Advertisement
AndrewHaxalot

Exploiter Admin Control Page Finder

Oct 14th, 2013
170
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Perl 26.74 KB | None | 0 0
  1. #!usr/bin/perl
  2. ##########################################
  3. # FiveSec Team Brazil
  4. # site    http://fivesec-team.zz.mu
  5. # Page fb https://www.facebook.com/Fiv3Sec
  6. #Exploiter Admin Controll page finder
  7. #coder by dbturok
  8. #AdminPageFinder -> ADF.pl v1.2
  9. #Skype dbturok.troll
  10. # fb/dbturok.troll
  11. # fb/dbturok.fawkes.5
  12. # fb/FiveSec
  13. #greetz lwks,Orion,kodiak,Gh0st Hack3r,articos,DownBffo,
  14. #########################################
  15. use HTTP::Request;use LWP::UserAgent;use Net::Ping;
  16. #Clear monitor
  17. scan:;
  18. $sis="$^O";if ($sis eq linux){ $cmd="clear"; } else { $cmd="cls"; }
  19.  system("$cmd");
  20. system("color 0A");
  21.  
  22.         print "\n";
  23.         print "#---------------------------------------------------------------#\n";
  24.         print "# FiveSec Team Brazil | www.facebook.com/Fiv3Sec                #\n";
  25.         print "# Coded By dbturok Fawkes                                       #\n";
  26.         print "# AdFinder V 1.2                                     #\n";
  27.         print "# Greetz Lwks,DownBffo,Gh0st Hack3r,Kodiak,Articos,Orion        #\n";
  28.         print "#---------------------------------------------------------------#\n\n";
  29.        
  30.     print" Entre com o site para scan: \n";
  31.     print" Ex: www.site.com\n";
  32.     print" target: ";
  33.     $host=<STDIN>;
  34.     $timeout = 10;
  35.     chomp $host;
  36.    
  37.     if ($cont = $host){&Continuar}
  38.    
  39. sub Continuar{
  40.     print"\n";
  41.     print " Enter site source code:\n";
  42.     print " 1 = ASP\n";
  43.     print " 2 = CFM\n";
  44.     print " 3 = PHP\n";
  45.     print " 4 = JS\n";
  46.     print " 5 = CGI\n";
  47.     print " 6 = BRF\n";
  48.     print "\n Press 1 and 'Enter key' for Select ASP\n";
  49.     print" option:  ";
  50.     $cod=<STDIN>;
  51.     chomp($cod);
  52.  
  53. if ( $host !~ /^http:/ ) {
  54. $host = 'http://' . $host;
  55. }
  56. if ( $host !~ /\/$/ ) {
  57. $host = $host . '/';
  58. }
  59.     print "\n";
  60.     print "  [+] Host: $host\n";
  61.    
  62. if($cod eq "1"){
  63. @asp=(
  64. 'admin',
  65. 'administrator',
  66. 'admin1',
  67. 'admin2',
  68. 'admin3',
  69. 'admin4',
  70. 'admin5',
  71. 'moderator',
  72. 'webadmin',
  73. 'adminarea',
  74. 'bb-admin',
  75. 'adminLogin',
  76. 'admin_area',
  77. 'panel-administracion',
  78. 'instadmin',
  79. 'memberadmin',
  80. 'administratorlogin',
  81. 'adm',
  82. 'account.asp',
  83. 'admin/account.asp',
  84. 'admin/index.asp',
  85. 'admin/login.asp',
  86. 'admin/admin.asp',
  87. 'admin_area/admin.asp',
  88. 'admin_area/login.asp',
  89. 'admin/account.html',
  90. 'admin/index.html',
  91. 'admin/login.html',
  92. 'admin/admin.html',
  93. 'admin_area/admin.html',
  94. 'admin_area/login.html',
  95. 'admin_area/index.html',
  96. 'admin_area/index.asp',
  97. 'bb-admin/index.asp',
  98. 'bb-admin/login.asp',
  99. 'bb-admin/admin.asp',
  100. 'bb-admin/index.html',
  101. 'bb-admin/login.html',
  102. 'bb-admin/admin.html',
  103. 'admin/home.html',
  104. 'admin/controlpanel.html',
  105. 'admin.html',
  106. 'admin/cp.html',
  107. 'cp.html',
  108. 'administrator/index.html',
  109. 'administrator/login.html',
  110. 'administrator/account.html',
  111. 'administrator.html',
  112. 'login.html',
  113. 'modelsearch/login.html',
  114. 'moderator.html',
  115. 'moderator/login.html',
  116. 'moderator/admin.html',
  117. 'account.html',
  118. 'controlpanel.html',
  119. 'admincontrol.html',
  120. 'admin_login.html',
