|
http://www.cnsu.org-->site
! S c1 G. v ^) |. z: D" g* G: D) i* k+ ~! E
www.cnsu.org-->inurl 2 [, T0 ?) G/ {
) g7 m( ?: [, Q adminàinurl
: o2 G3 i- z, h ?. `( }7 ^* f9 _( }1 Z' U9 `4 Y3 U9 C2 a9 c' a" ^
。asp D D》filetype 3 x7 r" w8 t7 E
4 k, o, C, ~5 k* K: ]
标题 D D》intitle 1 }; @5 m5 U# V& K
( }% ?3 f7 U; d+ z+ ^. Y3 Z: p: c9 R; H
页面文字 D D》intext 2 \9 {. }9 ]2 ^# f( N. q7 M" E
/ \! _, g8 H2 u" L# g: Y
页面编号 D D》numeange
0 z$ b9 r& t% p I- e6 g' q0 S
% Q1 \, N3 I; c, \; O3 G4 N - 逻辑非,“A-B”表示包含A没有B的网页
! |7 `6 F# [( m$ z! c9 s
" J' N* [# P2 } L2 W% ?# s/ I2 M" S *代表单个字符 6 F( ` l* w, x" U% `
0 j4 O+ F$ M) F; B& b or操作
0 b2 \% S [: K) \$ k* {9 U& T( w" p% J% M2 u
“”用短语做关键字,必须加上引号,不然会被当作与操作
( Y. Q: L: h4 B9 l3 f- s4 {
6 s+ Y/ l* R2 h 。空格
7 }/ P. o5 s7 i3 O- _) l* \. Y/ f3 P4 G
9 ?/ W7 Y( t! [: w, G& B Google对一些网路上出现频率极高的英文单词,如“i”、“com”、“www”等,以及一些符号如“*”、“。”等,作忽略处理
. f" H# a& M4 t7 f. i7 |' u! H) B/ H
; N3 n; m9 s5 @. x' B 可以用+强制搜索 ; v' x: u7 x1 V; i z8 ?
% F( m" v \7 e0 {5 G2 e; y 下面的语句是我搜集来的,大家可以试着用下 9 K4 _: p5 b1 s4 s% v4 b
& |) D% {. `2 {/ s0 s
比如用Intitle:welcome.to.iis.4.0 IIS4会找到好多winNT的主机,呵呵 6 k, t7 f5 S6 K0 A
. T; b! Q6 T: Z Site:sohu.com " O& J: `) C" L+ T3 c6 w
/ z7 I1 s0 k! W1 C Site:sohu.com-site:www.sohu.com
6 W& z6 K, H& P4 P# G/ ?# {( [' u+ Z3 S ]! C
Intitle:index.of/admin
/ L' h8 k) V8 ]" Y1 {
. z% {! i7 R1 Q1 u) }# v Intitle:index.of apache server.at # z- W8 m: B7 [: E
2 ?' C x% o4 M8 j* g4 T) _% L Intitle:test.page.for.apache “it workd” ' A8 |6 [4 ?; _& ?7 U! y( Y
2 J* D/ o! q1 S' F& ^9 D5 i5 `
Allintitle:Netscape Fasr Track Server Home Page
+ S, z0 n! d. |. a, ?7 M- S8 t3 x0 k# t# J% O
Intitle:”welcome to windows 2000 internet services”
: s1 B }8 L+ E( [( e5 T
! ^) p4 _4 n: b# k$ u2 b1 E IIS—win2000
) X. _' L. P5 a4 m& F' @8 z# l9 R0 A. W S: t7 g8 `0 L8 b
Allintitle:welcome to windows XP server internet ! z, f. ]' X3 I3 Z" Y
. y, X& S# h) k% D7 v" t: w9 B9 u
services iis---XP ) A# s) W; P9 D0 S0 A
0 H3 Z ^# y) |0 t$ E4 ~# u Intitle:welcome.to.iis.4.0 IIS4
. |1 m6 K/ E% l5 b6 R2 I% r5 T: X- j0 r/ {4 |& v" i
Allintrtle:”welcome to internet information server” ; Q2 Q* B) Q& ?( O1 o- R
; ?; z8 c( _7 F4 q3 Q; z9 T9 b IIS-- generic
% [8 U2 u6 k0 M6 C8 V P Z" B ]5 L7 E0 u7 x! C' i
Intitle:”apache http server”
+ P0 R2 @* e' h5 H' t7 H& k8 i+ v; T4 ~. Y6 ~) Z q% L3 o4 n( _) e' E* W* ~& _
Intitle:”documentation”
& J+ L5 S6 G6 Q5 S
5 x: `4 N! v5 s1 C. z Intitle:””error using hypernews””server software”
/ X0 ]' I+ D8 L# M t% D
; n8 T2 E; D% Q7 H4 `. V “HTTP_USER_AGENT=Googlebot”
+ Z# w1 r9 F t L* I2 p4 N. s% `* S. A. w% @' y
“HTTP_USER_AGENT=Googlebot”TNS_ADMIN
' C: j7 v" X, a4 y, F; F
& O/ Z- o/ e$ t- \ Inurl:/admin/login.asp
1 v/ d4 T$ z3 i" ]1 v) Y
9 o( h: W0 o Z9 m( e Intitle:”remote desktop wen connection”
* `. E4 ^2 J- e, R2 t& u4 g; x3 `8 P
“welcome to *” “Your password is *” + y. P+ d; w& f9 a0 ]1 p2 A
! W3 L/ ?1 @: ?* z# T0 v
Inurl(browse top_rated power_search hot create_admin_user)+”powered
9 s j! g+ g. z( u D7 E- |2 r, J+ C. j/ S i# E" L* ]
by inde xu”
6 L* i& V8 ]0 f
8 [8 p! D" [ k5 q% ~$ g# P “adding new user” inurl:addnewuser C“there are no
' _3 N- }" K2 E6 v& T: A( z+ e0 z
, R- e1 q* Z( n! W" r3 R* } domain” ! Q( g& _# \; \
5 }$ W* f5 s2 |
Filetype:log inurl:”password.log” * O* R5 h0 t3 T8 j2 ^0 Y C
2 _; q* u! _. \3 U Intitle:”PHP Shell *” “enable stderr” filetype:php 1 d/ S& m9 D3 n; a" P
# c9 i' X' R F6 y Intitle:confixx login password
' t5 k% r* B& O% P* P [* g' @1 c7 r: _! G+ e
“powered by rover” 3 x3 V: U; \" C! m. G; y8 o
9 {$ H* K' r# m- O$ d4 F
Inurl:iisadmpwd : R" s+ s/ z0 }! a# y7 u
+ T- l, I8 P# E
Inurl:5800 4 U) F/ _9 s2 a! s8 T! D
) `" t' Y3 H$ M* R1 @3 c* ] “VNC desktop” inurl:5800
* R8 V; _- @" O" s. W5 I9 l5 n) l9 P# w
Inurl:webmin inurl:10000 7 [. N6 p) A/ `# Q0 j
Y }( S j& U+ p+ K+ [ Inurl:8080 Cintext:8080 ; ~5 X0 Q2 z+ v: N' q+ q
* Y" N5 C5 |! h# e' t
“access denird for user” “using password” * [6 q$ Z! |8 ~* D) W" \
* ~% c+ F3 _0 Z' p: ?' s* f0 X “# Dumping data for table”
( l3 e! H, S+ I$ Z
' \! v+ a( g* Y* m ~, P% x5 a “# Dumping data for table” username password [* W6 O$ F' R4 G, k8 q, B5 A
. U2 y3 o R3 [ “# Dumping data for table
! E, }6 X ?) a: h& l4 M/ Q, ^: r4 ~ T
9 g' L' e% R5 j- n7 ^ (username user users password)” l- x/ @$ q! U! D) n' M- U# c
; {3 e' e" B7 @$ P- K' L# J Inurl:main.php welcome to phpmyadmin
% n/ M0 i: d, ^; m' a' R. b4 J1 R" X8 k, y" d" F& H
Intitle:”phpmyadmin running on *” welcome to phpmyadmin ; Z6 p0 K5 H% n: i
! w7 K0 a/ C7 S& M P Filetype:inc intext:mysql connect
$ H$ Z, C4 _* F, E. g7 ~- p, D# G& }* C# ]) l2 L! O
Filetype:sql + “INENTIFIED BY” Ccvs 5 r3 C2 A5 B+ T4 a, L2 ^
. P4 Q8 v, j( G* O; U: |! M Filetype:sql + “INENTIFIED BY” (“grant * on *” “create 6 x3 K3 O& x* }+ t$ q: z4 i
. o$ {. y& h4 P/ @; i3 P
user”) 6 h3 ?! ]$ \; P+ F3 \! ]! z$ {8 q+ J
# c/ H# m9 N3 Z z “this report lists” “identified by internet scaner” $ M" Y0 G+ O7 I; o
& B! e- s( n% m5 {) i/ M: Y
ACID “by roman danyliw” Filetype HP
% Y; j; d; K/ h% `
" y5 S9 u7 n, P6 H; T 小提示:用google hacking工具搜索这些,真的是多快好省啊:)
; S, ^2 F4 y7 X4 ]$ j/ u, ~4 ]5 k |