|
http://www.cnsu.org-->site
2 B$ J: S) G) }3 ~$ l* o4 e$ f8 C8 B% @$ \* W; w+ m, K5 Z
www.cnsu.org-->inurl ; k8 N; z {7 K. U0 [
" E! \& H1 R. N( a
adminàinurl 8 p5 H7 q$ |4 h$ q9 F
! f/ C" h& s3 c$ t! D: ~+ e 。asp D D》filetype
0 K( k3 E8 Q8 c' N
# U' j5 g; N0 j& {0 }' N9 l 标题 D D》intitle ) J( i' b- C: p7 _( D2 W
3 A2 ]* ^& v, D- A 页面文字 D D》intext
) d8 o- {- e9 ]! C' S7 m
3 x8 Z9 ?' U6 e. _9 ^, w( h 页面编号 D D》numeange ' F7 O, B: E2 N0 O9 U
/ r* ~ l4 {* v: q - 逻辑非,“A-B”表示包含A没有B的网页 $ Q2 S- e; H4 C
' S( s1 X9 T) M" d3 y- x *代表单个字符 3 Y0 `" ?: o1 P R. b$ m6 K6 }# k
. I7 o, L; c5 }0 [: P
or操作
3 {9 }3 n% X- I, B# J* C+ C( a2 B) O# ?: {# Y' q o
“”用短语做关键字,必须加上引号,不然会被当作与操作
$ L/ O! X' S( Y: G$ o3 Q3 O( p. g9 ^! Y" G
。空格
8 ~0 w$ I( g" J J( X9 w2 ?& J) z
4 w! {' x: H3 g& m Google对一些网路上出现频率极高的英文单词,如“i”、“com”、“www”等,以及一些符号如“*”、“。”等,作忽略处理
2 l# z% D! ^! n7 M) `" ~! c/ Y4 p% ?; E
可以用+强制搜索
9 [' s6 ]9 _9 B7 P& V
* ]( T( S! O! h8 M; K 下面的语句是我搜集来的,大家可以试着用下 ! O2 w7 m: n$ A% W5 w
1 x; W& D) O: f+ ^1 j) B
比如用Intitle:welcome.to.iis.4.0 IIS4会找到好多winNT的主机,呵呵
) }5 Y! N: M0 ?' v& p/ a
6 _8 y! {- x- {- e2 P+ s Site:sohu.com / _3 T' ^, y* J. W2 m
8 N, M3 B1 S3 x2 \' e- K7 j Site:sohu.com-site:www.sohu.com + T7 ]: W% ]- C0 {/ C: H
1 G+ n1 G; H! T0 h) P
Intitle:index.of/admin
( t7 P3 {' a$ F
& I+ Z5 z: X/ n: [! X Intitle:index.of apache server.at
' Z6 A$ U3 W( o: @% @+ I1 W( H2 i3 V8 g, L) `2 v; p& o4 Q
Intitle:test.page.for.apache “it workd”
. {: {2 c: L% ?! z% s7 Z
) R" b' u/ G- O7 [6 S Allintitle:Netscape Fasr Track Server Home Page
3 @: X( q' }" Q* g0 q
- `9 j" f8 i7 ^4 d4 w' k* w Intitle:”welcome to windows 2000 internet services” , Q6 {$ {. @& g6 l7 @+ h0 P
! t2 b5 d! s3 d' D1 s% A IIS—win2000
( |+ L R$ W s9 H5 _2 c( G, b# X/ @9 c3 \- m) g; s3 w% ]1 Q/ o
Allintitle:welcome to windows XP server internet
8 f: c- [8 d' ~
9 Z* s8 m7 X6 C4 V: V" ` services iis---XP
! N6 Y; W( q0 [3 K' ]4 N& y, a: u M% Y/ C( d, g: [
Intitle:welcome.to.iis.4.0 IIS4 % v C& ^$ b. }4 ]/ T( h- ]
; S/ q( l9 z" F# P* m& v' O Allintrtle:”welcome to internet information server”
' n& n5 U8 `, |. n" J
) G2 K# a5 @/ Q8 S y- l( q IIS-- generic
' k7 Z* \9 @6 [- f2 ?
! o- U [2 ^4 S# } Intitle:”apache http server”
4 {: ]" y* A/ a. ` T. L/ Q
, N- \6 b6 R! y* _ O; q0 T- g Intitle:”documentation”
* Q7 f r4 S* [2 q- D8 N5 o7 ~ k
' S* |- k C$ E* e5 V# R Intitle:””error using hypernews””server software”
4 M6 v6 p$ t6 H! `
# b, J# h. ^* E( s# C+ g u “HTTP_USER_AGENT=Googlebot” 7 \* y8 o7 B8 o% s4 A4 N5 i
' m0 V0 L& y+ ?8 C+ M# x! l
“HTTP_USER_AGENT=Googlebot”TNS_ADMIN
8 _- h. x! D5 `# Z7 P1 u# S! H; U( Z4 | s; a, x/ L
Inurl:/admin/login.asp
" H) N% @0 ~ @/ E1 U3 L4 M
4 s5 M8 o6 X+ |. {( _9 { Intitle:”remote desktop wen connection” % V1 X* q5 M- [+ e" F" f
9 x3 |! f9 b0 j; `/ }+ X “welcome to *” “Your password is *”
' r; S& y" O7 Y8 J0 T' g2 v, r
2 B8 P7 h# K+ L2 _8 S& i Inurl(browse top_rated power_search hot create_admin_user)+”powered
4 S5 g1 B9 A& G9 Z6 v, U8 X# [. n2 r6 M
by inde xu”
1 f) A1 U) ~' }$ i$ B! _" Z4 x
6 e5 p5 n- @+ F% | I2 k" s& g “adding new user” inurl:addnewuser C“there are no
* L8 Q9 V! H6 g& z0 j
; s# U3 \/ v: ~1 n0 J% [3 ~ domain” , r7 X( @( v" C& p) M
; V3 s# V* e) w2 \4 k Filetype:log inurl:”password.log” 1 L0 ~; H" d- V8 u" E9 E0 L9 V
" H4 G" R7 U3 x, |4 `
Intitle:”PHP Shell *” “enable stderr” filetype:php
3 G" t& o5 I6 C: j& K. Q- I- ?! ? o* S5 v2 b. O9 d
Intitle:confixx login password
2 Y8 E5 ]4 q0 g5 e/ t B& A* W, @& M% g( a1 y& @: Q6 m. O$ q- C- o4 s
“powered by rover”
z _2 L2 `+ Z) j% _: c5 J. q+ g
; z: x! b2 c& v6 x$ t Inurl:iisadmpwd ) Q$ X( g5 V) D, h* ~. d+ z4 g
! x0 J% V8 B- K5 k Inurl:5800
; ^% \1 L2 V5 {$ i3 O1 h. R. Y% l% X
“VNC desktop” inurl:5800
I# ^; z* }9 h8 l/ b( Z' K- P/ `
1 Z- O4 \- v0 \ K Inurl:webmin inurl:10000
; W% {& ~% O. L8 U9 h- x
3 I+ @: n0 @+ G2 @ Inurl:8080 Cintext:8080 8 u% o# D- Q l/ _2 x, D% s+ \
! X- W) z* b. y( s m- Z, i: u" K “access denird for user” “using password”
5 G. L; {. [3 a/ _
5 P7 g- O* Y' {* ^4 t! O “# Dumping data for table” + O- V, a! d8 w8 @5 e
; D1 P! t- W; f% i* v
“# Dumping data for table” username password $ C u2 S: p9 Y! _+ S) C- }
; o) {: C( x9 s “# Dumping data for table
1 v$ ~- ?! g- a7 B1 ^7 k' O
! h8 x; `- ]) A! T. A (username user users password)” ; j4 H' ^, a8 c8 W
# c2 A" `& m2 z/ }
Inurl:main.php welcome to phpmyadmin
. ?7 k* |& k+ W% k1 M5 s. q+ C- G% w" p& T
Intitle:”phpmyadmin running on *” welcome to phpmyadmin - N0 ~! b( D2 t. M% P
# A6 i" Z0 O# P& I' ^1 L Filetype:inc intext:mysql connect
7 R$ U; K3 f' H+ E0 {5 e
! W6 |3 }( K U! l/ X/ g0 ]9 E Filetype:sql + “INENTIFIED BY” Ccvs % K6 a, f9 V9 ` ]) O- x4 i) a
Z. K% u1 W9 \2 u
Filetype:sql + “INENTIFIED BY” (“grant * on *” “create ) q7 p! Z8 j0 V8 Y& t! W% c
* `) ?/ P6 O" h user”)
- ]0 g; j; Q( f5 b5 L, \$ z/ r( b1 M b9 K4 e7 J9 {
“this report lists” “identified by internet scaner” $ g- b: j4 h% s" d
; h! I* }; s4 u x" Q$ I ACID “by roman danyliw” Filetype HP 4 e; _: o& B$ K+ {
4 p" u$ o1 l1 r) e9 k 小提示:用google hacking工具搜索这些,真的是多快好省啊:)
. ?0 r% A. {( S) s" ]/ E2 I" {' [& ` |