  121. 'panel-administracion/login.html',
  122. 'admin/home.asp',
  123. 'admin/controlpanel.asp',
  124. 'admin.asp',
  125. 'pages/admin/admin-login.asp',
  126. 'admin/admin-login.asp',
  127. 'admin-login.asp',
  128. 'admin/cp.asp',
  129. 'cp.asp',
  130. 'administrator/account.asp',
  131. 'administrator.asp',
  132. 'acceso.asp',
  133. 'login.asp',
  134. 'modelsearch/login.asp',
  135. 'moderator.asp',
  136. 'moderator/login.asp',
  137. 'administrator/login.asp',
  138. 'moderator/admin.asp',
  139. 'controlpanel.asp',
  140. 'admin/account.html',
  141. 'adminpanel.html',
  142. 'webadmin.html',
  143. 'pages/admin/admin-login.html',
  144. 'admin/admin-login.html',
  145. 'webadmin/index.html',
  146. 'webadmin/admin.html',
  147. 'webadmin/login.html',
  148. 'user.asp',
  149. 'user.html',
  150. 'admincp/index.asp',
  151. 'admincp/login.asp',
  152. 'admincp/index.html',
  153. 'admin/adminLogin.html',
  154. 'adminLogin.html',
  155. 'admin/adminLogin.html',
  156. 'home.html',
  157. 'adminarea/index.html',
  158. 'adminarea/admin.html',
  159. 'adminarea/login.html',
  160. 'panel-administracion/index.html',
  161. 'panel-administracion/admin.html',
  162. 'modelsearch/index.html',
  163. 'modelsearch/admin.html',
  164. 'admin/admin_login.html',
  165. 'admincontrol/login.html',
  166. 'adm/index.html',
  167. 'adm.html',
  168. 'admincontrol.asp',
  169. 'admin/account.asp',
  170. 'adminpanel.asp',
  171. 'webadmin.asp',
  172. 'webadmin/index.asp',
  173. 'webadmin/admin.asp',
  174. 'webadmin/login.asp',
  175. 'admin/admin_login.asp',
  176. 'admin_login.asp',
  177. 'panel-administracion/login.asp',
  178. 'adminLogin.asp',
  179. 'admin/adminLogin.asp',
  180. 'home.asp',
  181. 'admin.asp',
  182. 'adminarea/index.asp',
  183. 'adminarea/admin.asp',
  184. 'adminarea/login.asp',
  185. 'admin-login.html',
  186. 'panel-administracion/index.asp',
  187. 'panel-administracion/admin.asp',
  188. 'modelsearch/index.asp',
  189. 'modelsearch/admin.asp',
  190. 'administrator/index.asp',
  191. 'admincontrol/login.asp',
  192. 'adm/admloginuser.asp',
  193. 'admloginuser.asp',
  194. 'admin2.asp',
  195. 'admin2/login.asp',
  196. 'admin2/index.asp',
  197. 'adm/index.asp',
  198. 'adm.asp',
  199. 'affiliate.asp',
  200. 'adm_auth.asp',
  201. 'memberadmin.asp',
  202. 'administratorlogin.asp',
  203. 'siteadmin/login.asp',
  204. 'siteadmin/index.asp',
  205. 'siteadmin/login.html',
  206. 'site/test/login.asp',
  207. 'test/admin/login.asp',
  208. '/site/sistemas/');
  209.  
  210.  
  211. my $pos = @asp;
  212. print "     Loaded $pos possibilidades\n\n";
  213. print "     Press Enter To Continue...\n";
  214. <STDIN>;
  215.  
  216. foreach $ways(@asp){
  217.  
  218. $final=$host.$ways;
  219.  
  220. my $req=HTTP::Request->new(GET=>$final);
  221. my $ua=LWP::UserAgent->new();
  222. $ua->timeout(30);
  223. my $response=$ua->request($req);
  224.  
  225. if($response->content =~ /Username/ ||
  226. $response->content =~ /Password/ ||
  227. $response->content =~ /username/ ||
  228. $response->content =~ /password/ ||
  229. $response->content =~ /USERNAME/ ||
  230. $response->content =~ /PASSWORD/ ||
  231. $response->content =~ /Senha/ ||
  232. $response->content =~ /senha/ ||
  233. $response->content =~ /Personal/ ||
  234. $response->content =~ /Usuario/ ||
  235. $response->content =~ /Clave/ ||
  236. $response->content =~ /Usager/ ||
  237. $response->content =~ /usager/ ||
  238. $response->content =~ /Sing/ ||
  239. $response->content =~ /passe/ ||
  240. $response->content =~ /P\/W/ ||
  241. $response->content =~ /Admin Password/
  242.  
  243. ){
  244.  
  245.  
  246. print "    [+] Found -> $final\n";
  247.  
  248.  
  249. }
  250.     }
  251. }
  252.  
  253.  
  254.  
  255. if($cod eq "2"){
  256.  
