前言:
收集了一点cms路径,打算在写一个。之前已经写了
有需要的可以自己翻我的博客
思路:
网站添加路径判断是否为200,并且无过滤列表中的字符
代码:
import requests import threading import os us=[] ut=[] error=['404','不存在','无权限访问','403','D盾','没有','页面消失了'] okurl=[] noturl=[] user=input('url->>>') if os.path.exists('cms_url.txt') and os.path.exists('cms_title.txt'): print('[+]cms_url.txt and cms_title.txt ok !') else: print('[-]cms_url.txt or cms_title.txt not found') exit() def jiazai(): global cmspath title=[] url=[] cmspath={} dk=open('cms_title.txt','r') for d in dk.readlines(): qc="".join(d.split(' ')) title.append(qc) dk2=open('cms_url.txt','r') for d1 in dk2.readlines(): qc2="".join(d1.split(' ')) url.append(qc2) for i in range(0,len(title)): cmspath[title[i]]=url[i] print('[+]CMSpath.txt Load completion') jiazai() def testing(): try: headers={'user-agent':'Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11'} for t in cmspath.values(): us.append(user.strip()+t.strip()) for v in cmspath.keys(): ut.append(v) for f in range(0,len(ut)): reqt=requests.get(url=us[f],headers=headers) for e in error: if reqt.status_code==200 and e not in reqt.text and len(reqt.text)>0: ok='[+]CMS path:{} CMS name:{}'.format(reqt.url,ut[f]) if ok in okurl:continue okurl.append(ok) print(ok) else: no='[-]Not cms name:{} cms path:{} status_code:{}'.format(ut[f],reqt.url,reqt.status_code) if no in noturl:continue noturl.append(no) print(no) except: pass testing()
cms_url.txt
/wp-login.php /templets/default/style/dedecms.css /include/js/dedeajax2.js /Public/statics/images/jdcmserweima.png /Public/statics/images/admin/comment.gif /KS_Inc/common.js /templates/default/css/login.css /base/js/admin.js /images/database/admin.xml /webmail/static/style/misc.css /templates/default/css/headfoot.css /base/admin/images/logo.gif /member/images/dzh_logo.gif /base/admin/css/style.css /template/ask/images/yun_page.png /template/default/style/yun_search.css /Resources/Styles/defaultPage.css /templates/default/style/webstyle.css /Common/Vaildform/Validform.js /base/templates/images/2.png /templates/default/js/getarea.js /js/ecmall.js /admin/Images/blockdevice.png /template/default/style/ddlevelsmenu-sidebar.css /themes/jieqixs/style.css /tpl/user/tpl1/images/login.jpg /adminsoft/templates/images/login_title.png /includes/libraries/javascript/ecmall.js /public/default/default/css/slider.css /Public/statics/images/dialog/border.png /js/contentscroller.js /Resources/Styles/common.css /install/tpl/images/logo.gif /template/default/style/ddlevelsmenu-sidebar.css /tpl/public/js/url_control.js /images/xuas.gif /Template/Ant/Js/WebCommon.js /KS_Inc/kesion.page.js /public/tinyMCE/themes/simple/img/icons.gif /yp/images/js/info_add.js /templates/default/skins/default/member.css /public/plug/im/im_bg.png /data/config.js /app/admin/view/images/global.js /yp/images/edit.gif /theme/default/js/sdcms.js /css/jumpbox.css /templates/lib/nbspslider-1.1/css/css.css /js/jumpbox.js /App_Themes/UserThem/images/regl2.gif /App_Themes/UserThem/style.css /templates/lib/png.js /data/admin/allowurl.txt /yp/images/cellect.gif /asset/javascripts/mootools.js /images/luzhu.css /asset/javascripts/scripts.js /SKCMS/js/time/calendar.js /template/member/style/msg.css /user/js/jsaddress.js /statics/css/admin_visualization.css /statics/css/style/styles3.css /statics/js/show_picture.js /templates/metv5s/view.jpg /js/mycontent.css /images/admina/arrow.jpg /image/admin/logo.png /images/plugin/contact/complaint.gif /data/version/vertime.txt /siteserver/pic/company/logo.gif /PLUGIN/BackupDB/plugin.xml /themes/BigSale/style.css /Update/images/sdcms.css /addons/plugins/WeiboType/html/music.js /public/admin/style.css /apps/weibo/Lib/Plugin/music/control.js /images/tv_ico.gif /Template/Ant/Js/AntRegister.js /apps/group/changelog.txt /images/Arrow_02.gif /images/2/more.gif /Template/Ant/account/Css/style.css /plugins/location/mainland/area.txt /data/flashdata/pinkfocus/data.js /Count/Image/powereasyimg.gif /shopdata/agreement.txt /template/default/php188_info.xml /inc/qq.js /static/image/admincp/logo.gif /admin/discuzfiles.md5 /app/admin/view/images/login-logo.gif /wp-content/themes/twentyten/images/wordpress.png /images/yi.png /Vote/Img/skin/css_2/2_logo.gif /js/close.gif /images/qq/qqkf2/Kf_bg03_03.gif /style/default/hdwiki.css /images/user_logo.GIF /images/admin/login/logo.png /admin/images/cutimg/style.css /components/com_mailto/views/sent/metadata.xml /themes/README.txt /admin/help/zh_cn/database.xml /htaccess.txt /Script/Html.js /admin/ecshopfiles.md5 /admin/views/style/green/style.css /template/skin_vc36a/images/member/loginlabel.gif /template/skin_vc36a/images/member/memberlabel.gif /template/public/images/member/nextkey.gif /wp-admin/js/media-upload.dev.js /ewebeditor/KindEditor.js /admin/views/style/green/style.css /Admin/Images/southidc.css /xmlEditor/css/style.css /xmlEditor/images/spacer.jpg /xmlEditor/images/adminLogin_r3_c2.jpg /script/page.css /module/jslib/jquery/jquery.js /Script/Html.js /Admin/images/admin.js /images/lzbg12.gif /sysImages/Login/Logo.gif /templates/phpmps/style/index.css /templates/phpmps/style/category.css /js/validator/validator.min.js /SouthidcEditor/sysimage/icon32xls.gif /admin/SouthidcEditor/Include/Editor.js /a_d/install/data.sql /inc/photo/loader.gif /SouthidcEditor/sysimage/icon32xls.gif /admin/system/images/login_background.jpg /rss.xsl /page/system/inc/fun.js /SiteServer/Services/AdministratorService.asmx /components/com_mailto/views/sent/metadata.xml /data/admin/ver.txt /install/testdata/hdwikitest.sql /admin/images/icon_editstyle.gif /statics/css/install.css /images/default/arrow_list.gif /js/calendar/calendar.js /t3/style/css/common/card.css /style/default/hdwiki.css /css/official.css /e/tool/feedback/temp/test.txt /admin/Image/Login_tit.gif /images/QQ/qqon5.gif /admin/images/login_06.jpg /adfile/ad9.js /images/top-jlwm_.jpg /member/skin/images/level_10.gif /ADMIN/IMAGES/underline.gif /API/api.config /admin/skin/images/topbg.gif /inc/image/bj.gif /static/image/admincp/bg_repno.gif /KS_Inc/ajax.js /admin/editor/xheditor_skin/default/img/tag-h4.gif /ADMIN/IMAGES/number.gif /data/adtool/theme/d2.jpg /plus/webftp/images/txt.gif /images-global/zoom/zoom-caption-fill.png /Admin_Cy/Script/xselect.js /images/act_1.gif /images/wp-background-preview-bg.gif /images/admin/sprites.png /js/upimg/subbotton.gif /d/js/acmsd/ecms_dialog.js /admin/images/login/index_hz02.gif /images/qq/qqkf2/Kf_bg03_03.gif /js/close.gif /images/admina/logo.png /admin/images/login/index_hz03.gif /logo/01.gif /plus/img/wbg.gif /admin/template/images/site_logo.png /static/sex0.jpg /member/template/css/contribute.css /images/calendar/close.gif /templates/admin/images/titleico.gif /host_date/%23host%20%23%20date%23196.mdb /jscal/src/css/img/cool-bg-hard-inv.png /setup/images/agree.jpg /images/admina/sitmap0.png /images/admin/readme.gif /images/adm/left_menus1.gif /office/images/login/ico.gif /images/button/a.gif /themes/jieqixs/logo.gif /jscal/src/css/img/cool-bg.png /install/templates/images/link_bg.gif /images/adminlogoin.gif /admin/images/bg-pay-return-success.gif /user/face/2.gif /inc_img/vote/vote2_1.gif /images/admin/login/logo.png /404/emessage.gif /admin/images/image_new.gif /system/images/logo.png /admin/images/admin_submit.jpg /themes/admin/images/logo.png /images/usercp_usergroups.gif /install/images/guide_1.gif /data/smiliey/default/shy.gif /include/payment/logo/remittance.gif /install/images/bg-input.png /images/images/message.gif /Admin/Images/Exit-Line.gif /inc/img/qmiddle.png /images/index_border1.gif /image/watermark.gif /admini/images/dt_admini_bottom_logo.gif /admin/ckeditor/images/spacer.gif /lib/images/tip_layer.png /question/images/face/images/ico_face_arrow.gif /static/image/admincp/ajax_loader.gif /images/images/message.gif /install/images/00.png /wp-includes/images/xit.gif /admin/images/top_banner.jpg /admin/images/left_menu.png /mobile/images/redirect_icon.png /admin/images/login_button.jpg /static/ayacms.gif /images/Jobs_resume_up.gif /cn/images/banner_page_bg.gif /admin/images/netgather_com.gif /data/images/logo.gif /template/skin4/images/logo.png /e/data/images/table.gif /xheditor/xheditor_plugins/multiupload/img/progressbg.gif /templates/default/css/user.css /images/logo_wap.png /images/default/listdott.gif /wap/templates/default/images/nv_r2_c1.gif /shopdata/images/error_tips.gif /nz.ico /editor/themes/qq/editor.gif /admin/templates/met/images/logosmall.gif /inc/images/watermark.png /Admin/images/t2_r1_c5.jpg /images/by.nzcms.gif /admin/images/top_tt_bg.gif /ad_duilian/close.gif /install/images/bg-cmstop.jpg /admin/fckeditor/editor/ma_xc_ms_editor_server/browser.css /Admin/images/login_r4_c4_r1_c1.jpg /job/templates/met/css/style.css /data/adflash.txt /inc/images/logo.png /plugin/images/netgather_com.gif /admin/imgs/starno.gif /api/alipay/images/new-btn-fixed.png /inc/image/m_tleft.png /core_res/css/admin.css /common_res/js/pony.js /wap/templates/met/images/listico.gif /Themes/default/zh-cn/images/bbs_nav.jpg /admini/images/dt_admin_top_bg.png /lib/web/js/source/form/form.js /admin/styles/general.css /inc/tools/iepngfix/blank.gif /admin/imgs/admin.css /Admin/images/install_logo.jpg /plugin/raty/img/star-half.png /image/watermark.gif /script/pagecontrol.js /plus/weather/icon/a_12.gif /template/skin4/images/style.css /skin/skin3/login.gif /Themes/default/zh-cn/images/CertificateLogo.jpg /install/images/steptab.png /views/images/install/set01_top_nav.gif /ACT_inc/share/minusbottom.gif /admin/imgs/custommenu.xml /Admin/Images/bg_admin.jpg /inc/yucmedia/Media/img/direct/reload2.gif /Admin/images/al_end_right.gif /login/images/toolbar_back2.gif /admin/images/login/login_submit.gif /ACT_inc/ItemBg.gif /admin/images/left_nav.jpg /img/images/commentLoad.gif /adminimages/title.GIF /_skins/free/images/top_menu_bg.jpg /office/images/login/ico.gif /views/images/admin/login_toptitle.jpg /images/default/topbg.gif /admin/images/watermark.png /theme/admin/images/upload.gif /cms/images/login/gljr.jpg /FCKeditor/editor/images/spacer.gif /cms/images/login/cms6_02.gif /view/js/clipimg/drag.gif /cms/images/login/cms6_01.gif /corpandresize/images/spacer.gif /member/images/bodyleft.gif /rss/HProducts.xml /admin/images/admin_left_6.gif /xml/products/netcmsversion.xml /wp-includes/images/crystal/code.png /statics/plugin/loveit/img/icon.png /static/js/mobile/img/aw-icon.png /spider/images/open.gif /images/polls/bar1.gif /statics/images/icons/calendar.png /views/images/water.gif /view/image/filetype/zip.gif /images/_m10.GIF /admin/images/menu_title3a.jpg /include/lib/js/imgareaselect/imgareaselect.cs /plugin/swf/get_flash_player.gif /sysImages/default/admin/netcms_bg.jpg /css/admin_left.css /zimbra/css/skin.css /skin/default/images/main_bg.jpg /user/js/fore.common.js /upload/archive/image/1007182312368551207nx9paa1i8k0.jpg /review/styles/common.js /Common/Vaildform/css/validform.css /_libs/jquery.filetree/images/ico_spinner.gif /theme/default/css/user_base.css /webmail/static/images/login/logo.gif /js/lhgdialog/lhgdialog.js /static/images/message_success.png /app/admin/view/images/style.css /ids/admin/style/style.css /static/js/uploadify/license.tx /js/zh-cn/Xmlhttp.js /zimbra/img/logo/favicon.ico /webmail/static/script/jquery/1.8.3.min.js /includes/jscript/css/ui.all.css /admin/Images/folder_outbox.png /templates/default/user/css/login.css /templates/default/images/search.gif /admin/images/loginlogo.png /templates/default/user/images/login_title.gif /lang/images/step.png /admin/Tpl/default/ThemeFiles/Css/style.css /admin/Tpl/default/ThemeFiles/Js/common.js /admin/Tpl/default/ThemeFiles/Images/login/spacer.gif /cms/front_res/front.css /scripts/jumbotcms.js /user/otherfiles/scripts/user.js /admin/otherpage/scripts/admin.js /images/admin_login_bg.jpg /admin/Images/admin_tab_system.gif
cms_title.txt
wordpress dedecms dedecms jdcms jdcms kesioncms shopnc phpweb zdsoft u-mail shopnc phpweb dedecms phpweb phpyun phpyun topwincms phpmywind E-Auto phpweb ecmall zdsoft cutecms jieqicms eYouMail espcms ecmall YXCMS jdcms cmseasy topwincms phpok cutecms eYouMail xsnews 小蚂蚁地方门户 kesion espcms phpcms phpcms2008 espcms phpcms2008 phpok phpcms sdcms 多多返利建站系统 appcms 多多返利建站系统 逐浪cms 逐浪cms appcms dedecms phpcms shopex 露珠文章管理系统 shopex skcms phpyun 程氏舞曲 phpcmsv9 phpcmsv9 phpcmsv9 metinfo espcms 08cms b2bbuilder guohuicms phpmywind siteserver Z-Blog shopxp sdcms thinksns thinksns thinksns fcms梦想建站 小蚂蚁地方门户 thinksns 智睿网站系统 e创站 小蚂蚁地方门户 shopex ecshop 动易 php188商城 php188商城 YiDacms discuz discuz phpok wordpress YiDacms foosun文章系统 aspcms网站系统 aspcms网站系统 HDwiki N点虚拟主机 Phpwind php168v6 Joomla Drupal ecshop Joomla south ecshop emlog v5shop v5shop v5shop wordpress php168 emlog网站系统 southidc 追梦flash网站管理系统 追梦flash网站管理系统 追梦flash网站管理系统 大汉版JCMS内容管理系统 大汉版JCMS内容管理系统 southidc dvbbs luzhucms xyscms phpmps phpmps phpmps south south qibosoft ideacms south 新秀 powereasy动易 kesioncms SiteServer joomla dedecms HdWiki phpcms php168v6 ecshop powereasy hdwiki HDwiki diguoCMS帝国 south south 86cms 86cms zhuangxiu 爱淘客 尘缘雅境图文系统 kesioncms 爱淘客 ideacms discuz kesioncms maccms 尘缘雅境图文系统 建站之星 5ucms abcms 尘月企业网站管理系统 actcms 建站之星 akcms cmseasy 帝国cms qibocms aspcms aspcms 08cms qibocms 味多美导航 dedecms 建站之星 ayacms vbmcms vbmcms jieqicms n点虚拟机 cutecms shlcms 08cms cmseasy maccms nitc vbmcms jieqicms cutecms 74cms gocdkey cutecms kingcms otcms Phpwind网站程序 尘月企业网站管理系统 cutecms kingcms 74cms 口福科技 siteengine iwebshop siteengine 74cms phpshop expocms shlcms 青果软件教务系统 iwebshop shlcms kuwebs sdcms jumbotcms discuz kuwebs abcms wordpress 樱桃企业网站管理系统 phpshop jishigou 凡诺企业网站管理系统 ayacms 非凡建站 netgather netgather 74cms ideacms empirecms 口福科技 74cms cmseasy zcncms jishigou phpshop 宁志学校网站系统 xycms metinfo mlecms 老Y文章管理系统 宁志学校网站 xycms 宁志学校网站 cmstop maxcms 老Y文章管理系统 metinfo zcncms mlecms netgather maxcms 口福科技 ideacms 商乐CMS 商乐CMS metinfo hishop shlcms iwebshop shopxp mlecms maxcms hishop 口福科技 iwebshop 大汉版JCMS内容管理系统 jumbotcms ideacms 分类信息网 hishop sdcms gxcms actcms maxcms actcms otcms 非凡建站 易想CMS otcms actcms 凡诺企业网站管理系统 cmstop 露珠文章管理系统 凡诺企业网站管理系统 nitc(定海神真) gxcms zcncms 建站之星 sdcms 通元内容管理系统 pjblog 通元内容管理系统 xiunobbs 通元内容管理系统 phpcms2008 易想CMS 网奇EShop网上商城系统 易想CMS netcms wordpress phpcmsv9 wecenter phpcms2008 vbulletin tccms gxcms xiunobbs 青果软件教务系统 skypost emlog netgather netcms zdsoft zimbra empirecms jumbotcms cmseasy jumbotcms E-Auto jumbotcms sdcms u-mail diancms bagecms phpok trs身份认证服务器 bagecms diancms zimbra u-mail whmcs zdsoft tccms tccms whmcs tccms phpwind 方维团购管理系统 方维团购管理系统 方维团购管理系统 whatycms jumbotcms jumbotcms jumbotcms cnkcms zdsoft
测试结果: