|
http://www.cnsu.org-->site % X/ Q' h/ S0 u5 S1 A, H% W k( @
" E0 K9 X5 u. j1 g& R www.cnsu.org-->inurl
9 }( a: N" o5 H( P, |" K# b5 l0 V( l" P9 G% {8 Y
adminàinurl ' i* W' O ^* E3 p/ V
& K; ~0 m5 I# R- b! p 。asp D D》filetype
, J' D7 L b6 j4 Q. [* W$ L
- ]5 }# m4 S; D( v8 R 标题 D D》intitle , M6 B: O7 m" S# v' D; I
* W6 [* R- i# g; C8 @1 |! q) Z3 P
页面文字 D D》intext
0 m) p3 a. t4 W. g( o) }& F% X
8 Q7 @) l- `, b) N 页面编号 D D》numeange / g6 t0 ~7 q" K! w+ j
, a* d( m7 Y# [7 \$ x, n - 逻辑非,“A-B”表示包含A没有B的网页 5 y4 ~+ o7 w; O6 n- g3 u
% [# o. Q& g# l+ N5 e *代表单个字符 ' i% e* Z% i% V) ]3 u
( y# X" Y# c5 }" K5 _7 ]" O or操作
3 g9 \+ ^ [2 Y9 l5 X( [. \
+ a0 g7 i4 [% n* |* p “”用短语做关键字,必须加上引号,不然会被当作与操作 - ?5 z) m1 t; e4 j% J% {
4 X! D7 p0 m+ a$ {, \ 。空格 0 e" H* k% b) b V8 R- N! n
2 p; S. X% x3 ?% M Google对一些网路上出现频率极高的英文单词,如“i”、“com”、“www”等,以及一些符号如“*”、“。”等,作忽略处理
8 t( f( i0 j! i% g0 D. J
5 O( @. R" B6 F 可以用+强制搜索 ; J& Z- q( t+ ^1 Z6 R+ s- b8 h
: Y% n* j9 U2 W! C) T$ ?: [1 _ 下面的语句是我搜集来的,大家可以试着用下
0 ^3 P7 d; l/ }1 f. O+ K# ?) y ^
& `- N4 G: L' S; C* s+ L 比如用Intitle:welcome.to.iis.4.0 IIS4会找到好多winNT的主机,呵呵
) _& g/ H6 N8 ^* d c" i2 _8 q: n+ M( W# s; e
Site:sohu.com
& z$ Y; }, q" h) S9 b/ P* ]8 W' R. ^# W2 u8 K
Site:sohu.com-site:www.sohu.com ; J' |* O, l& E- ~9 F8 a
) f- E) E+ w" m Intitle:index.of/admin
4 {7 i% T" y6 I, m9 G4 s7 i2 [* Q# B9 k1 k
Intitle:index.of apache server.at & E" G0 D& o1 X- D V: \& \
& U# ^9 i0 L D( C3 B
Intitle:test.page.for.apache “it workd” ) ?, a# o5 H# l' S+ O: A' Z* D
4 I5 @! [' K; d
Allintitle:Netscape Fasr Track Server Home Page * \6 }6 I5 f4 @8 \; r0 t( D
$ B5 N) l9 u3 s2 U2 `7 T Intitle:”welcome to windows 2000 internet services” - F5 N7 R% o/ J1 y! k0 ~4 i
7 _; D- q" M( e9 P% V, c, N IIS—win2000
s4 E, S( M( g7 B( c8 P9 z# D! O! Z0 I6 E* g, ? U
Allintitle:welcome to windows XP server internet
" Y3 n5 o: y# e; }! x. @5 ~/ N( m9 W, l6 A5 m
services iis---XP 3 A* L1 I7 I4 Y7 r* X% U5 R) ^
7 Y2 s4 E( g. {
Intitle:welcome.to.iis.4.0 IIS4 Q$ K8 V; _2 d; `6 C7 s" C
% _! h" ]+ d5 v
Allintrtle:”welcome to internet information server” 5 v' N% W; J1 Q6 F* r& o
, }+ w$ T" `: Y+ c8 a
IIS-- generic & j& R6 e6 h+ m. n! A1 D o
* A/ m+ W9 r# Q! l* S, P Intitle:”apache http server” , g' g& A3 j, P' K0 V. ]8 i; L
1 [( N2 Q& ?: z3 C2 p$ B8 a6 ~
Intitle:”documentation”
/ X0 C4 p2 P5 Z5 F$ s8 B# G$ I, H& g" g8 p& X, Y3 u! }) {% t
Intitle:””error using hypernews””server software” X# h3 I! b7 ?: t b
. g0 f! N0 M' V
“HTTP_USER_AGENT=Googlebot” . ^* }- M$ N3 P, |, e. q
! \: g7 t% m2 O% ]
“HTTP_USER_AGENT=Googlebot”TNS_ADMIN # j3 ~' b* d! t5 x
7 W" L) |: S- T" d# E! c2 @) ~
Inurl:/admin/login.asp 6 J9 j/ }! W6 o
( r4 P( e7 e0 L/ o Intitle:”remote desktop wen connection” $ W( J$ C4 W) ?/ `
+ Y' ]! g* }/ f2 ~) M z “welcome to *” “Your password is *” 7 [/ l* P3 b/ p" e* l* T5 k! |( V
3 d: x: Z L( C% F) S- o' V6 n7 y& b Inurl(browse top_rated power_search hot create_admin_user)+”powered $ a; g5 ]6 R% n7 M, [/ n
5 r. p- U6 n3 D: D. h by inde xu”
( \8 p7 B) p) y; ], [2 h' j# `, E7 j5 f7 y4 b. F O
“adding new user” inurl:addnewuser C“there are no / S4 X, p7 p! B, L
6 A9 w; d$ X# |- G
domain” 1 h* | j4 n* T& x) n# I
: }- G D/ c( \$ `
Filetype:log inurl:”password.log”
. O: }+ t: D7 x; F
( T- L! Y/ @' O- Z* [! l Intitle:”PHP Shell *” “enable stderr” filetype:php
, p4 l' Y, j; c+ Z# ~$ |# S; `# O$ @5 x
Intitle:confixx login password 1 W2 o& `* f4 ^2 B; n3 I3 S( X# X |
. C+ O0 R k6 [* d
“powered by rover”
% U# N5 `: I0 J: |3 ?7 R% n n/ s
Inurl:iisadmpwd
- j# L" I! T' O+ [5 _& d7 d4 ?4 K s) z% \9 e, o+ v+ _
Inurl:5800 ' w2 a! b, K& z$ b$ X
$ k5 b' x; i9 ^( {. F. j7 S/ S5 {+ k1 ~ “VNC desktop” inurl:5800
) ?; G0 q8 B. Y9 f0 W8 k: o a: G. o" n) N; J" A
Inurl:webmin inurl:10000
* J _/ O+ c. C a% a& f0 ?4 _' h7 Y. f+ i* }! C
Inurl:8080 Cintext:8080 2 f+ i7 {+ q4 l" }4 U6 s# p7 S
- d! {7 X5 ]1 ~
“access denird for user” “using password” 5 r/ B# u9 \7 r3 Z
1 F1 p( {/ D+ _
“# Dumping data for table”
! r' q, O- M/ c% V: N3 v! @: u) Y. K) o8 I
“# Dumping data for table” username password
! k7 ~, d% h3 y2 M. q2 @ N; ^% `
“# Dumping data for table & E% {6 q+ H) {# J3 |" v
$ I* f& A- @: [4 u/ _
(username user users password)”
: B1 T( Z7 i4 ]$ |9 [0 M1 A# }" r- S8 Z5 }% M
Inurl:main.php welcome to phpmyadmin 2 v0 @1 Z+ R5 f4 S0 @
+ y( ~ Q8 A0 m7 e, P$ c
Intitle:”phpmyadmin running on *” welcome to phpmyadmin
' U) S% f/ G9 ~# x+ c& H1 C# g! a3 c1 E4 T
Filetype:inc intext:mysql connect 8 f5 x; u# |0 L* @9 o
; u* k+ l* M3 P0 t( S Filetype:sql + “INENTIFIED BY” Ccvs % v& Y8 @: \4 E% ~: I
: n5 T& Q! c6 N1 R# ]
Filetype:sql + “INENTIFIED BY” (“grant * on *” “create 4 e5 z/ E, a, n) B+ c) r3 T) t. T4 t
& P" {5 O+ G. ] user”) , x& K* R {7 |: M0 I+ E
* o2 U5 I2 {- `- g
“this report lists” “identified by internet scaner” 5 ~! k# T2 O' M3 h' |
' J n+ Y8 l% Q, ]6 D1 h ACID “by roman danyliw” Filetype HP 0 j- C% D' q6 g
& q' X4 E( R2 E- M9 b 小提示:用google hacking工具搜索这些,真的是多快好省啊:) ( X7 g9 L9 H" h! F4 _. X1 D
|