  257. @cfm=(
  258. 'admin',
  259. 'administrator',
  260. 'admin1',
  261. 'admin2',
  262. 'admin3',
  263. 'admin4',
  264. 'admin5',
  265. 'usuarios',
  266. 'usuario',
  267. 'administrator',
  268. 'moderator',
  269. 'webadmin',
  270. 'adminarea',
  271. 'bb-admin',
  272. 'adminLogin',
  273. 'admin_area',
  274. 'panel-administracion',
  275. 'instadmin',
  276. 'memberadmin',
  277. 'administratorlogin',
  278. 'adm',
  279. 'admin/account.cfm',
  280. 'admin/index.cfm',
  281. 'admin/login.cfm',
  282. 'admin/admin.cfm',
  283. 'admin/account.cfm',
  284. 'admin_area/admin.cfm',
  285. 'admin_area/login.cfm',
  286. 'siteadmin/login.cfm',
  287. 'siteadmin/index.cfm',
  288. 'siteadmin/login.html',
  289. 'admin/account.html',
  290. 'admin/index.html',
  291. 'admin/login.html',
  292. 'admin/admin.html',
  293. 'admin_area/index.cfm',
  294. 'bb-admin/index.cfm',
  295. 'bb-admin/login.cfm',
  296. 'bb-admin/admin.cfm',
  297. 'admin/home.cfm',
  298. 'admin_area/login.html',
  299. 'admin_area/index.html',
  300. 'admin/controlpanel.cfm',
  301. 'admin.cfm',
  302. 'admincp/index.asp',
  303. 'admincp/login.asp',
  304. 'admincp/index.html',
  305. 'admin/account.html',
  306. 'adminpanel.html',
  307. 'webadmin.html',
  308. 'webadmin/index.html',
  309. 'webadmin/admin.html',
  310. 'webadmin/login.html',
  311. 'admin/admin_login.html',
  312. 'admin_login.html',
  313. 'panel-administracion/login.html',
  314. 'admin/cp.cfm',
  315. 'cp.cfm',
  316. 'administrator/index.cfm',
  317. 'administrator/login.cfm',
  318. 'nsw/admin/login.cfm',
  319. 'webadmin/login.cfm',
  320. 'admin/admin_login.cfm',
  321. 'admin_login.cfm',
  322. 'administrator/account.cfm',
  323. 'administrator.cfm',
  324. 'admin_area/admin.html',
  325. 'pages/admin/admin-login.cfm',
  326. 'admin/admin-login.cfm',
  327. 'admin-login.cfm',
  328. 'bb-admin/index.html',
  329. 'bb-admin/login.html',
  330. 'bb-admin/admin.html',
  331. 'admin/home.html',
  332. 'login.cfm',
  333. 'modelsearch/login.cfm',
  334. 'moderator.cfm',
  335. 'moderator/login.cfm',
  336. 'moderator/admin.cfm',
  337. 'account.cfm',
  338. 'pages/admin/admin-login.html',
  339. 'admin/admin-login.html',
  340. 'admin-login.html',
  341. 'controlpanel.cfm',
  342. 'admincontrol.cfm',
  343. 'admin/adminLogin.html',
  344. 'acceso.cfm',
  345. 'adminLogin.html',
  346. 'admin/adminLogin.html',
  347. 'home.html',
  348. 'rcjakar/admin/login.cfm',
  349. 'adminarea/index.html',
  350. 'adminarea/admin.html',
  351. 'webadmin.cfm',
  352. 'webadmin/index.cfm',
  353. 'webadmin/admin.cfm',
  354. 'admin/controlpanel.html',
  355. 'admin.html',
  356. 'admin/cp.html',
  357. 'cp.html',
  358. 'adminpanel.cfm',
  359. 'moderator.html',
  360. 'administrator/index.html',
  361. 'administrator/login.html',
  362. 'user.html',
  363. 'administrator/account.html',
  364. 'administrator.html',
  365. 'login.html',
  366. 'modelsearch/login.html',
  367. 'moderator/login.html',
  368. 'adminarea/login.html',
  369. 'panel-administracion/index.html',
  370. 'panel-administracion/admin.html',
  371. 'modelsearch/index.html',
  372. 'modelsearch/admin.html',
  373. 'admincontrol/login.html',
  374. 'adm/index.html',
  375. 'adm.html'.
  376. 'moderator/admin.html',
  377. 'user.cfm',
  378. 'account.html',
  379. 'controlpanel.html',
  380. 'admincontrol.html',
  381. 'panel-administracion/login.cfm',
  382. 'wp-login.cfm',
  383. 'adminLogin.cfm',
  384. 'admin/adminLogin.cfm',
  385. 'home.cfm',
  386. 'admin.cfm',
  387. 'adminarea/index.cfm',
  388. 'adminarea/admin.cfm',
  389. 'adminarea/login.cfm',
  390. 'panel-administracion/index.cfm',
  391. 'panel-administracion/admin.cfm',
  392. 'modelsearch/index.cfm',
  393. 'modelsearch/admin.cfm',
  394. 'admincontrol/login.cfm',
  395. 'adm/admloginuser.cfm',
  396. 'admloginuser.cfm',
  397. 'admin2.cfm',
  398. 'admin2/login.cfm',
  399. 'admin2/index.cfm',
  400. 'usuarios/login.cfm',
  401. 'adm/index.cfm',
  402. 'adm.cfm',
  403. 'affiliate.cfm',
  404. 'adm_auth.cfm',
  405. 'memberadmin.cfm',
  406. 'administratorlogin.cfm',
  407. '/site/sistemas/');
  408.  
  409.  
  410. my $pos = @cfm;
  411. print "     Loaded $pos possibilidades\n\n";
  412. print "     Press Enter To Continue...\n";
  413. <STDIN>;
  414. foreach $ways(@cfm){
  415.  
  416. $final=$host.$ways;
  417.  
  418. my $req=HTTP::Request->new(GET=>$final);
  419. my $ua=LWP::UserAgent->new();
  420. $ua->timeout(30);
  421. my $response=$ua->request($req);
  422.  
  423. if($response->content =~ /Username/ ||
  424. $response->content =~ /Password/ ||
  425. $response->content =~ /username/ ||
  426. $response->content =~ /password/ ||
  427. $response->content =~ /USERNAME/ ||
  428. $response->content =~ /PASSWORD/ ||
  429. $response->content =~ /Senha/ ||
  430. $response->content =~ /senha/ ||
  431. $response->content =~ /Personal/ ||
  432. $response->content =~ /Usuario/ ||
  433. $response->content =~ /Clave/ ||
  434. $response->content =~ /Usager/ ||
  435. $response->content =~ /usager/ ||
  436. $response->content =~ /Sing/ ||
  437. $response->content =~ /passe/ ||
  438. $response->content =~ /P\/W/ ||
  439. $response->content =~ /Admin Password/
  440. ){
  441. print "    [+] Found -> $final\n";
  442.         }
  443.     }
  444. }
  445.  
  446.  
  447.  
  448. if($cod eq "3"){
  449.  
  450. @php=(
  451. 'admin',
  452. 'administrator',
  453. 'admin1',
  454. 'admin2',
  455. 'admin3',
  456. 'admin4',
  457. 'admin5',
  458. 'usuarios',
  459. 'usuario',
  460. 'administrator',
  461. 'moderator',
  462. 'webadmin',
  463. 'adminarea',
  464. 'bb-admin',
  465. 'adminLogin',
  466. 'admin_area',
  467. 'panel-administracion',
  468. 'instadmin',
  469. 'memberadmin',
  470. 'administratorlogin',
  471. 'adm',
  472. 'admin/account.php',
  473. 'admin/index.php',
  474. 'admin/login.php',
  475. 'admin/admin.php',
  476. 'admin/account.php',
  477. 'admin_area/admin.php',
  478. 'admin_area/login.php',
  479. 'siteadmin/login.php',
  480. 'siteadmin/index.php',
  481. 'siteadmin/login.html',
  482. 'admin/account.html',
  483. 'admin/index.html',
  484. 'admin/login.html',
  485. 'admin/admin.html',
  486. 'admin_area/index.php',
  487. 'bb-admin/index.php',
  488. 'bb-admin/login.php',
  489. 'bb-admin/admin.php',
  490. 'admin/home.php',
  491. 'admin_area/login.html',
  492. 'admin_area/index.html',
  493. 'admin/controlpanel.php',
  494. 'admin.php',
  495. 'admincp/index.asp',
  496. 'admincp/login.asp',
  497. 'admincp/index.html',
  498. 'admin/account.html',
  499. 'adminpanel.html',
  500. 'webadmin.html',
  501. 'webadmin/index.html',
  502. 'webadmin/admin.html',
  503. 'webadmin/login.html',
  504. 'admin/admin_login.html',
  505. 'admin_login.html',
  506. 'panel-administracion/login.html',
  507. 'admin/cp.php',
  508. 'cp.php',
  509. 'administrator/index.php',
  510. 'administrator/login.php',
  511. 'nsw/admin/login.php',
  512. 'webadmin/login.php',
  513. 'admin/admin_login.php',
  514. 'admin_login.php',
  515. 'administrator/account.php',
  516. 'administrator.php',
  517. 'admin_area/admin.html',
  518. 'pages/admin/admin-login.php',
  519. 'admin/admin-login.php',
  520. 'admin-login.php',
  521. 'bb-admin/index.html',
  522. 'bb-admin/login.html',
  523. 'acceso.php',
  524. 'bb-admin/admin.html',
  525. 'admin/home.html',
  526. 'login.php',
  527. 'modelsearch/login.php',
  528. 'moderator.php',
  529. 'moderator/login.php',
  530. 'moderator/admin.php',
  531. 'account.php',
  532. 'pages/admin/admin-login.html',
  533. 'admin/admin-login.html',
  534. 'admin-login.html',
  535. 'controlpanel.php',
  536. 'admincontrol.php',
  537. 'admin/adminLogin.html',
  538. 'adminLogin.html',
  539. 'admin/adminLogin.html',
  540. 'home.html',
  541. 'rcjakar/admin/login.php',
  542. 'adminarea/index.html',
  543. 'adminarea/admin.html',
  544. 'webadmin.php',
  545. 'webadmin/index.php',
  546. 'webadmin/admin.php',
  547. 'admin/controlpanel.html',
  548. 'admin.html',
  549. 'admin/cp.html',
  550. 'cp.html',
  551. 'adminpanel.php',
  552. 'moderator.html',
  553. 'administrator/index.html',
  554. 'administrator/login.html',
  555. 'user.html',
  556. 'administrator/account.html',
  557. 'administrator.html',
  558. 'login.html',
  559. 'modelsearch/login.html',
  560. 'moderator/login.html',
  561. 'adminarea/login.html',
  562. 'panel-administracion/index.html',
  563. 'panel-administracion/admin.html',
  564. 'modelsearch/index.html',
  565. 'modelsearch/admin.html',
  566. 'admincontrol/login.html',
  567. 'adm/index.html',
  568. 'adm.html',
  569. 'moderator/admin.html',
  570. 'user.php',
  571. 'account.html',
  572. 'controlpanel.html',
  573. 'admincontrol.html',
  574. 'panel-administracion/login.php',
  575. 'wp-login.php',
  576. 'adminLogin.php',
  577. 'admin/adminLogin.php',
  578. 'home.php',
  579. 'admin.php',
  580. 'adminarea/index.php',
  581. 'admin/admin/index.php',
  582. 'adminarea/admin.php',
  583. 'adminarea/login.php',
  584. 'panel-administracion/index.php',
  585. 'panel-administracion/admin.php',
  586. 'modelsearch/index.php',
  587. 'modelsearch/admin.php',
  588. 'admincontrol/login.php',
  589. 'adm/admloginuser.php',
  590. 'admloginuser.php',
  591. 'admin2.php',
  592. 'admin2/login.php',
  593. 'admin2/index.php',
  594. 'usuarios/login.php',
  595. 'adm/index.php',
  596. 'adm.php',
  597. 'affiliate.php',
  598. 'adm_auth.php',
  599. 'memberadmin.php',
  600. 'administratorlogin.php',
  601. '/site/sistemas/');
  602.  
  603.  
  604. my $pos = @php;
  605. print "     Loaded $pos possibilidades\n\n";
  606. print "     Press Enter To Continue...\n";
  607. <STDIN>;
  608. foreach $ways(@php){
  609.  
  610. $final=$host.$ways;
  611.  
  612. my $req=HTTP::Request->new(GET=>$final);
  613. my $ua=LWP::UserAgent->new();
  614. $ua->timeout(30);
  615. my $response=$ua->request($req);
  616.  
  617. if($response->content =~ /Username/ ||
  618. $response->content =~ /Password/ ||
  619. $response->content =~ /username/ ||
  620. $response->content =~ /password/ ||
  621. $response->content =~ /USERNAME/ ||
  622. $response->content =~ /PASSWORD/ ||
  623. $response->content =~ /Senha/ ||
  624. $response->content =~ /senha/ ||
  625. $response->content =~ /Personal/ ||
  626. $response->content =~ /Usuario/ ||
  627. $response->content =~ /Clave/ ||
  628. $response->content =~ /Usager/ ||
  629. $response->content =~ /usager/ ||
  630. $response->content =~ /Sing/ ||
  631. $response->content =~ /passe/ ||
  632. $response->content =~ /P\/W/ ||
  633. $response->content =~ /Admin Password/
  634. ){
  635. print "    [+] Found -> $final\n";
  636.         }
  637.     }
  638. }
  639. if($cod eq "4"){
  640.  
  641. @js=(
  642. 'admin',
  643. 'administrator',
  644. 'admin1',
  645. 'admin2',
  646. 'admin3',
  647. 'admin4',
  648. 'admin5',
  649. 'usuarios',
  650. 'usuario',
  651. 'administrator',
  652. 'moderator',
  653. 'webadmin',
  654. 'adminarea',
  655. 'bb-admin',
  656. 'adminLogin',
  657. 'admin_area',
  658. 'panel-administracion',
  659. 'instadmin',
  660. 'memberadmin',
  661. 'administratorlogin',
  662. 'adm',
  663. 'admin/account.js',
  664. 'admin/index.js',
  665. 'admin/login.js',
  666. 'admin/admin.js',
  667. 'admin/account.js',
  668. 'admin_area/admin.js',
  669. 'admin_area/login.js',
  670. 'siteadmin/login.js',
  671. 'siteadmin/index.js',
  672. 'siteadmin/login.html',
  673. 'admin/account.html',
  674. 'admin/index.html',
  675. 'admin/login.html',
  676. 'admin/admin.html',
  677. 'admin_area/index.js',
  678. 'bb-admin/index.js',
  679. 'bb-admin/login.js',
  680. 'bb-admin/admin.js',
  681. 'admin/home.js',
  682. 'admin_area/login.html',
  683. 'admin_area/index.html',
  684. 'admin/controlpanel.js',
  685. 'admin.js',
  686. 'admincp/index.asp',
  687. 'admincp/login.asp',
  688. 'admincp/index.html',
  689. 'admin/account.html',
  690. 'adminpanel.html',
  691. 'webadmin.html',
  692. 'webadmin/index.html',
  693. 'webadmin/admin.html',
  694. 'webadmin/login.html',
  695. 'admin/admin_login.html',
  696. 'admin_login.html',
  697. 'panel-administracion/login.html',
  698. 'admin/cp.js',
  699. 'cp.js',
  700. 'administrator/index.js',
  701. 'administrator/login.js',
  702. 'nsw/admin/login.js',
  703. 'webadmin/login.js',
  704. 'admin/admin_login.js',
  705. 'admin_login.js',
  706. 'administrator/account.js',
  707. 'administrator.js',
  708. 'admin_area/admin.html',
  709. 'pages/admin/admin-login.js',
  710. 'admin/admin-login.js',
  711. 'admin-login.js',
  712. 'bb-admin/index.html',
  713. 'bb-admin/login.html',
  714. 'bb-admin/admin.html',
  715. 'admin/home.html',
  716. 'login.js',
  717. 'modelsearch/login.js',
  718. 'moderator.js',
  719. 'moderator/login.js',
  720. 'moderator/admin.js',
  721. 'account.js',
  722. 'pages/admin/admin-login.html',
  723. 'admin/admin-login.html',
  724. 'admin-login.html',
  725. 'controlpanel.js',
  726. 'admincontrol.js',
  727. 'admin/adminLogin.html',
  728. 'adminLogin.html',
  729. 'admin/adminLogin.html',
  730. 'home.html',
  731. 'rcjakar/admin/login.js',
  732. 'adminarea/index.html',
  733. 'adminarea/admin.html',
  734. 'webadmin.js',
  735. 'webadmin/index.js',
  736. 'acceso.js',
  737. 'webadmin/admin.js',
  738. 'admin/controlpanel.html',
  739. 'admin.html',
  740. 'admin/cp.html',
  741. 'cp.html',
  742. 'adminpanel.js',
  743. 'moderator.html',
  744. 'administrator/index.html',
  745. 'administrator/login.html',
  746. 'user.html',
  747. 'administrator/account.html',
  748. 'administrator.html',
  749. 'login.html',
  750. 'modelsearch/login.html',
  751. 'moderator/login.html',
  752. 'adminarea/login.html',
  753. 'panel-administracion/index.html',
  754. 'panel-administracion/admin.html',
  755. 'modelsearch/index.html',
  756. 'modelsearch/admin.html',
  757. 'admincontrol/login.html',
  758. 'adm/index.html',
  759. 'adm.html',
  760. 'moderator/admin.html',
  761. 'user.js',
  762. 'account.html',
  763. 'controlpanel.html',
  764. 'admincontrol.html',
  765. 'panel-administracion/login.js',
  766. 'wp-login.js',
  767. 'adminLogin.js',
  768. 'admin/adminLogin.js',
  769. 'home.js',
  770. 'admin.js',
  771. 'adminarea/index.js',
  772. 'adminarea/admin.js',
  773. 'adminarea/login.js',
  774. 'panel-administracion/index.js',
  775. 'panel-administracion/admin.js',
  776. 'modelsearch/index.js',
  777. 'modelsearch/admin.js',
  778. 'admincontrol/login.js',
  779. 'adm/admloginuser.js',
  780. 'admloginuser.js',
  781. 'admin2.js',
  782. 'admin2/login.js',
  783. 'admin2/index.js',
  784. 'usuarios/login.js',
  785. 'adm/index.js',
  786. 'adm.js',
  787. 'affiliate.js',
  788. 'adm_auth.js',
  789. 'memberadmin.js',
  790. 'administratorlogin.js',
  791. '/site/sistemas/');
  792.  
  793.  
  794. my $pos = @js;
  795. print "     Loaded $pos possibilidades\n\n";
  796. print "     Press Enter To Continue...\n";
  797. <STDIN>;
  798. foreach $ways(@js){
  799.  
  800. $final=$host.$ways;
  801.  
  802. my $req=HTTP::Request->new(GET=>$final);
  803. my $ua=LWP::UserAgent->new();
  804. $ua->timeout(30);
  805. my $response=$ua->request($req);
  806.  
  807. if($response->content =~ /Username/ ||
  808. $response->content =~ /Password/ ||
  809. $response->content =~ /username/ ||
  810. $response->content =~ /password/ ||
  811. $response->content =~ /USERNAME/ ||
  812. $response->content =~ /PASSWORD/ ||
  813. $response->content =~ /Senha/ ||
  814. $response->content =~ /senha/ ||
  815. $response->content =~ /Personal/ ||
  816. $response->content =~ /Usuario/ ||
  817. $response->content =~ /Clave/ ||
  818. $response->content =~ /Usager/ ||
  819. $response->content =~ /usager/ ||
  820. $response->content =~ /Sing/ ||
  821. $response->content =~ /passe/ ||
  822. $response->content =~ /P\/W/ ||
  823. $response->content =~ /Admin Password/
  824. ){
  825. print "    [+] Found -> $final\n";
  826.         }
  827.     }
  828. }
  829. if($cod eq "5"){
  830.  
  831. @cgi=(
  832. 'admin',
  833. 'administrator',
  834. 'admin1',
  835. 'admin2',
  836. 'admin3',
  837. 'admin4',
  838. 'admin5',
  839. 'usuarios',
  840. 'usuario',
  841. 'administrator',
  842. 'moderator',
  843. 'webadmin',
  844. 'adminarea',
  845. 'bb-admin',
  846. 'adminLogin',
  847. 'admin_area',
  848. 'panel-administracion',
  849. 'instadmin',
  850. 'memberadmin',
  851. 'administratorlogin',
  852. 'adm',
  853. 'admin/account.cgi',
  854. 'admin/index.cgi',
  855. 'admin/login.cgi',
  856. 'admin/admin.cgi',
  857. 'admin/account.cgi',
  858. 'admin_area/admin.cgi',
  859. 'admin_area/login.cgi',
  860. 'siteadmin/login.cgi',
  861. 'siteadmin/index.cgi',
  862. 'siteadmin/login.html',
  863. 'admin/account.html',
  864. 'admin/index.html',
  865. 'admin/login.html',
  866. 'admin/admin.html',
  867. 'admin_area/index.cgi',
  868. 'bb-admin/index.cgi',
  869. 'bb-admin/login.cgi',
  870. 'bb-admin/admin.cgi',
  871. 'admin/home.cgi',
  872. 'admin_area/login.html',
  873. 'admin_area/index.html',
  874. 'admin/controlpanel.cgi',
  875. 'admin.cgi',
  876. 'admincp/index.asp',
  877. 'admincp/login.asp',
  878. 'admincp/index.html',
  879. 'admin/account.html',
  880. 'adminpanel.html',
  881. 'webadmin.html',
  882. 'webadmin/index.html',
  883. 'webadmin/admin.html',
  884. 'webadmin/login.html',
  885. 'admin/admin_login.html',
  886. 'admin_login.html',
  887. 'panel-administracion/login.html',
  888. 'admin/cp.cgi',
  889. 'cp.cgi',
  890. 'administrator/index.cgi',
  891. 'administrator/login.cgi',
  892. 'nsw/admin/login.cgi',
  893. 'webadmin/login.cgi',
  894. 'admin/admin_login.cgi',
  895. 'admin_login.cgi',
  896. 'administrator/account.cgi',
  897. 'administrator.cgi',
  898. 'admin_area/admin.html',
  899. 'pages/admin/admin-login.cgi',
  900. 'admin/admin-login.cgi',
  901. 'admin-login.cgi',
  902. 'bb-admin/index.html',
  903. 'bb-admin/login.html',
  904. 'bb-admin/admin.html',
  905. 'admin/home.html',
  906. 'login.cgi',
  907. 'modelsearch/login.cgi',
  908. 'moderator.cgi',
  909. 'moderator/login.cgi',
  910. 'moderator/admin.cgi',
  911. 'account.cgi',
  912. 'pages/admin/admin-login.html',
  913. 'admin/admin-login.html',
  914. 'admin-login.html',
  915. 'controlpanel.cgi',
  916. 'admincontrol.cgi',
  917. 'admin/adminLogin.html',
  918. 'adminLogin.html',
  919. 'admin/adminLogin.html',
  920. 'home.html',
  921. 'rcjakar/admin/login.cgi',
  922. 'adminarea/index.html',
  923. 'adminarea/admin.html',
  924. 'webadmin.cgi',
  925. 'webadmin/index.cgi',
  926. 'acceso.cgi',
  927. 'webadmin/admin.cgi',
  928. 'admin/controlpanel.html',
  929. 'admin.html',
  930. 'admin/cp.html',
  931. 'cp.html',
  932. 'adminpanel.cgi',
  933. 'moderator.html',
  934. 'administrator/index.html',
  935. 'administrator/login.html',
  936. 'user.html',
  937. 'administrator/account.html',
  938. 'administrator.html',
  939. 'login.html',
  940. 'modelsearch/login.html',
  941. 'moderator/login.html',
  942. 'adminarea/login.html',
  943. 'panel-administracion/index.html',
  944. 'panel-administracion/admin.html',
  945. 'modelsearch/index.html',
  946. 'modelsearch/admin.html',
  947. 'admincontrol/login.html',
  948. 'adm/index.html',
  949. 'adm.html',
  950. 'moderator/admin.html',
  951. 'user.cgi',
  952. 'account.html',
  953. 'controlpanel.html',
  954. 'admincontrol.html',
  955. 'panel-administracion/login.cgi',
  956. 'wp-login.cgi',
  957. 'adminLogin.cgi',
  958. 'admin/adminLogin.cgi',
  959. 'home.cgi',
  960. 'admin.cgi',
  961. 'adminarea/index.cgi',
  962. 'adminarea/admin.cgi',
  963. 'adminarea/login.cgi',
  964. 'panel-administracion/index.cgi',
  965. 'panel-administracion/admin.cgi',
  966. 'modelsearch/index.cgi',
  967. 'modelsearch/admin.cgi',
  968. 'admincontrol/login.cgi',
  969. 'adm/admloginuser.cgi',
  970. 'admloginuser.cgi',
  971. 'admin2.cgi',
  972. 'admin2/login.cgi',
  973. 'admin2/index.cgi',
  974. 'usuarios/login.cgi',
  975. 'adm/index.cgi',
  976. 'adm.cgi',
  977. 'affiliate.cgi',
  978. 'adm_auth.cgi',
  979. 'memberadmin.cgi',
  980. 'administratorlogin.cgi',
  981. '/site/sistemas/');
  982.  
  983.  
  984. my $pos = @cgi;
  985. print "     Loaded $pos possibilidades\n\n";
  986. print "     Press Enter To Continue...\n";
  987. <STDIN>;
  988. foreach $ways(@cgi){
  989.  
  990. $final=$host.$ways;
  991.  
  992. my $req=HTTP::Request->new(GET=>$final);
  993. my $ua=LWP::UserAgent->new();
  994. $ua->timeout(30);
  995. my $response=$ua->request($req);
  996.  
  997. if($response->content =~ /Username/ ||
  998. $response->content =~ /Password/ ||
  999. $response->content =~ /username/ ||
  1000. $response->content =~ /password/ ||
  1001. $response->content =~ /USERNAME/ ||
  1002. $response->content =~ /PASSWORD/ ||
  1003. $response->content =~ /Senha/ ||
  1004. $response->content =~ /senha/ ||
  1005. $response->content =~ /Personal/ ||
  1006. $response->content =~ /Usuario/ ||
  1007. $response->content =~ /Clave/ ||
  1008. $response->content =~ /Usager/ ||
  1009. $response->content =~ /usager/ ||
  1010. $response->content =~ /Sing/ ||
  1011. $response->content =~ /passe/ ||
  1012. $response->content =~ /P\/W/ ||
  1013. $response->content =~ /Admin Password/
  1014. ){
  1015. print "    [+] Found -> $final\n";
  1016.             }
  1017.     }
  1018. }
  1019. if($cod eq "6"){
  1020. @brf=(
  1021. 'admin',
  1022. 'administrator',
  1023. 'admin1',
  1024. 'admin2',
  1025. 'admin3',
  1026. 'admin4',
  1027. 'admin5',
  1028. 'usuarios',
  1029. 'usuario',
  1030. 'administrator',
  1031. 'moderator',
  1032. 'webadmin',
  1033. 'adminarea',
  1034. 'bb-admin',
  1035. 'adminLogin',
  1036. 'admin_area',
  1037. 'panel-administracion',
  1038. 'instadmin',
  1039. 'memberadmin',
  1040. 'administratorlogin',
  1041. 'adm',
  1042. 'admin/account.brf',
  1043. 'admin/index.brf',
  1044. 'admin/login.brf',
  1045. 'admin/admin.brf',
  1046. 'admin/account.brf',
  1047. 'admin_area/admin.brf',
  1048. 'admin_area/login.brf',
  1049. 'siteadmin/login.brf',
  1050. 'siteadmin/index.brf',
  1051. 'siteadmin/login.html',
  1052. 'admin/account.html',
  1053. 'admin/index.html',
  1054. 'admin/login.html',
  1055. 'admin/admin.html',
  1056. 'admin_area/index.brf',
  1057. 'bb-admin/index.brf',
  1058. 'bb-admin/login.brf',
  1059. 'bb-admin/admin.brf',
  1060. 'admin/home.brf',
  1061. 'admin_area/login.html',
  1062. 'admin_area/index.html',
  1063. 'admin/controlpanel.brf',
  1064. 'admin.brf',
  1065. 'admincp/index.asp',
  1066. 'admincp/login.asp',
  1067. 'admincp/index.html',
  1068. 'admin/account.html',
  1069. 'adminpanel.html',
  1070. 'webadmin.html',
  1071. 'webadmin/index.html',
  1072. 'webadmin/admin.html',
  1073. 'webadmin/login.html',
  1074. 'admin/admin_login.html',
  1075. 'admin_login.html',
  1076. 'panel-administracion/login.html',
  1077. 'admin/cp.brf',
  1078. 'cp.brf',
  1079. 'administrator/index.brf',
  1080. 'administrator/login.brf',
  1081. 'nsw/admin/login.brf',
  1082. 'webadmin/login.brfbrf',
  1083. 'admin/admin_login.brf',
  1084. 'admin_login.brf',
  1085. 'administrator/account.brf',
  1086. 'administrator.brf',
  1087. 'acceso.brf',
  1088. 'admin_area/admin.html',
  1089. 'pages/admin/admin-login.brf',
  1090. 'admin/admin-login.brf',
  1091. 'admin-login.brf',
  1092. 'bb-admin/index.html',
  1093. 'bb-admin/login.html',
  1094. 'bb-admin/admin.html',
  1095. 'admin/home.html',
  1096. 'login.brf',
  1097. 'modelsearch/login.brf',
  1098. 'moderator.brf',
  1099. 'moderator/login.brf',
  1100. 'moderator/admin.brf',
  1101. 'account.brf',
  1102. 'pages/admin/admin-login.html',
  1103. 'admin/admin-login.html',
  1104. 'admin-login.html',
  1105. 'controlpanel.brf',
  1106. 'admincontrol.brf',
  1107. 'admin/adminLogin.html',
  1108. 'adminLogin.html',
  1109. 'admin/adminLogin.html',
  1110. 'home.html',
  1111. 'rcjakar/admin/login.brf',
  1112. 'adminarea/index.html',
  1113. 'adminarea/admin.html',
  1114. 'webadmin.brf',
  1115. 'webadmin/index.brf',
  1116. 'webadmin/admin.brf',
  1117. 'admin/controlpanel.html',
  1118. 'admin.html',
  1119. 'admin/cp.html',
  1120. 'cp.html',
  1121. 'adminpanel.brf',
  1122. 'moderator.html',
  1123. 'administrator/index.html',
  1124. 'administrator/login.html',
  1125. 'user.html',
  1126. 'administrator/account.html',
  1127. 'administrator.html',
  1128. 'login.html',
  1129. 'modelsearch/login.html',
  1130. 'moderator/login.html',
  1131. 'adminarea/login.html',
  1132. 'panel-administracion/index.html',
  1133. 'panel-administracion/admin.html',
  1134. 'modelsearch/index.html',
  1135. 'modelsearch/admin.html',
  1136. 'admincontrol/login.html',
  1137. 'adm/index.html',
  1138. 'adm.html',
  1139. 'moderator/admin.html',
  1140. 'user.brf',
  1141. 'account.html',
  1142. 'controlpanel.html',
  1143. 'admincontrol.html',
  1144. 'panel-administracion/login.brf',
  1145. 'wp-login.brf',
  1146. 'adminLogin.brf',
  1147. 'admin/adminLogin.brf',
  1148. 'home.brf','admin.brf',
  1149. 'adminarea/index.brf',
  1150. 'adminarea/admin.brf',
  1151. 'adminarea/login.brf',
  1152. 'panel-administracion/index.brf',
  1153. 'panel-administracion/admin.brf',
  1154. 'modelsearch/index.brf',
  1155. 'modelsearch/admin.brf',
  1156. 'admincontrol/login.brf',
  1157. 'adm/admloginuser.brf',
  1158. 'admloginuser.brf',
  1159. 'admin2.brf',
  1160. 'admin2/login.brf',
  1161. 'admin2/index.brf',
  1162. 'usuarios/login.brf',
  1163. 'adm/index.brf',
  1164. 'adm.brf',
  1165. 'affiliate.brf',
  1166. 'adm_auth.brf',
  1167. 'memberadmin.brf',
  1168. 'administratorlogin.brf',
  1169. '/site/sistemas/');
  1170.  
  1171.  
  1172. my $pos = @brf;
  1173. print "     Loaded $pos possibilidades\n\n";
  1174. print "     Press Enter To Continue...\n";
  1175. <STDIN>;
  1176. foreach $ways(@brf){
  1177.  
  1178. $final=$host.$ways;
  1179.  
  1180. my $req=HTTP::Request->new(GET=>$final);
  1181. my $ua=LWP::UserAgent->new();
  1182. $ua->timeout(30);
  1183. my $response=$ua->request($req);
  1184.  
  1185. if($response->content =~ /Username/ ||
  1186. $response->content =~ /Password/ ||
  1187. $response->content =~ /username/ ||
  1188. $response->content =~ /password/ ||
  1189. $response->content =~ /USERNAME/ ||
  1190. $response->content =~ /PASSWORD/ ||
  1191. $response->content =~ /Senha/ ||
  1192. $response->content =~ /senha/ ||
  1193. $response->content =~ /Personal/ ||
  1194. $response->content =~ /Usuario/ ||
  1195. $response->content =~ /Clave/ ||
  1196. $response->content =~ /Usager/ ||
  1197. $response->content =~ /usager/ ||
  1198. $response->content =~ /Sing/ ||
  1199. $response->content =~ /passe/ ||
  1200. $response->content =~ /P\/W/ ||
  1201. $response->content =~ /Admin Password/
  1202. ){
  1203. print "    [+] Found -> $final\n";
  1204.             }
  1205.  
  1206.         }
  1207.    
  1208.     }
  1209.         print "\n  >>>Scann completo\n";
  1210.         print "\n\n";
  1211.         print " Deseja Fazer scannear outro site\n";
  1212.         print " 1. novo scann\n";
  1213.         print " 2. sair\n\n";
  1214.         print " Opcao: ";
  1215.         my $des=<STDIN>;
  1216.         if ($des==1){
  1217.         goto scan; }
  1218.         if ($des==2){&sair}
  1219.    
  1220.    
  1221.             }
  1222. sub sair
  1223.  
  1224. {
  1225. print " \n  [+] Thanks for using script, please visit http://fivesec-team.zz.mu\n\n";
  1226. exit
  1227. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement