online marketing
 
User contribution
An Introduction. Google ( http://www.google.com ), can give lots of info to a hacker ( educational reasons ) , to download files etc. The reason is cause google has lots of options on its search engine.

Google search options.
Filetype: We can search for specific files ex. *.xls, *.doc, *.pdf, *.ps, *.ppt, *.rtf, *.db, *.mdb, *.cfg, *.pwd, *.dat , etc.
usage ex.: Filetype:xls "pass"

Inurl: We can specify a word, and it will return us all urls
which contains the word - usage ex.: inurl:admin

"Index of": We can find directory listings of specific folders
on servers-usage ex.: "index of" admin or index.of.admin

Site: We can find specific sites (domain names) ex. *.com, *.org,
*.mi, *.gov, etc. - usage ex.: site:gov or site:gov "cyprus"
Intitle: We can find specific urls with a specific title - usage
ex.: intitle:brosteam
Link: Allows us to check which site links to a specific site -
usage ex.: link:brosteam

Hacking and stealing info. By combining these options, we can get lots of infos and to steal files etc. Lets see some examples and how to. Try searching for:

* inurl:gov filetype:xls "restricted" (will return all goverment sites with excel files with the name "restricted")

* inurl:admin.cfg (admin.cfg, most of times is an admin configuration file. It may be as admin.cfg or config.cfg or setup.cfg . These files contain sensitive informations).

* Webadmin: This is a small software that many admins use for editing their sites and uploading files remotely. The main page for the webadmin control centre is called webeditor.php (more infos and to download at http://wacker-welt.de/webadmin/ ). So, we search for webeditor.php ex. inurl:webeditor.php (if the admin failed to protect these pages, we can gain full
access). The upload file usally is file_upload.php, so we can directly search for this file ex. inurl:file_upload.php).

* Content Manager Systems: Are softwares that allows the webmaster to edit, alter and control the content of his site. Those kind uses online control panels usually named cms.html, panel.html or control.cfg. Just use the inurl option.

* Frontpage Server Extensions HTML Administration Forms: Users with access to these forms, are able to
* perform a number of administrative functions remotely. The main page of these forms, is fpadmin.htm. When a default install is performed, the files are located in admin directory. So, we can search for ex. inurl:fpadmin.htm "index of" admin or inurl:admin/fpadmin.htm . HMTL Administration Forms are not active when first installed, so u might not be able to perform any administrative functions.
Also try "# -FrontPage-" inurl:service.pwd

* Freesco Router: Is a software for linux which, by default, installs a web browser, which allows owners to control the router through the http protocol. The default
password and login for this control panel is admin
* and admin . Lots of people dont know this, so we search ex. intitle:"freesco control panel"or"intitle:check the connection".

* intitle:"Index of" passwords modified

* allinurl:auth_user_file.txt

* "access denied for user" "using password"

* "A syntax error has occurred" filetype:ihtml

* allinurl: admin mdb

* "ORA-00921: unexpected end of SQL command"

* inurlasslist.txt

* "Index of /backup"

* "Chatologica MetaSearch" "stack tracking:"

* Amex Numbers: 300000000000000..399999999999999
MC Numbers: 5178000000000000..5178999999999999
visa 4356000000000000..4356999999999999

* "parent directory " /appz/ -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
* "parent directory " DVDRip -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
* "parent directory "Xvid -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
* "parent directory " Gamez -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
* "parent directory " MP3 -xxx -html -htm -php -shtml -opendivx -md5 -md5sums
* "parent directory " Name of Singer or album -xxx -html -htm -php -shtml -opendivx -md5 -md5sums

* inurl:microsoft filetype:iso You can change the string to whatever you want, ex. microsoft to adobe, i so to zipetc.

* "AutoCreate=TRUE password=*" This searches the password for "Website Access Analyzer", a Japanese software that creates webstatistics.
For those who can read Japanese, check out the author's site at: http://www.coara.or.jp/~passy/

* http://www.google.com/search?hl=en&lr=&ie=UTF-
8&c2coff=1&q=%22http%3A%2F%2F*%3A*@www%22+domainname This is a query to get inline passwords from search engines (not just Google), you must type in the query followed with the the domain name without the .com or .net

* Another way is by just typing http://www.google.com/search?hl=en&lr=&ie=UTF-
8&c2coff=1&q=%22http%3A%2F%2FGeorge%3AGeorge@www%22

* "sets mode: +k" This search reveals channel keys (passwords) on IRC as revealed from IRC chat logs.

* allinurl: admin mdb Not all of these pages are administrator's access databases containing usernames passwords and other sensitive information, but many are!

* allinurl:auth_user_file.txt
DCForum's password file. This file gives a list of (crackable) passwords, usernames and email addresses for DCForum and for DCShop (a shopping cart program.

* intitle:"Index of" config.php
This search brings up sites with "config.php" files. To skip the technical discussion, this configuration file
* contains both a username and a password for an SQL database.
Most sites with forums run a PHP message base. This file gives you the keys to that forum, including FULL ADMIN access to the database.

* eggdrop filetype:user user
These are eggdrop config files. Avoiding a full-blown descussion about eggdrops and IRC bots, suffice it to say that this file contains usernames and passwords for IRC
users.

* intitle:index.of.etc
This search gets you access to the etc directory, where many many many types of password files can be found. This link is not as reliable, but crawling etc directories can be really fun!

* filetype:bak inurl:"htaccess|passwd|shadow|htusers"
This will search for backup files (*.bak) created by some editors or even by the administrator himself (before activating a new version). Every attacker knows that changing the extenstion of a file on a webserver can have ugly consequences.

* Let's pretend you need a serial number. T o find the serial for Adobe Photoshop - "Adobe Photoshop" 94FBR

* ?intitle:index.of? mp3 You only need add the name of the
song/artist/singer. Example: ?intitle:index.of? mp3 eminem

General notes.

1. Try searching for strings in different languages.
2. Learn more about different softwares that webmasters use, find important files and search for.
3. U can find different vulnerabilities (ex. by taking the list of a vulnerabilitie scanner or by checking the net)
and combine them
with ur strings or to get new ideas for strings to search for.
 
Comments (0)

 

Page :
  • 1

In order to post comments you must be logged in. You will be forwarded automatically to the feature you were trying to access.



If you do not have an account yet, you can register to the MYM Community in less than one minute.
Registering won't only allow you to read the latest coverage on current events, but also give you the oportunity to take part in an uprising gaming community and meet new people, aswell as new friends.Register now and be a part of the MeetYourMakers community.

Other Contributions :
  Title Date Author C Views
Blog  AFK 27.07 07:42.am Sayuri- 4 167
Tutorial  WCG China LIVE Update li<x>nk 23.07 09:48.am Danny89 0 11
Guide  Ko the nao hieu noi =)) 13.06 09:15.pm __777_ 0 49
Blog  MYM no longer esports royalty.. 23.05 02:46.am Sun_Seeker 46 1995
Blog  23.05 02:46.am Sun_Seeker 0 21
Columns  Hunter_ shady much? 14.05 01:25.am SainStar 5 340
Blog  MrOw going afk...ish 13.05 06:10.am MrOw 11 1105
Blog  Defense of the Ancients. 10.05 03:14.am hUmtYdUMtY 6 1433
Article  StarCraft II in Stores July 27 04.05 04:55.am Danny89 7 524
Article  DotA idol Mark talks about his time spent in China and how dota should be played for fun, and not fo 25.04 01:53.pm SSSSpanky 1 145
Blog  Money makes a difference 15.04 03:29.pm Siemys 3 898
Blog  BRING BACK MYM PRIME DEFENDING ! 15.04 11:38.am baked-dude 0 98
Article  Top10 DotA Weekly [SK.Exia_CN] 10.04 10:34.pm matthe 3 2058
Article  SOUTH PARK on FACEBOOK, how true.. 09.04 08:46.am Danny89 6 1138
Article  GoldenArch Designs. 07.04 03:34.am iCottoN 0 256
Article  ESL TV Retro: ENC.WC3 GER vs. DEN 06.04 07:00.pm pre 2 349
Article  DotA Valve, First pictures/release date 01.04 03:11.pm matthe 12 1420
Blog  Colossus 26.03 04:18.pm Mirhi 3 421
Article  Hitler's DotA team PARODY Video! 24.03 07:02.pm Danny89 13 879
Article  So Pro - You want fishdicks? 12.03 04:59.pm M1sio 5 433
  Legend : Article Blog Column Guide Tutorial

  You must be logged in to contribute.
 
Profile
'lolxxx26297'
From : mk Macedonia, the Former Yugoslav Republic of
Age : 2010 years old
 
Picture
lolxxx26297
 
User Contribution
The information posted on this space is provided "AS IS" with no warranties, and confers no rights. The opinion of the author does not necessarily represent the opinion of MeetYourMakers.
 
Sponsored by
 
Supported by
 
Statistics
Registered
Users: 1306724
Teams: 6576
Online
Guests: 2528
Members: 24
 
Advertising
about us | imprint | rss feeds | support | contact