来源:[url]http://www.cnsu.org[/url][url]http://www.cnsu.org-->site[/url][url]www.cnsu.org-->inurl[/url]adminàinurl.asp ――》filetype标题――》intitle页面文字――》intext页面编号――》numeange- 逻辑非,“A-B”表示包含A没有B的网页*代表单个字符| or操作“”用短语做关键字,必须加上引号,不然会被当作与操作.空格Google对一些网路上出现频率极高的英文单词,如“i”、“com”、“www”等,以及一些符号如“*”、“.”等,作忽略处理可以用+强制搜索下面的语句是我搜集来的,大家可以试着用下比如用Intitle:welcome.to.iis.4.0 IIS4会找到好多winNT的主机,呵呵Site:sohu.comSite:sohu.com-site:[url]www.sohu.com[/url]Intitle:index.of/adminIntitle:index.of apache server.atIntitle:test.page.for.apache “it workd”Allintitle:Netscape Fasr Track Server Home PageIntitle:”welcome to windows 2000 internet services” IIS—win2000Allintitle:welcome to windows XP server internet services iis---XPIntitle:welcome.to.iis.4.0 IIS4Allintrtle:”welcome to internet information server” IIS-- genericIntitle:”apache http server”Intitle:”documentation”Intitle:””error using hypernews””server software”“HTTP_USER_AGENT=Googlebot”“HTTP_USER_AGENT=Googlebot”TNS_ADMINInurl:/admin/login.aspIntitle:”remote desktop wen connection”“welcome to *” “Your password is *”Inurl(browse|top_rated|power_search|hot|create_admin_user)+”powered by inde xu”“adding new user” inurl:addnewuser –“there are no domain”Filetype:log inurl:”password.log”Intitle:”PHP Shell *” “enable stderr” filetype:phpIntitle:confixx login password“powered by rover”Inurl:iisadmpwdInurl:5800“VNC desktop” inurl:5800Inurl:webmin inurl:10000Inurl:8080 –intext:8080“access denird for user” “using password”“# Dumping data for table”“# Dumping data for table” username password“# Dumping data for table (username|user|users|password)”Inurl:main.php welcome to phpmyadminIntitle:”phpmyadmin running on *” welcome to phpmyadminFiletype:inc intext:mysql connectFiletype:sql + “INENTIFIED BY” –cvsFiletype:sql + “INENTIFIED BY” (“grant * on *” | “create user”)“this report lists” “identified by internet scaner”ACID “by roman danyliw” Filetype:PHP小提示:用google hacking工具搜索这些,真的是多快好省啊:)
本文转自loveme2351CTO博客,原文链接:http://blog.51cto.com/loveme23/8560 ,如需转载请自行联系原作者