前言:
收集了一點cms路徑,打算在寫一個。之前已經寫了
有需要的可以自己翻我的博客
思路:
網站添加路徑判斷是否為200,並且無過濾列表中的字符
代碼:
import requests import threading import os us=[] ut=[] error=['404','不存在','無權限訪問','403','D盾','沒有','頁面消失了'] okurl=[] noturl=[] user=input('url->>>') if os.path.exists('cms_url.txt') and os.path.exists('cms_title.txt'): print('[+]cms_url.txt and cms_title.txt ok !') else: print('[-]cms_url.txt or cms_title.txt not found') exit() def jiazai(): global cmspath title=[] url=[] cmspath={} dk=open('cms_title.txt','r') for d in dk.readlines(): qc="".join(d.split('\n')) title.append(qc) dk2=open('cms_url.txt','r') for d1 in dk2.readlines(): qc2="".join(d1.split('\n')) url.append(qc2) for i in range(0,len(title)): cmspath[title[i]]=url[i] print('[+]CMSpath.txt Load completion') jiazai() def testing(): try: headers={'user-agent':'Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11'} for t in cmspath.values(): us.append(user.strip()+t.strip()) for v in cmspath.keys(): ut.append(v) for f in range(0,len(ut)): reqt=requests.get(url=us[f],headers=headers) for e in error: if reqt.status_code==200 and e not in reqt.text and len(reqt.text)>0: ok='[+]CMS path:{} CMS name:{}'.format(reqt.url,ut[f]) if ok in okurl:continue okurl.append(ok) print(ok) else: no='[-]Not cms name:{} cms path:{} status_code:{}'.format(ut[f],reqt.url,reqt.status_code) if no in noturl:continue noturl.append(no) print(no) except: pass testing()
cms_url.txt
/wp-login.php /templets/default/style/dedecms.css /include/js/dedeajax2.js /Public/statics/images/jdcmserweima.png /Public/statics/images/admin/comment.gif /KS_Inc/common.js /templates/default/css/login.css /base/js/admin.js /images/database/admin.xml /webmail/static/style/misc.css /templates/default/css/headfoot.css /base/admin/images/logo.gif /member/images/dzh_logo.gif /base/admin/css/style.css /template/ask/images/yun_page.png /template/default/style/yun_search.css /Resources/Styles/defaultPage.css /templates/default/style/webstyle.css /Common/Vaildform/Validform.js /base/templates/images/2.png /templates/default/js/getarea.js /js/ecmall.js /admin/Images/blockdevice.png /template/default/style/ddlevelsmenu-sidebar.css /themes/jieqixs/style.css /tpl/user/tpl1/images/login.jpg /adminsoft/templates/images/login_title.png /includes/libraries/javascript/ecmall.js /public/default/default/css/slider.css /Public/statics/images/dialog/border.png /js/contentscroller.js /Resources/Styles/common.css /install/tpl/images/logo.gif /template/default/style/ddlevelsmenu-sidebar.css /tpl/public/js/url_control.js /images/xuas.gif /Template/Ant/Js/WebCommon.js /KS_Inc/kesion.page.js /public/tinyMCE/themes/simple/img/icons.gif /yp/images/js/info_add.js /templates/default/skins/default/member.css /public/plug/im/im_bg.png /data/config.js /app/admin/view/images/global.js /yp/images/edit.gif /theme/default/js/sdcms.js /css/jumpbox.css /templates/lib/nbspslider-1.1/css/css.css /js/jumpbox.js /App_Themes/UserThem/images/regl2.gif /App_Themes/UserThem/style.css /templates/lib/png.js /data/admin/allowurl.txt /yp/images/cellect.gif /asset/javascripts/mootools.js /images/luzhu.css /asset/javascripts/scripts.js /SKCMS/js/time/calendar.js /template/member/style/msg.css /user/js/jsaddress.js /statics/css/admin_visualization.css /statics/css/style/styles3.css /statics/js/show_picture.js /templates/metv5s/view.jpg /js/mycontent.css /images/admina/arrow.jpg /image/admin/logo.png /images/plugin/contact/complaint.gif /data/version/vertime.txt /siteserver/pic/company/logo.gif /PLUGIN/BackupDB/plugin.xml /themes/BigSale/style.css /Update/images/sdcms.css /addons/plugins/WeiboType/html/music.js /public/admin/style.css /apps/weibo/Lib/Plugin/music/control.js /images/tv_ico.gif /Template/Ant/Js/AntRegister.js /apps/group/changelog.txt /images/Arrow_02.gif /images/2/more.gif /Template/Ant/account/Css/style.css /plugins/location/mainland/area.txt /data/flashdata/pinkfocus/data.js /Count/Image/powereasyimg.gif /shopdata/agreement.txt /template/default/php188_info.xml /inc/qq.js /static/image/admincp/logo.gif /admin/discuzfiles.md5 /app/admin/view/images/login-logo.gif /wp-content/themes/twentyten/images/wordpress.png /images/yi.png /Vote/Img/skin/css_2/2_logo.gif /js/close.gif /images/qq/qqkf2/Kf_bg03_03.gif /style/default/hdwiki.css /images/user_logo.GIF /images/admin/login/logo.png /admin/images/cutimg/style.css /components/com_mailto/views/sent/metadata.xml /themes/README.txt /admin/help/zh_cn/database.xml /htaccess.txt /Script/Html.js /admin/ecshopfiles.md5 /admin/views/style/green/style.css /template/skin_vc36a/images/member/loginlabel.gif /template/skin_vc36a/images/member/memberlabel.gif /template/public/images/member/nextkey.gif /wp-admin/js/media-upload.dev.js /ewebeditor/KindEditor.js /admin/views/style/green/style.css /Admin/Images/southidc.css /xmlEditor/css/style.css /xmlEditor/images/spacer.jpg /xmlEditor/images/adminLogin_r3_c2.jpg /script/page.css /module/jslib/jquery/jquery.js /Script/Html.js /Admin/images/admin.js /images/lzbg12.gif /sysImages/Login/Logo.gif /templates/phpmps/style/index.css /templates/phpmps/style/category.css /js/validator/validator.min.js /SouthidcEditor/sysimage/icon32xls.gif /admin/SouthidcEditor/Include/Editor.js /a_d/install/data.sql /inc/photo/loader.gif /SouthidcEditor/sysimage/icon32xls.gif /admin/system/images/login_background.jpg /rss.xsl /page/system/inc/fun.js /SiteServer/Services/AdministratorService.asmx /components/com_mailto/views/sent/metadata.xml /data/admin/ver.txt /install/testdata/hdwikitest.sql /admin/images/icon_editstyle.gif /statics/css/install.css /images/default/arrow_list.gif /js/calendar/calendar.js /t3/style/css/common/card.css /style/default/hdwiki.css /css/official.css /e/tool/feedback/temp/test.txt /admin/Image/Login_tit.gif /images/QQ/qqon5.gif /admin/images/login_06.jpg /adfile/ad9.js /images/top-jlwm_.jpg /member/skin/images/level_10.gif /ADMIN/IMAGES/underline.gif /API/api.config /admin/skin/images/topbg.gif /inc/image/bj.gif /static/image/admincp/bg_repno.gif /KS_Inc/ajax.js /admin/editor/xheditor_skin/default/img/tag-h4.gif /ADMIN/IMAGES/number.gif /data/adtool/theme/d2.jpg /plus/webftp/images/txt.gif /images-global/zoom/zoom-caption-fill.png /Admin_Cy/Script/xselect.js /images/act_1.gif /images/wp-background-preview-bg.gif /images/admin/sprites.png /js/upimg/subbotton.gif /d/js/acmsd/ecms_dialog.js /admin/images/login/index_hz02.gif /images/qq/qqkf2/Kf_bg03_03.gif /js/close.gif /images/admina/logo.png /admin/images/login/index_hz03.gif /logo/01.gif /plus/img/wbg.gif /admin/template/images/site_logo.png /static/sex0.jpg /member/template/css/contribute.css /images/calendar/close.gif /templates/admin/images/titleico.gif /host_date/%23host%20%23%20date%23196.mdb /jscal/src/css/img/cool-bg-hard-inv.png /setup/images/agree.jpg /images/admina/sitmap0.png /images/admin/readme.gif /images/adm/left_menus1.gif /office/images/login/ico.gif /images/button/a.gif /themes/jieqixs/logo.gif /jscal/src/css/img/cool-bg.png /install/templates/images/link_bg.gif /images/adminlogoin.gif /admin/images/bg-pay-return-success.gif /user/face/2.gif /inc_img/vote/vote2_1.gif /images/admin/login/logo.png /404/emessage.gif /admin/images/image_new.gif /system/images/logo.png /admin/images/admin_submit.jpg /themes/admin/images/logo.png /images/usercp_usergroups.gif /install/images/guide_1.gif /data/smiliey/default/shy.gif /include/payment/logo/remittance.gif /install/images/bg-input.png /images/images/message.gif /Admin/Images/Exit-Line.gif /inc/img/qmiddle.png /images/index_border1.gif /image/watermark.gif /admini/images/dt_admini_bottom_logo.gif /admin/ckeditor/images/spacer.gif /lib/images/tip_layer.png /question/images/face/images/ico_face_arrow.gif /static/image/admincp/ajax_loader.gif /images/images/message.gif /install/images/00.png /wp-includes/images/xit.gif /admin/images/top_banner.jpg /admin/images/left_menu.png /mobile/images/redirect_icon.png /admin/images/login_button.jpg /static/ayacms.gif /images/Jobs_resume_up.gif /cn/images/banner_page_bg.gif /admin/images/netgather_com.gif /data/images/logo.gif /template/skin4/images/logo.png /e/data/images/table.gif /xheditor/xheditor_plugins/multiupload/img/progressbg.gif /templates/default/css/user.css /images/logo_wap.png /images/default/listdott.gif /wap/templates/default/images/nv_r2_c1.gif /shopdata/images/error_tips.gif /nz.ico /editor/themes/qq/editor.gif /admin/templates/met/images/logosmall.gif /inc/images/watermark.png /Admin/images/t2_r1_c5.jpg /images/by.nzcms.gif /admin/images/top_tt_bg.gif /ad_duilian/close.gif /install/images/bg-cmstop.jpg /admin/fckeditor/editor/ma_xc_ms_editor_server/browser.css /Admin/images/login_r4_c4_r1_c1.jpg /job/templates/met/css/style.css /data/adflash.txt /inc/images/logo.png /plugin/images/netgather_com.gif /admin/imgs/starno.gif /api/alipay/images/new-btn-fixed.png /inc/image/m_tleft.png /core_res/css/admin.css /common_res/js/pony.js /wap/templates/met/images/listico.gif /Themes/default/zh-cn/images/bbs_nav.jpg /admini/images/dt_admin_top_bg.png /lib/web/js/source/form/form.js /admin/styles/general.css /inc/tools/iepngfix/blank.gif /admin/imgs/admin.css /Admin/images/install_logo.jpg /plugin/raty/img/star-half.png /image/watermark.gif /script/pagecontrol.js /plus/weather/icon/a_12.gif /template/skin4/images/style.css /skin/skin3/login.gif /Themes/default/zh-cn/images/CertificateLogo.jpg /install/images/steptab.png /views/images/install/set01_top_nav.gif /ACT_inc/share/minusbottom.gif /admin/imgs/custommenu.xml /Admin/Images/bg_admin.jpg /inc/yucmedia/Media/img/direct/reload2.gif /Admin/images/al_end_right.gif /login/images/toolbar_back2.gif /admin/images/login/login_submit.gif /ACT_inc/ItemBg.gif /admin/images/left_nav.jpg /img/images/commentLoad.gif /adminimages/title.GIF /_skins/free/images/top_menu_bg.jpg /office/images/login/ico.gif /views/images/admin/login_toptitle.jpg /images/default/topbg.gif /admin/images/watermark.png /theme/admin/images/upload.gif /cms/images/login/gljr.jpg /FCKeditor/editor/images/spacer.gif /cms/images/login/cms6_02.gif /view/js/clipimg/drag.gif /cms/images/login/cms6_01.gif /corpandresize/images/spacer.gif /member/images/bodyleft.gif /rss/HProducts.xml /admin/images/admin_left_6.gif /xml/products/netcmsversion.xml /wp-includes/images/crystal/code.png /statics/plugin/loveit/img/icon.png /static/js/mobile/img/aw-icon.png /spider/images/open.gif /images/polls/bar1.gif /statics/images/icons/calendar.png /views/images/water.gif /view/image/filetype/zip.gif /images/_m10.GIF /admin/images/menu_title3a.jpg /include/lib/js/imgareaselect/imgareaselect.cs /plugin/swf/get_flash_player.gif /sysImages/default/admin/netcms_bg.jpg /css/admin_left.css /zimbra/css/skin.css /skin/default/images/main_bg.jpg /user/js/fore.common.js /upload/archive/image/1007182312368551207nx9paa1i8k0.jpg /review/styles/common.js /Common/Vaildform/css/validform.css /_libs/jquery.filetree/images/ico_spinner.gif /theme/default/css/user_base.css /webmail/static/images/login/logo.gif /js/lhgdialog/lhgdialog.js /static/images/message_success.png /app/admin/view/images/style.css /ids/admin/style/style.css /static/js/uploadify/license.tx /js/zh-cn/Xmlhttp.js /zimbra/img/logo/favicon.ico /webmail/static/script/jquery/1.8.3.min.js /includes/jscript/css/ui.all.css /admin/Images/folder_outbox.png /templates/default/user/css/login.css /templates/default/images/search.gif /admin/images/loginlogo.png /templates/default/user/images/login_title.gif /lang/images/step.png /admin/Tpl/default/ThemeFiles/Css/style.css /admin/Tpl/default/ThemeFiles/Js/common.js /admin/Tpl/default/ThemeFiles/Images/login/spacer.gif /cms/front_res/front.css /scripts/jumbotcms.js /user/otherfiles/scripts/user.js /admin/otherpage/scripts/admin.js /images/admin_login_bg.jpg /admin/Images/admin_tab_system.gif
cms_title.txt
wordpress dedecms dedecms jdcms jdcms kesioncms shopnc phpweb zdsoft u-mail shopnc phpweb dedecms phpweb phpyun phpyun topwincms phpmywind E-Auto phpweb ecmall zdsoft cutecms jieqicms eYouMail espcms ecmall YXCMS jdcms cmseasy topwincms phpok cutecms eYouMail xsnews 小螞蟻地方門戶 kesion espcms phpcms phpcms2008 espcms phpcms2008 phpok phpcms sdcms 多多返利建站系統 appcms 多多返利建站系統 逐浪cms 逐浪cms appcms dedecms phpcms shopex 露珠文章管理系統 shopex skcms phpyun 程氏舞曲 phpcmsv9 phpcmsv9 phpcmsv9 metinfo espcms 08cms b2bbuilder guohuicms phpmywind siteserver Z-Blog shopxp sdcms thinksns thinksns thinksns fcms夢想建站 小螞蟻地方門戶 thinksns 智睿網站系統 e創站 小螞蟻地方門戶 shopex ecshop 動易 php188商城 php188商城 YiDacms discuz discuz phpok wordpress YiDacms foosun文章系統 aspcms網站系統 aspcms網站系統 HDwiki N點虛擬主機 Phpwind php168v6 Joomla Drupal ecshop Joomla south ecshop emlog v5shop v5shop v5shop wordpress php168 emlog網站系統 southidc 追夢flash網站管理系統 追夢flash網站管理系統 追夢flash網站管理系統 大漢版JCMS內容管理系統 大漢版JCMS內容管理系統 southidc dvbbs luzhucms xyscms phpmps phpmps phpmps south south qibosoft ideacms south 新秀 powereasy動易 kesioncms SiteServer joomla dedecms HdWiki phpcms php168v6 ecshop powereasy hdwiki HDwiki diguoCMS帝國 south south 86cms 86cms zhuangxiu 愛淘客 塵緣雅境圖文系統 kesioncms 愛淘客 ideacms discuz kesioncms maccms 塵緣雅境圖文系統 建站之星 5ucms abcms 塵月企業網站管理系統 actcms 建站之星 akcms cmseasy 帝國cms qibocms aspcms aspcms 08cms qibocms 味多美導航 dedecms 建站之星 ayacms vbmcms vbmcms jieqicms n點虛擬機 cutecms shlcms 08cms cmseasy maccms nitc vbmcms jieqicms cutecms 74cms gocdkey cutecms kingcms otcms Phpwind網站程序 塵月企業網站管理系統 cutecms kingcms 74cms 口福科技 siteengine iwebshop siteengine 74cms phpshop expocms shlcms 青果軟件教務系統 iwebshop shlcms kuwebs sdcms jumbotcms discuz kuwebs abcms wordpress 櫻桃企業網站管理系統 phpshop jishigou 凡諾企業網站管理系統 ayacms 非凡建站 netgather netgather 74cms ideacms empirecms 口福科技 74cms cmseasy zcncms jishigou phpshop 寧志學校網站系統 xycms metinfo mlecms 老Y文章管理系統 寧志學校網站 xycms 寧志學校網站 cmstop maxcms 老Y文章管理系統 metinfo zcncms mlecms netgather maxcms 口福科技 ideacms 商樂CMS 商樂CMS metinfo hishop shlcms iwebshop shopxp mlecms maxcms hishop 口福科技 iwebshop 大漢版JCMS內容管理系統 jumbotcms ideacms 分類信息網 hishop sdcms gxcms actcms maxcms actcms otcms 非凡建站 易想CMS otcms actcms 凡諾企業網站管理系統 cmstop 露珠文章管理系統 凡諾企業網站管理系統 nitc(定海神真) gxcms zcncms 建站之星 sdcms 通元內容管理系統 pjblog 通元內容管理系統 xiunobbs 通元內容管理系統 phpcms2008 易想CMS 網奇EShop網上商城系統 易想CMS netcms wordpress phpcmsv9 wecenter phpcms2008 vbulletin tccms gxcms xiunobbs 青果軟件教務系統 skypost emlog netgather netcms zdsoft zimbra empirecms jumbotcms cmseasy jumbotcms E-Auto jumbotcms sdcms u-mail diancms bagecms phpok trs身份認證服務器 bagecms diancms zimbra u-mail whmcs zdsoft tccms tccms whmcs tccms phpwind 方維團購管理系統 方維團購管理系統 方維團購管理系統 whatycms jumbotcms jumbotcms jumbotcms cnkcms zdsoft
測試結果: