前言:
收集了一点cms路径,打算在写一个。之前已经写了
有需要的可以自己翻我的博客
思路:
网站添加路径判断是否为200,并且无过滤列表中的字符
代码:
import requests
import threading
import os us=[]
ut=[]
error=['404','不存在','无权限访问','403','D盾','没有','页面消失了']
okurl=[]
noturl=[]
user=input('url->>>')
if os.path.exists('cms_url.txt') and os.path.exists('cms_title.txt'):
print('[+]cms_url.txt and cms_title.txt ok !')
else:
print('[-]cms_url.txt or cms_title.txt not found')
exit() def jiazai():
global cmspath
title=[]
url=[]
cmspath={}
dk=open('cms_title.txt','r')
for d in dk.readlines():
qc="".join(d.split('\n'))
title.append(qc) dk2=open('cms_url.txt','r')
for d1 in dk2.readlines():
qc2="".join(d1.split('\n'))
url.append(qc2) for i in range(0,len(title)):
cmspath[title[i]]=url[i] print('[+]CMSpath.txt Load completion')
jiazai() def testing():
try:
headers={'user-agent':'Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11'}
for t in cmspath.values():
us.append(user.strip()+t.strip()) for v in cmspath.keys():
ut.append(v) for f in range(0,len(ut)):
reqt=requests.get(url=us[f],headers=headers)
for e in error:
if reqt.status_code==200 and e not in reqt.text and len(reqt.text)>0:
ok='[+]CMS path:{} CMS name:{}'.format(reqt.url,ut[f])
if ok in okurl:continue
okurl.append(ok)
print(ok)
else:
no='[-]Not cms name:{} cms path:{} status_code:{}'.format(ut[f],reqt.url,reqt.status_code)
if no in noturl:continue
noturl.append(no) print(no) except:
pass testing()
cms_url.txt
/wp-login.php
/templets/default/style/dedecms.css
/include/js/dedeajax2.js
/Public/statics/images/jdcmserweima.png
/Public/statics/images/admin/comment.gif
/KS_Inc/common.js
/templates/default/css/login.css
/base/js/admin.js
/images/database/admin.xml
/webmail/static/style/misc.css
/templates/default/css/headfoot.css
/base/admin/images/logo.gif
/member/images/dzh_logo.gif
/base/admin/css/style.css
/template/ask/images/yun_page.png
/template/default/style/yun_search.css
/Resources/Styles/defaultPage.css
/templates/default/style/webstyle.css
/Common/Vaildform/Validform.js
/base/templates/images/2.png
/templates/default/js/getarea.js
/js/ecmall.js
/admin/Images/blockdevice.png
/template/default/style/ddlevelsmenu-sidebar.css
/themes/jieqixs/style.css
/tpl/user/tpl1/images/login.jpg
/adminsoft/templates/images/login_title.png
/includes/libraries/javascript/ecmall.js
/public/default/default/css/slider.css
/Public/statics/images/dialog/border.png
/js/contentscroller.js
/Resources/Styles/common.css
/install/tpl/images/logo.gif
/template/default/style/ddlevelsmenu-sidebar.css
/tpl/public/js/url_control.js
/images/xuas.gif
/Template/Ant/Js/WebCommon.js
/KS_Inc/kesion.page.js
/public/tinyMCE/themes/simple/img/icons.gif
/yp/images/js/info_add.js
/templates/default/skins/default/member.css
/public/plug/im/im_bg.png
/data/config.js
/app/admin/view/images/global.js
/yp/images/edit.gif
/theme/default/js/sdcms.js
/css/jumpbox.css
/templates/lib/nbspslider-1.1/css/css.css
/js/jumpbox.js
/App_Themes/UserThem/images/regl2.gif
/App_Themes/UserThem/style.css
/templates/lib/png.js
/data/admin/allowurl.txt
/yp/images/cellect.gif
/asset/javascripts/mootools.js
/images/luzhu.css
/asset/javascripts/scripts.js
/SKCMS/js/time/calendar.js
/template/member/style/msg.css
/user/js/jsaddress.js
/statics/css/admin_visualization.css
/statics/css/style/styles3.css
/statics/js/show_picture.js
/templates/metv5s/view.jpg
/js/mycontent.css
/images/admina/arrow.jpg
/image/admin/logo.png
/images/plugin/contact/complaint.gif
/data/version/vertime.txt
/siteserver/pic/company/logo.gif
/PLUGIN/BackupDB/plugin.xml
/themes/BigSale/style.css
/Update/images/sdcms.css
/addons/plugins/WeiboType/html/music.js
/public/admin/style.css
/apps/weibo/Lib/Plugin/music/control.js
/images/tv_ico.gif
/Template/Ant/Js/AntRegister.js
/apps/group/changelog.txt
/images/Arrow_02.gif
/images/2/more.gif
/Template/Ant/account/Css/style.css
/plugins/location/mainland/area.txt
/data/flashdata/pinkfocus/data.js
/Count/Image/powereasyimg.gif
/shopdata/agreement.txt
/template/default/php188_info.xml
/inc/qq.js
/static/image/admincp/logo.gif
/admin/discuzfiles.md5
/app/admin/view/images/login-logo.gif
/wp-content/themes/twentyten/images/wordpress.png
/images/yi.png
/Vote/Img/skin/css_2/2_logo.gif
/js/close.gif
/images/qq/qqkf2/Kf_bg03_03.gif
/style/default/hdwiki.css
/images/user_logo.GIF
/images/admin/login/logo.png
/admin/images/cutimg/style.css
/components/com_mailto/views/sent/metadata.xml
/themes/README.txt
/admin/help/zh_cn/database.xml
/htaccess.txt
/Script/Html.js
/admin/ecshopfiles.md5
/admin/views/style/green/style.css
/template/skin_vc36a/images/member/loginlabel.gif
/template/skin_vc36a/images/member/memberlabel.gif
/template/public/images/member/nextkey.gif
/wp-admin/js/media-upload.dev.js
/ewebeditor/KindEditor.js
/admin/views/style/green/style.css
/Admin/Images/southidc.css
/xmlEditor/css/style.css
/xmlEditor/images/spacer.jpg
/xmlEditor/images/adminLogin_r3_c2.jpg
/script/page.css
/module/jslib/jquery/jquery.js
/Script/Html.js
/Admin/images/admin.js
/images/lzbg12.gif
/sysImages/Login/Logo.gif
/templates/phpmps/style/index.css
/templates/phpmps/style/category.css
/js/validator/validator.min.js
/SouthidcEditor/sysimage/icon32xls.gif
/admin/SouthidcEditor/Include/Editor.js
/a_d/install/data.sql
/inc/photo/loader.gif
/SouthidcEditor/sysimage/icon32xls.gif
/admin/system/images/login_background.jpg
/rss.xsl
/page/system/inc/fun.js
/SiteServer/Services/AdministratorService.asmx
/components/com_mailto/views/sent/metadata.xml
/data/admin/ver.txt
/install/testdata/hdwikitest.sql
/admin/images/icon_editstyle.gif
/statics/css/install.css
/images/default/arrow_list.gif
/js/calendar/calendar.js
/t3/style/css/common/card.css
/style/default/hdwiki.css
/css/official.css
/e/tool/feedback/temp/test.txt
/admin/Image/Login_tit.gif
/images/QQ/qqon5.gif
/admin/images/login_06.jpg
/adfile/ad9.js
/images/top-jlwm_.jpg
/member/skin/images/level_10.gif
/ADMIN/IMAGES/underline.gif
/API/api.config
/admin/skin/images/topbg.gif
/inc/image/bj.gif
/static/image/admincp/bg_repno.gif
/KS_Inc/ajax.js
/admin/editor/xheditor_skin/default/img/tag-h4.gif
/ADMIN/IMAGES/number.gif
/data/adtool/theme/d2.jpg
/plus/webftp/images/txt.gif
/images-global/zoom/zoom-caption-fill.png
/Admin_Cy/Script/xselect.js
/images/act_1.gif
/images/wp-background-preview-bg.gif
/images/admin/sprites.png
/js/upimg/subbotton.gif
/d/js/acmsd/ecms_dialog.js
/admin/images/login/index_hz02.gif
/images/qq/qqkf2/Kf_bg03_03.gif
/js/close.gif
/images/admina/logo.png
/admin/images/login/index_hz03.gif
/logo/01.gif
/plus/img/wbg.gif
/admin/template/images/site_logo.png
/static/sex0.jpg
/member/template/css/contribute.css
/images/calendar/close.gif
/templates/admin/images/titleico.gif
/host_date/%23host%20%23%20date%23196.mdb
/jscal/src/css/img/cool-bg-hard-inv.png
/setup/images/agree.jpg
/images/admina/sitmap0.png
/images/admin/readme.gif
/images/adm/left_menus1.gif
/office/images/login/ico.gif
/images/button/a.gif
/themes/jieqixs/logo.gif
/jscal/src/css/img/cool-bg.png
/install/templates/images/link_bg.gif
/images/adminlogoin.gif
/admin/images/bg-pay-return-success.gif
/user/face/2.gif
/inc_img/vote/vote2_1.gif
/images/admin/login/logo.png
/404/emessage.gif
/admin/images/image_new.gif
/system/images/logo.png
/admin/images/admin_submit.jpg
/themes/admin/images/logo.png
/images/usercp_usergroups.gif
/install/images/guide_1.gif
/data/smiliey/default/shy.gif
/include/payment/logo/remittance.gif
/install/images/bg-input.png
/images/images/message.gif
/Admin/Images/Exit-Line.gif
/inc/img/qmiddle.png
/images/index_border1.gif
/image/watermark.gif
/admini/images/dt_admini_bottom_logo.gif
/admin/ckeditor/images/spacer.gif
/lib/images/tip_layer.png
/question/images/face/images/ico_face_arrow.gif
/static/image/admincp/ajax_loader.gif
/images/images/message.gif
/install/images/00.png
/wp-includes/images/xit.gif
/admin/images/top_banner.jpg
/admin/images/left_menu.png
/mobile/images/redirect_icon.png
/admin/images/login_button.jpg
/static/ayacms.gif
/images/Jobs_resume_up.gif
/cn/images/banner_page_bg.gif
/admin/images/netgather_com.gif
/data/images/logo.gif
/template/skin4/images/logo.png
/e/data/images/table.gif
/xheditor/xheditor_plugins/multiupload/img/progressbg.gif
/templates/default/css/user.css
/images/logo_wap.png
/images/default/listdott.gif
/wap/templates/default/images/nv_r2_c1.gif
/shopdata/images/error_tips.gif
/nz.ico
/editor/themes/qq/editor.gif
/admin/templates/met/images/logosmall.gif
/inc/images/watermark.png
/Admin/images/t2_r1_c5.jpg
/images/by.nzcms.gif
/admin/images/top_tt_bg.gif
/ad_duilian/close.gif
/install/images/bg-cmstop.jpg
/admin/fckeditor/editor/ma_xc_ms_editor_server/browser.css
/Admin/images/login_r4_c4_r1_c1.jpg
/job/templates/met/css/style.css
/data/adflash.txt
/inc/images/logo.png
/plugin/images/netgather_com.gif
/admin/imgs/starno.gif
/api/alipay/images/new-btn-fixed.png
/inc/image/m_tleft.png
/core_res/css/admin.css
/common_res/js/pony.js
/wap/templates/met/images/listico.gif
/Themes/default/zh-cn/images/bbs_nav.jpg
/admini/images/dt_admin_top_bg.png
/lib/web/js/source/form/form.js
/admin/styles/general.css
/inc/tools/iepngfix/blank.gif
/admin/imgs/admin.css
/Admin/images/install_logo.jpg
/plugin/raty/img/star-half.png
/image/watermark.gif
/script/pagecontrol.js
/plus/weather/icon/a_12.gif
/template/skin4/images/style.css
/skin/skin3/login.gif
/Themes/default/zh-cn/images/CertificateLogo.jpg
/install/images/steptab.png
/views/images/install/set01_top_nav.gif
/ACT_inc/share/minusbottom.gif
/admin/imgs/custommenu.xml
/Admin/Images/bg_admin.jpg
/inc/yucmedia/Media/img/direct/reload2.gif
/Admin/images/al_end_right.gif
/login/images/toolbar_back2.gif
/admin/images/login/login_submit.gif
/ACT_inc/ItemBg.gif
/admin/images/left_nav.jpg
/img/images/commentLoad.gif
/adminimages/title.GIF
/_skins/free/images/top_menu_bg.jpg
/office/images/login/ico.gif
/views/images/admin/login_toptitle.jpg
/images/default/topbg.gif
/admin/images/watermark.png
/theme/admin/images/upload.gif
/cms/images/login/gljr.jpg
/FCKeditor/editor/images/spacer.gif
/cms/images/login/cms6_02.gif
/view/js/clipimg/drag.gif
/cms/images/login/cms6_01.gif
/corpandresize/images/spacer.gif
/member/images/bodyleft.gif
/rss/HProducts.xml
/admin/images/admin_left_6.gif
/xml/products/netcmsversion.xml
/wp-includes/images/crystal/code.png
/statics/plugin/loveit/img/icon.png
/static/js/mobile/img/aw-icon.png
/spider/images/open.gif
/images/polls/bar1.gif
/statics/images/icons/calendar.png
/views/images/water.gif
/view/image/filetype/zip.gif
/images/_m10.GIF
/admin/images/menu_title3a.jpg
/include/lib/js/imgareaselect/imgareaselect.cs
/plugin/swf/get_flash_player.gif
/sysImages/default/admin/netcms_bg.jpg
/css/admin_left.css
/zimbra/css/skin.css
/skin/default/images/main_bg.jpg
/user/js/fore.common.js
/upload/archive/image/1007182312368551207nx9paa1i8k0.jpg
/review/styles/common.js
/Common/Vaildform/css/validform.css
/_libs/jquery.filetree/images/ico_spinner.gif
/theme/default/css/user_base.css
/webmail/static/images/login/logo.gif
/js/lhgdialog/lhgdialog.js
/static/images/message_success.png
/app/admin/view/images/style.css
/ids/admin/style/style.css
/static/js/uploadify/license.tx
/js/zh-cn/Xmlhttp.js
/zimbra/img/logo/favicon.ico
/webmail/static/script/jquery/1.8.3.min.js
/includes/jscript/css/ui.all.css
/admin/Images/folder_outbox.png
/templates/default/user/css/login.css
/templates/default/images/search.gif
/admin/images/loginlogo.png
/templates/default/user/images/login_title.gif
/lang/images/step.png
/admin/Tpl/default/ThemeFiles/Css/style.css
/admin/Tpl/default/ThemeFiles/Js/common.js
/admin/Tpl/default/ThemeFiles/Images/login/spacer.gif
/cms/front_res/front.css
/scripts/jumbotcms.js
/user/otherfiles/scripts/user.js
/admin/otherpage/scripts/admin.js
/images/admin_login_bg.jpg
/admin/Images/admin_tab_system.gif
cms_title.txt
wordpress
dedecms
dedecms
jdcms
jdcms
kesioncms
shopnc
phpweb
zdsoft
u-mail
shopnc
phpweb
dedecms
phpweb
phpyun
phpyun
topwincms
phpmywind
E-Auto
phpweb ecmall
zdsoft
cutecms
jieqicms
eYouMail
espcms
ecmall
YXCMS
jdcms
cmseasy
topwincms
phpok
cutecms
eYouMail
xsnews
小蚂蚁地方门户
kesion
espcms
phpcms
phpcms2008
espcms
phpcms2008
phpok
phpcms
sdcms
多多返利建站系统
appcms
多多返利建站系统
逐浪cms
逐浪cms
appcms
dedecms
phpcms
shopex
露珠文章管理系统
shopex
skcms
phpyun
程氏舞曲
phpcmsv9
phpcmsv9
phpcmsv9
metinfo
espcms
08cms
b2bbuilder
guohuicms
phpmywind
siteserver
Z-Blog
shopxp
sdcms
thinksns
thinksns
thinksns
fcms梦想建站
小蚂蚁地方门户
thinksns
智睿网站系统
e创站
小蚂蚁地方门户
shopex
ecshop
动易
php188商城
php188商城
YiDacms
discuz
discuz
phpok
wordpress
YiDacms
foosun文章系统
aspcms网站系统
aspcms网站系统
HDwiki
N点虚拟主机
Phpwind
php168v6
Joomla
Drupal
ecshop
Joomla
south
ecshop
emlog
v5shop
v5shop
v5shop
wordpress
php168
emlog网站系统
southidc
追梦flash网站管理系统
追梦flash网站管理系统
追梦flash网站管理系统
大汉版JCMS内容管理系统
大汉版JCMS内容管理系统
southidc
dvbbs
luzhucms
xyscms
phpmps
phpmps
phpmps
south
south
qibosoft
ideacms
south
新秀
powereasy动易
kesioncms
SiteServer
joomla
dedecms
HdWiki phpcms
php168v6
ecshop
powereasy
hdwiki
HDwiki
diguoCMS帝国
south
south
86cms
86cms
zhuangxiu
爱淘客
尘缘雅境图文系统
kesioncms
爱淘客
ideacms
discuz
kesioncms
maccms
尘缘雅境图文系统
建站之星
5ucms
abcms
尘月企业网站管理系统
actcms
建站之星
akcms
cmseasy
帝国cms
qibocms
aspcms
aspcms
08cms
qibocms
味多美导航
dedecms
建站之星
ayacms
vbmcms
vbmcms
jieqicms
n点虚拟机
cutecms
shlcms
08cms
cmseasy
maccms
nitc
vbmcms
jieqicms
cutecms
74cms
gocdkey
cutecms
kingcms
otcms
Phpwind网站程序
尘月企业网站管理系统
cutecms
kingcms
74cms
口福科技
siteengine
iwebshop
siteengine
74cms
phpshop expocms
shlcms
青果软件教务系统
iwebshop
shlcms
kuwebs
sdcms
jumbotcms
discuz
kuwebs
abcms
wordpress
樱桃企业网站管理系统
phpshop
jishigou
凡诺企业网站管理系统
ayacms
非凡建站
netgather
netgather
74cms
ideacms
empirecms
口福科技
74cms
cmseasy
zcncms
jishigou
phpshop
宁志学校网站系统
xycms
metinfo
mlecms
老Y文章管理系统
宁志学校网站
xycms
宁志学校网站
cmstop
maxcms
老Y文章管理系统
metinfo
zcncms
mlecms
netgather
maxcms
口福科技
ideacms
商乐CMS
商乐CMS
metinfo
hishop
shlcms
iwebshop
shopxp
mlecms
maxcms
hishop
口福科技
iwebshop
大汉版JCMS内容管理系统
jumbotcms
ideacms
分类信息网
hishop
sdcms
gxcms
actcms
maxcms
actcms
otcms
非凡建站
易想CMS
otcms
actcms
凡诺企业网站管理系统
cmstop
露珠文章管理系统
凡诺企业网站管理系统
nitc(定海神真)
gxcms
zcncms
建站之星
sdcms
通元内容管理系统
pjblog
通元内容管理系统
xiunobbs
通元内容管理系统
phpcms2008
易想CMS
网奇EShop网上商城系统
易想CMS
netcms
wordpress
phpcmsv9
wecenter
phpcms2008
vbulletin
tccms
gxcms
xiunobbs
青果软件教务系统
skypost
emlog
netgather
netcms
zdsoft
zimbra
empirecms
jumbotcms
cmseasy
jumbotcms
E-Auto
jumbotcms
sdcms
u-mail
diancms
bagecms
phpok
trs身份认证服务器
bagecms
diancms
zimbra
u-mail
whmcs
zdsoft
tccms
tccms
whmcs
tccms
phpwind
方维团购管理系统
方维团购管理系统
方维团购管理系统
whatycms
jumbotcms
jumbotcms
jumbotcms
cnkcms
zdsoft
测试结果: