsec.conf-----
  765. inurl:ipsec.secrets -history -bugs -----ipsec.secrets-----
  766. inurl:ipsec.secrets "holds shared secrets" -----ipsec.secrets-----
  767. inurl:"/names.nsf?OpenDatabase" -----Lotus Domino address books-----
  768. mail filetype:csv -site:gov intext:name
  769. filetype:mny mny -----Microsoft Money Data Files-----
  770. intitle:index.of mt-db-pass.cgi -----mt-db-pass.cgi files-----
  771. "# Dumping data for table (username|user|users|password)" -----MySQL tabledata dumps-----
  772. intitle:index.of mystuff.xml -----mystuff.xml - Trillian data files-----
  773. inurl:/public/?Cmd=contents -----OWA Public Folders (direct view)-----
  774. filetype:ctt "msn" -----Peoples MSN contact lists-----
  775. php-addressbook "This is the addressbook for *" -warning
  776. intitle:phpinfo "PHP Version" -----phpinfo()-----
  777. "# phpMyAdmin MySQL-Dump" filetype:txt -----phpMyAdmin dumps-----
  778. "# phpMyAdmin MySQL-Dump" "INSERT INTO" -"the" -----phpMyAdmin dumps-----
  779. BEGIN (CERTIFICATE|DSA|RSA) filetype:csr -----private key files (.csr)-----
  780. BEGIN (CERTIFICATE|DSA|RSA) filetype:key -----private key files (.key)-----
  781. filetype:QDF QDF -----Quicken data files-----
  782. intitle:index.of robots.txt -----robots.txt-----
  783. site:edu admin grades
  784. "# Dumping data for table" -----SQL data dumps-----
  785. "cacheserverreport for" "This analysis was produced by calamaris" -----Squid cache server reports-----
  786. filetype:conf inurl:unrealircd.conf -cvs -gentoo -----Unreal IRCd-----
  787. intitle:"Welcome to ntop!" -----Welcome to ntop!-----
  788.  
  789. ___________________________________________________________________________________________________
  790.  
  791.  
  792. INFORMAÇÕES DE SERVES
  793.  
  794. comment:Pages containing network or vulnerability data***-----
  795. filetype:log intext:"ConnectionManager2"
  796. "apricot - admin" 00h
  797. "Network Host Assessment Report" "Internet Scanner"
  798. "Output produced by SysWatch *"
  799. "Phorum Admin" "Database Connection" inurl:forum inurl:admin
  800. "Powered by phpOpenTracker" Statistics
  801. "powered | performed by Beyond Security's Automated Scanning" -kazaa -example
  802. "SnortSnarf alert page"
  803. "This file was generated by Nessus"
  804. "this proxy is working fine!" "enter *" "URL***" * visit
  805. "This report lists" "identified by Internet Scanner"
  806. "Traffic Analysis for" "RMON Port * on unit *"
  807. "Version Info" "Boot Version" "Internet Settings"
  808. ((inurl:ifgraph "Page generated at") OR ("This page was built using ifgraph"))
  809. ACID "by Roman Danyliw" filetype:php -----Analysis Console for Incident Databases 12-Jul-2004 866-----
  810. ext:cfg radius.cfg
  811. ext:cgi intext:"nrg-" " This web page was created on "
  812. filetype:pdf "Assessment Report" nessus
  813. filetype:php inurl:ipinfo.php "Distributed Intrusion Detection System"
  814. filetype:php inurl:nqt intext:"Network Query Tool"
  815. filetype:vsd vsd network -samples -examples
  816. intext:"Welcome to the Web V.Networks" intitle:"V.Networks [Top]" -filetype:htm
  817. intitle:"ADSL Configuration page"
  818. intitle:"Azureus : Java BitTorrent Client Tracker"
  819. intitle:"BNBT Tracker Info"
  820. intitle:"Microsoft Site Server Analysis"
  821. intitle:"PHPBTTracker Statistics" | intitle:"PHPBT Tracker Statistics"
  822. Mr. KingSkrupellos Cyberizm Digital Security Team
  823. intitle:"start.managing.the.device" remote pbx acc
  824. intitle:"sysinfo * " intext:"Generated by Sysinfo * written by The Gamblers."
  825. intitle:"twiki" inurl:"TWikiUsers"
  826. inurl:"/catalog.nsf" intitle:catalog
  827. inurl:"install/install.php"
  828. inurl:"map.asp?" intitle:"WhatsUp Gold"
  829. inurl:"sitescope.html" intitle:"sitescope" intext:"refresh" -demo
  830. inurl:/adm-cfgedit.php
  831. inurl:/cgi-bin/finger? "In real life"
  832. inurl:/cgi-bin/finger? Enter (account|host|user|username)
  833. inurl:phpSysInfo/ "created by phpsysinfo"
  834. inurl:portscan.php "from Port"|"Port Range"
  835. inurl:statrep.nsf -gov
  836. inurl:testcgi xitami
  837. inurl:webutil.pl
  838. "Looking Glass" (inurl:"lg/" | inurl:lookingglass) -----Looking Glass-----
  839. intitle:That.Site.Running Apache
  840. ___________________________________________________________________________________________________
  841.  
  842. ARQUIVOS SENCIVEIS
  843.  
  844. comment:Vulnerable files***-----
  845. filetype:pl -intext:"/usr/bin/perl" inurl:webcal (inurl:webcal | inurl:add | inurl:delete | inurl:config)
  846. "File Upload Manager v1.3" "rename to"
  847. "Powered by Land Down Under 601"
  848. "powered by YellDL"
  849. ext:asp "powered by DUForum" inurl:(messages|details|login|default|register) -site:duware.com
  850. ext:asp inurl:DUgallery intitle:"3.0" -site:dugallery.com -site:duware.com
  851. ext:cgi inurl:ubb6_test
  852. ezBOO "Administrator Panel" -cvs
  853. filetype:cgi inurl:cachemgr.cgi
  854. filetype:cnf my.cnf -cvs -example
  855. filetype:inc inc intext:setcookie
  856. filetype:lit lit (books|ebooks)
  857. filetype:mdb inurl:"news/news"
  858. filetype:php inurl:"viewfile" -"index.php" -"idfil
  859. filetype:wsdl wsdl
  860. intitle:gallery inurl:setup "Gallery configuration" -----Gallery configuration setup files-----
  861. intitle:"ASP FileMan" Resend -site:iisworks.com
  862. intitle:"Directory Listing" "tree view"
  863. intitle:"Index of /" modified php.exe
  864. intitle:"PHP Explorer" ext:php (inurl:phpexplorer.php | inurl:list.php | inurl:browse.php)
  865. intitle:"phpremoteview" filetype:php "Name, Size, Type, Modify"
  866. intitle:mywebftp "Please enter your password"
  867. inurl:" WWWADMIN.PL" intitle:"wwwadmin"
  868. inurl:"nph-proxy.cgi" "Start browsing through this CGI-based proxy"
  869. inurl:"plog/register.php"
  870. inurl:cgi.asx?StoreID
  871. inurl:changepassword.cgi -cvs
  872. inurl:click.php intext:PHPClickLog
  873. inurl:php.exe filetype:exe -example.com
  874. inurl:robpoll.cgi filetype:cgi
  875. link:http://www.toastforums.com/
  876. "create the Super User" "now by clicking here" -----PHP-Nuke - create super user right now !-----
  877. intitle:"Index of" _vti_inf.html
  878. intitle:"Index of" service.pwd
  879. intitle:"Index of" users.pwd
  880. intitle:"Index of" authors.pwd
  881. intitle:"Index of" administrators.pwd
  882. intitle:"Index of" shtml.dll
  883. intitle:"Index of" shtml.exe
  884. intitle:"Index of" fpcount.exe
  885. intitle:"Index of" default.asp
  886. intitle:"Index of" showcode.asp
  887. intitle:"Index of" sendmail.cfm
  888. intitle:"Index of" getFile.cfm
  889. intitle:"Index of" imagemap.exe
  890. intitle:"Index of" test.bat
  891. intitle:"Index of" msadcs.dll
  892. intitle:"Index of" htimage.exe
  893. intitle:"Index of" counter.exe
  894. intitle:"Index of" browser.inc
  895. intitle:"Index of" hello.bat
  896. intitle:"Index of" default.asp\\
  897. intitle:"Index of" dvwssr.dll
  898. intitle:"Index of" dvwssr.dll
  899. intitle:"Index of" dvwssr.dll
  900. intitle:"Index of" cart32.exe
  901. intitle:"Index of" add.exe
  902. intitle:"Index of" index.JSP
  903. intitle:"Index of" index.jsp
  904. intitle:"Index of" SessionServlet
  905. intitle:"Index of" shtml.dll
  906. intitle:"Index of" index.cfm
  907. intitle:"Index of" page.cfm
  908. intitle:"Index of" shtml.exe
  909. intitle:"Index of" web_store.cgi
  910. intitle:"Index of" shop.cgi
  911. intitle:"Index of" upload.asp
  912. intitle:"Index of" default.asp
  913. intitle:"Index of" pbserver.dll
  914. intitle:"Index of" phf
  915. intitle:"Index of" test-cgi
  916. intitle:"Index of" finger
  917. intitle:"Index of" Count.cgi
  918. intitle:"Index of" jj
  919. intitle:"Index of" php.cgi
  920. intitle:"Index of" php
  921. intitle:"Index of" nph-test-cgi
  922. intitle:"Index of" handler
  923. intitle:"Index of" webdist.cgi
  924. intitle:"Index of" webgais
  925. intitle:"Index of" websendmail
  926. intitle:"Index of" faxsurvey
  927. intitle:"Index of" htmlscript
  928. intitle:"Index of" perl.exe
  929. intitle:"Index of" wwwboard.pl
  930. intitle:"Index of" www-sql
  931. intitle:"Index of" view-source
  932. intitle:"Index of" campas
  933. intitle:"Index of" aglimpse
  934. intitle:"Index of" glimpse
  935. intitle:"Index of" man.sh
  936. intitle:"Index of" AT-admin.cgi
  937. intitle:"Index of" AT-generate.cgi
  938. intitle:"Index of" filemail.pl
  939. intitle:"Index of" maillist.pl
  940. intitle:"Index of" info2www
  941. intitle:"Index of" files.pl
  942. intitle:"Index of" bnbform.cgi
  943. intitle:"Index of" survey.cgi
  944. intitle:"Index of" classifieds.cgi
  945. intitle:"Index of" wrap
  946. intitle:"Index of" cgiwrap
  947. intitle:"Index of" edit.pl
  948. intitle:"Index of" perl
  949. intitle:"Index of" names.nsf
  950. intitle:"Index of" webgais
  951. intitle:"Index of" dumpenv.pl
  952. intitle:"Index of" test.cgi
  953. intitle:"Index of" submit.cgi
  954. intitle:"Index of" submit.cgi
  955. intitle:"Index of" guestbook.cgi
  956. intitle:"Index of" guestbook.pl
  957. intitle:"Index of" cachemgr.cgi
  958. intitle:"Index of" responder.cgi
  959. intitle:"Index of" perlshop.cgi
  960. intitle:"Index of" query
  961. intitle:"Index of" w3-msql
  962. intitle:"Index of" plusmail
  963. intitle:"Index of" htsearch
  964. intitle:"Index of" infosrch.cgi
  965. intitle:"Index of" publisher
  966. intitle:"Index of" ultraboard.cgi
  967. intitle:"Index of" db.cgi
  968. intitle:"Index of" formmail.cgi
  969. intitle:"Index of" allmanage.pl
  970. intitle:"Index of" ssi
  971. intitle:"Index of" adpassword.txt
  972. intitle:"Index of" redirect.cgi
  973. intitle:"Index of" f
  974. intitle:"Index of" cvsweb.cgi
  975. intitle:"Index of" login.jsp
  976. intitle:"Index of" login.jsp
  977. intitle:"Index of" dbconnect.inc
  978. intitle:"Index of" admin
  979. intitle:"Index of" htgrep
  980. intitle:"Index of" wais.pl
  981. intitle:"Index of" amadmin.pl
  982. intitle:"Index of" subscribe.pl
  983. intitle:"Index of" news.cgi
  984. intitle:"Index of" auctionweaver.pl
  985. intitle:"Index of" .htpasswd
  986. intitle:"Index of" acid_main.php
  987. intitle:"Index of" access_log
  988. intitle:"Index of" access-log
  989. intitle:"Index of" access.log
  990. intitle:"Index of" log.htm
  991. intitle:"Index of" log.html
  992. intitle:"Index of" log.txt
  993. intitle:"Index of" logfile
  994. intitle:"Index of" logfile.htm
  995. intitle:"Index of" logfile.html
  996. intitle:"Index of" logfile.txt
  997. intitle:"Index of" logger.html
  998. intitle:"Index of" stat.htm
  999. intitle:"Index of" stats.htm
  1000. intitle:"Index of" stats.html
  1001. intitle:"Index of" stats.txt
  1002. intitle:"Index of" webaccess.htm
  1003. intitle:"Index of" wwwstats.html
  1004. intitle:"Index of" source.asp
  1005. intitle:"Index of" perl
  1006. intitle:"Index of" mailto.cgi
  1007. intitle:"Index of" YaBB.pl
  1008. intitle:"Index of" mailform.pl
  1009. intitle:"Index of" cached_feed.cgi
  1010. intitle:"Index of" cr
  1011. intitle:"Index of" global.cgi
  1012. intitle:"Index of" Search.pl
  1013. intitle:"Index of" build.cgi
  1014. intitle:"Index of" common.php
  1015. intitle:"Index of" common.php
  1016. intitle:"Index of" show
  1017. intitle:"Index of" global.inc
  1018. intitle:"Index of" ad.cgi
  1019. intitle:"Index of" WSFTP.LOG
  1020. intitle:"Index of" index.html~
  1021. intitle:"Index of" index.php~
  1022. intitle:"Index of" index.html.bak
  1023. intitle:"Index of" index.php.bak
  1024. intitle:"Index of" print.cgi
  1025. intitle:"Index of" register.cgi
  1026. intitle:"Index of" webdriver
  1027. intitle:"Index of" bbs_forum.cgi
  1028. intitle:"Index of" mysql.class
  1029. intitle:"Index of" sendmail.inc
  1030. intitle:"Index of" CrazyWWWBoard.cgi
  1031. intitle:"Index of" search.pl
  1032. intitle:"Index of" way-board.cgi
  1033. intitle:"Index of" webpage.cgi
  1034. intitle:"Index of" pwd.dat
  1035. intitle:"Index of" adcycle
  1036. intitle:"Index of" post-query
  1037. intitle:"Index of" help.cgi
  1038. __________________________________________________________________________________________________
  1039.  
  1040. intitle:upload inurl:upload intext:upload -forum -shop -support -wc
  1041. intitle: private, protected, secret, secure, winnt
  1042. intitle:"DocuShare" inurl:"docushare/dsweb/" -faq -gov -edu
  1043. "Certificate Practice Statement" inurlPDF | DOC) mil
  1044. filetype:mdb inurl:.mdb mil
  1045. filetype:log inurl:"password.log"
  1046. filetype:bak inurl:"htaccess|passwd|shadow|htusers"
  1047. filetype:ini inurl:"serv-u.ini"
  1048. filetype:ini inurl:flashFXP.ini
  1049. filetype:ini ServUDaemon
  1050. filetype:ini wcx_ftp
  1051. filetype:ini ws_ftp pwd
  1052. filetype:pem intext:private 搜索加密密匙
  1053. filetype:reg reg +intext:"defaultusername" +intext:"defaultpassword" 找肉鸡,看admin密码
  1054. filetype:reg reg HKEY_CURRENT_USER SSHHOSTKEYS
  1055. Mr. KingSkrupellos Cyberizm Digital Security Team
  1056. filetype:url +inurl:"ftp://" +inurl:";@" 此技巧最好分开使用
  1057. intitle:"index of" intext:connect.inc
  1058. intitle:"index of" intext:globals.inc
  1059. intitle:"Index of" passwords modified 推荐
  1060. intitle:"index of" intext:welcome 如有pub和etc一般都有welcome
  1061. intitle:Index.of etc shadow
  1062. site:.gov filetype:sql
  1063. "HTTP_FROM=googlebot" googlebot.com "Server_Software=" 好的很啊
  1064. ( filetype:mail | filetype:eml | filetype:mbox | filetype:mbx ) intext:password|subject site:edu 2005
  1065. filetype:eml eml +intext:"Subject" +intext:"From" +intext:"To"
  1066. inurl:forward filetype:forward -cvs 找密码和ftp最好的技巧
  1067. top secret site:mil
  1068. confidential site:mil
  1069.  
  1070. inurl:
  1071. private
  1072. protected
  1073. secret
  1074. secure
  1075. --------------------------------------------------------------------
  1076.  
  1077. filetype:xls username password email
  1078. "config.php"
  1079. service filetype:pwd (frontpage)
  1080. inurl:_vti_cnf (frontpage files)
  1081. allinurl:/msadc/samples/selector/showcode.asp
  1082. allinurl:/examples/jsp/snp/snoop.jsp
  1083. ipsec filetype:conf
  1084. "mydomain.com" nessus report
  1085. "report generated by"
  1086. "ws_ftp.log"
  1087. inurl:server-info "Apache Server Information"
  1088. inurl:ssl.conf filetype:conf
  1089. ipsec.conf
  1090. Lotus Domino address books 用户数据库,重要
  1091. robots.txt 看目录
  1092.  
  1093. ___________________________________________________________________________________________________
  1094.  
  1095.  
  1096.  
  1097. filetype:url +inurl:"ftp://" +inurl:"@"
  1098.  
  1099. filetype:cnf inurl:_vti_pvt access.cnf
  1100.  
  1101.  
  1102. allinurl:"/*/_vti_pvt/" | allinurl:"/*/_vti_cnf/" 推荐
  1103. "access denied for user" "using password" mysql暴错,暴出路径
  1104. intitleogin intext:"RT is ? Copyright" 找登陆页子
  1105. intitle:index.of WEB-INF 目录
  1106. intitle:"Index of" config.php
  1107. "Index of /admin" + passwd
  1108. inurl:passwd.txt wwwboard|webadmin
  1109. master.passwd
  1110. filetype:cfg mrtg "target
  1111. " -sample -cvs -example 看MRTG的配置的
  1112. ext:ini Version=... password
  1113. filetype:cfm "cfapplication name" password
  1114. filetype:config config intext:appSettings "User ID"
  1115. filetype:dat "password.dat"
  1116. filetype:inc dbconn 推荐
  1117. "#mysql dump" filetype:sql
  1118. "allow_call_time_pass_reference" "ATH_INFO"
  1119. filetype:inc intext:mysql_connect
  1120. filetype:inc mysql_connect or mysql_pconnect
  1121. filetype:mdb inurl:users.mdb
  1122.  
  1123. filetype:pass pass intext:userid
  1124. filetype:properties inurl:db intext:password ]
  1125.  
  1126. filetype:sql ("values * MD" | "values * password" | "values * encrypt")
  1127. filetype:sql ("passwd values" | "password values" | "pass values" )
  1128. filetype:sql +"IDENTIFIED BY" -cvs
  1129. filetype:sql password
  1130. filetype:xls username password email mil
  1131.  
  1132. htpasswd
  1133. htpasswd / htgroup
  1134. htpasswd / htpasswd.bak
  1135.  
  1136. inurljspdemos private protected secret secure
  1137.  
  1138. intitle:dupics inurladd.asp | default.asp | view.asp | voting.asp) -site:duware.com
  1139. inurl:config.php dbuname dbpass phpnuke的漏洞
  1140. "Welcome to phpMyAdmin" " Create new database"
  1141. "phone * * *" "address *" "e-mail" intitle:"curriculum vitae" 跟踪
  1142. "phpMyAdmin" "running on" inurl:"main.php"
  1143. "robots.txt" "Disallow:" filetype:txt 可以查看漏洞
  1144. ext:reg "username=*" putty
  1145. -site:php.net -"The PHP Group" inurl:source inurl:url ext:pHp
  1146. ext:log "Software: Microsoft Internet Information Services *.*"
  1147. filetype:asp DBQ=" * Server.MapPath("*.mdb")
  1148. filetype:php inurl:index inurl:phpicalendar -site:sourceforge.net 泄露源代码
  1149. haccess.ctl (one way)
  1150. haccess.ctl (VERY reliable)
  1151. intext:gmail invite intext:http://gmail.google.com/gmail/a
  1152. -------------------------------------------------------------------------------------
  1153. intitle:"Index of" upload size parent directory
  1154. intitle:"System Statistics" +"System and Network Information Center"
  1155. intitle:"wbem" compaq login "Compaq Information Technologies Group"
  1156. intitle:index.of "Apache" "server at"
  1157. intitle:index.of cleanup.log
  1158. intitle:index.of dead.letter
  1159. intitle:index.of inbox
  1160. intitle:index.of inbox dbx
  1161. "intitle:Index.Of /" stats cgi-* etc
  1162. intitle:"Directory Listing For" intext:Tomcat -intitle:Tomcat mil
  1163. intitle:"Index of *" inurl:"my shared folder" size modified
  1164. intitle:"index of" "parent directory" "desktop.ini" site:gov NASA
  1165. "Index of /backup"
  1166. intitle:"Index of /" modified php.exe
  1167. Mr. KingSkrupellos Cyberizm Digital Security Team
  1168. intitle:"index of" -inurl:htm -inurl:html mp
  1169. intitle:"Index of" cfide
  1170. intitle:"index of" intext:"content.ie"
  1171. intitle:"index.of.personal"
  1172. intitle:"webadmin - /*" filetype:php directory filename permission
  1173. intitle:index.of (inurl:fileadmin | intitle:fileadmin)
  1174. intitle:index.of /AlbumArt_
  1175. intitle:index.of /maildir/new/
  1176. intitle:index.of abyss.conf
  1177. intitle:intranet inurl:intranet +intext:"human resources"
  1178. inurl:/tmp
  1179.  
  1180. filetype:pl -intext:"/usr/bin/perl" inurl:webcal (inurl:webcal | inurl:add | inurl:delete | inurl:config)
  1181.  
  1182. inurl:explorer.cfm inurldirpath|This_Directory)
  1183.  
  1184. ___________________________________________________________________________________________________
  1185.  
  1186.  
  1187. "parent directory " /appz/ -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
  1188.  
  1189. "parent directory " DVDRip -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
  1190.  
  1191. "parent directory "Xvid -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
  1192.  
  1193. "parent directory " Gamez -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
  1194.  
  1195. "parent directory " MP3 -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
  1196.  
  1197. "parent directory " Name of Singer or album -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
  1198.  
  1199. "AutoCreate=TRUE password=*"
  1200.  
  1201. "index of cgi-bin"
  1202. +htpasswd +WS_FTP.LOG filetype:log
  1203. filetype:cfg ks intext:rootpw -sample -test -howto gov
  1204. config.inc.php 偶自己发现地
  1205. site:mil admin grades
  1206. inurl:backup filetype:mdb
  1207. inurl:perl/printenv
  1208. inurldbc.ini ext:ini -cvs
  1209. "Index Of /network" "last modified"
  1210. filetype:mbx mbx intext:Subject
  1211. Apache Tomcat Admin intitle:”Tomcat Server Administration”
  1212. ASP.NET inurl:ASP.login_aspx
  1213. Citrix Metaframe inurl:/Citrix/Nfuse17/
  1214. Citrix Metaframe inurl:citrix/metaframexp/default/login.asp
  1215. ColdFusion Admin intitle:”ColdFusion Administrator Login”
  1216. ColdFusion Generic inurl:login.cfm
  1217. Lotus Domino Admin inurl:”webadmin” filetype:nsf
  1218. Lotus Domino inurl:names.nsf?opendatabase
  1219. Microsoft Certificate Server intitle:”microsoft certificate services”
  1220. inurl:certsrv
  1221. Microsoft Outlook Web Access allinurl:”exchange/logon.asp”
  1222. Microsoft Outlook Web Access inurl:”exchange/logon.asp” or
  1223. intitle:”Microsoft Outlook Web Access –
  1224. Logon”
  1225. Microsoft Remote Desktop intitle:Remote.Desktop.Web.Connection
  1226. inurl:tsweb
  1227. Network Appliance Admin inurl:na_admin
  1228. Novell Groupwise Web Access inurl:/servlet/webacc Novell
  1229. Shockwave Flash Login inurl:login filetype:swf swf
  1230. Tivoli Server Administration intitle:”Server Administration” “Tivoli power”
  1231. VNC “VNC Desktop” inurl:5800
  1232.  
  1233. ___________________________________________________________________________________________________
  1234.  
  1235.  
  1236. inurl:error.log filetype:log -cvs Apache error log
  1237. inurl:access.log filetype:log –cvs Apache access log (Windows)
  1238. filetype:log inurl:cache.log Squid cache log
  1239. filetype:log inurl:store.log RELEASE Squid disk store log
  1240. filetype:log inurl:access.log TCP_HIT Squid access log
  1241. filetype:log inurl:useragent.log Squid useragent log
  1242. filetype:log hijackthis “scan saved” Hijackthis scan log
  1243. ext:log “Software: Microsoft IIS server log files
  1244. Internet Information Services *.*”
  1245. filetype:log iserror.log MS Install Shield logs
  1246. intitle:index.of .bash_history UNIX bash shell history file
  1247. intitle:index.of .sh_history UNIX shell history file
  1248. “Index of” / “chat/logs” Chat logs
  1249. filetype:log username putty Putty SSH client logs
  1250. filetype:log inurl:”password.log” Password logs
  1251. Mr. KingSkrupellos Cyberizm Digital Security Team
  1252. filetype:log cron.log UNIX cron logs
  1253. filetype:log access.log –CVS HTTPD server access logs
  1254. +htpasswd WS_FTP.LOG filetype:log WS_FTP client log files
  1255. “sets mode: +k” IRC logs, channel key set
  1256. “sets mode: +s” IRC logs, secret channel set
  1257. intitle:”Index Of” -inurl:maillog Mail log files - maillog size
  1258.  
  1259. ___________________________________________________________________________________________________
  1260.  
  1261. Mr. KingSkrupellos Cyberizm Digital Security Team
Add Comment
Please, Sign In to add comment