Advertisement
Guest User

Untitled

a guest
Nov 12th, 2019
254
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.69 KB | None | 0 0
  1. <html>
  2. <head>
  3. <meta http-equiv="author" content="The Alchemist"/>
  4. <title>
  5. Malaysian Tools</title>
  6. </head>
  7. <body>
  8. <style>
  9. body{
  10. background-image:url(https://thumbs.gfycat.com/FreeWetAardvark-size_restricted.gif);
  11. background-size:cover;
  12. background-attachment: fixed;
  13. }
  14. p{
  15. color:white;
  16. }
  17. </style>
  18. <style>
  19. #MainTable {
  20. width: 100%;
  21. background-color: #D8F0DA;
  22. border: 1px;
  23. min-width: 100%;
  24. position: relative;
  25. opacity: 0.97;
  26. background: transparent;
  27. }
  28. </style>
  29. <p align=center>
  30. <img src="https://i.pinimg.com/originals/a6/7c/9f/a67c9f845bce63902ba4957e1852f6cb.gif" height="300" width="600"></p>
  31.  
  32. <p align="center"><font color="green" size="5">Admin Page Finder</font></p>
  33. <form method="POST" action="<?php $PHP_SELF; ?>">
  34. <table id = "MainTable"> <tr><td><p align="center"><font color="c0c0c0">Enter website : </font>
  35. <input type="text" name="url" value="http://"/>
  36. <br>
  37. <input type="submit" name="submit" value="Check"/></td></tr></table>
  38. </p>
  39. <br>
  40. <br>
  41. <?php
  42. //This code was created by The Alchemist
  43. function xss_protect($data, $strip_tags = false, $allowed_tags = "") {
  44. if($strip_tags) {
  45. $data = strip_tags($data, $allowed_tags . "<b>");
  46. }
  47.  
  48. if(stripos($data, "script") !== false) {
  49. $result = str_replace("script","scr<b></b>ipt", htmlentities($data, ENT_QUOTES));
  50. } else {
  51. $result = htmlentities($data, ENT_QUOTES);
  52. }
  53.  
  54. return $result;
  55. }
  56. function urlExist($url)
  57. {
  58. $handle = curl_init($url);
  59. if (false === $handle)
  60. {
  61. return false;
  62. }
  63. curl_setopt($handle, CURLOPT_HEADER, false);
  64. curl_setopt($handle, CURLOPT_FAILONERROR, true);
  65. curl_setopt($handle, CURLOPT_HTTPHEADER, Array("User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.15) Gecko/20080623 Firefox/2.0.0.15") ); // request as if Firefox
  66. curl_setopt($handle, CURLOPT_NOBODY, true);
  67. curl_setopt($handle, CURLOPT_RETURNTRANSFER, false);
  68. $connectable = curl_exec($handle);
  69. curl_close($handle);
  70. return $connectable;
  71. }
  72. if(isset($_POST['submit']) && isset($_POST['url']))
  73. {
  74. $url= htmlentities(xss_protect($_POST['url']));
  75. if(filter_var($url, FILTER_VALIDATE_URL))
  76. {
  77. $trying = array('systemadmin/','administrator/','admin1/','admin2/','admin3/','admin4/','admin5/','usuarios/',
  78. 'usuario/','administrator/','moderator/','webadmin/','adminarea/','bb-admin/','adminLogin/','admin_area/',
  79. 'panel-administracion/','instadmin/','memberadmin/','systemadmin','adm/','admin/account.php',
  80. 'admin/index.php','admin/login.php','admin/admin.php','admin/account.php','admin_area/admin.php',
  81. 'admin_area/login.php','siteadmin/login.php','siteadmin/index.php','siteadmin/login.html','admin/account.html',
  82. 'admin/index.html','admin/login.html','admin/admin.html','admin_area/index.php','bb-admin/index.php','bb-admin/login.php',
  83. 'bb-admin/admin.php','admin/home.php','admin_area/login.html','admin_area/index.html','admin/controlpanel.php','admin.php',
  84. 'admincp/index.asp','admincp/login.asp','admincp/index.html','admin/account.html','adminpanel.html','webadmin.html',
  85. 'webadmin/index.html','webadmin/admin.html','webadmin/login.html','admin/admin_login.html','admin_login.html',
  86. 'panel-administracion/login.html','admin/cp.php','cp.php','administrator/index.php','administrator/login.php',
  87. 'nsw/admin/login.php','webadmin/login.php','admin/admin_login.php','admin_login.php','administrator/account.php',
  88. 'administrator.php','admin_area/admin.html','pages/admin/admin-login.php','admin/admin-login.php','admin-login.php',
  89. 'bb-admin/index.html','bb-admin/login.html','acceso.php','bb-admin/admin.html','admin/home.html',
  90. 'login.php','modelsearch/login.php','moderator.php','moderator/login.php','moderator/admin.php','account.php',
  91. 'pages/admin/admin-login.html','admin/admin-login.html','admin-login.html','controlpanel.php','admincontrol.php',
  92. 'admin/adminLogin.html','adminLogin.html','admin/adminLogin.html','home.html','rcjakar/admin/login.php',
  93. 'adminarea/index.html','adminarea/admin.html','webadmin.php','webadmin/index.php','webadmin/admin.php',
  94. 'admin/controlpanel.html','admin.html','supermanasp','cp.html','adminpanel.php','moderator.html',
  95. 'administrator/index.html','administrator/login.html','user.html','administrator/account.html','administrator.html',
  96. 'login.html','modelsearch/login.html','moderator/login.html','adminarea/login.html','panel-administracion/index.html',
  97. 'panel-administracion/admin.html','modelsearch/index.html','modelsearch/admin.html','admincontrol/login.html',
  98. 'adm/index.html','adm.html','moderator/admin.html','user.php','account.html','controlpanel.html','admincontrol.html',
  99. 'panel-administracion/login.php','wp-login.php','adminLogin.php','admin/adminLogin.php','home.php','admin.php',
  100. 'adminarea/index.php','adminarea/admin.php','adminarea/login.php','panel-administracion/index.php',
  101. 'panel-administracion/admin.php','modelsearch/index.php','modelsearch/admin.php','admincontrol/login.php',
  102. 'adm/admloginuser.php','admloginuser.php','admin2.php','admin2/login.php','admin2/index.php','usuarios/login.php',
  103. 'adm/index.php','adm.php','affiliate.php','adm_auth.php','memberadmin.php','administratorlogin.php','admin.asp','admin/admin.asp',
  104. 'admin_area/admin.asp','admin_area/login.asp','admin_area/index.asp','bb-admin/index.asp','bb-admin/login.asp',
  105. 'bb-admin/admin.asp','pages/admin/admin-login.asp','admin/admin-login.asp','admin-login.asp','user.asp','webadmin/index.asp',
  106. 'webadmin/admin.asp','webadmin/login.asp','admin/admin_login.asp','admin_login.asp','panel-administracion/login.asp',
  107. 'adminLogin.asp','admin/adminLogin.asp','home.asp','adminarea/index.asp','adminarea/admin.asp','adminarea/login.asp',
  108. 'panel-administracion/index.asp','panel-administracion/admin.asp','modelsearch/index.asp','modelsearch/admin.asp',
  109. 'admincontrol/login.asp','adm/admloginuser.asp','admloginuser.asp','admin2/login.asp','admin2/index.asp','adm/index.asp',
  110. 'adm.asp','affiliate.asp','adm_auth.asp','memberadmin.asp','administratorlogin.asp','siteadmin/login.asp','siteadmin/index.asp');
  111. foreach($trying as $sec)
  112. {
  113. $urll=$url.'/'.$sec;
  114. if(urlExist($urll))
  115. {
  116. echo '<p align="center"><font color="00FF00">'.$urll.' exists.<br>MATCH FOUND!!!</font></p>';
  117. exit;
  118. }
  119. else
  120. {
  121. echo '<p align="center"><font color="FFFF00">'.$urll.' does not exist.</font></p>';
  122. }
  123. }
  124. echo '<p align="center"><font color="c0c0c0" size="5">Could not find admin page.</font></p>';
  125. }
  126. else
  127. {
  128. echo '<p align="center"><font color="c0c0c0" size="5">Invalid URL entered.</font></p>';
  129. }
  130. }
  131. ?>
  132. </body>
  133. </html>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement